FTX被盗资产去向分析:黑客疯狂洗钱

知帆科技Published on 2022-11-23Last updated on 2022-11-24

Abstract

当地时间 11 月 12 日,据外媒报道,加密货币交易所 FTX 在其 Telegram 频道宣布遭到黑客攻击,加密钱包中被盗资金超过 6 亿美元。

当地时间 11 月 12 日,据外媒报道,加密货币交易所 FTX 在其 Telegram 频道宣布遭到黑客攻击,加密钱包中被盗资金超过 6 亿美元。

事件回顾

11 月 12 日午间, FTX 疑似被黑客攻击。链上记录显示,FTX 与 FTX US 的大量交易所资产开始归集到同一个链上地址——0x59abf3837fa962d6853b4cc0a19513aa031fd32b。

多个项目方提醒用户存在信息泄漏的可能性,建议卸载 FTX App,请勿下载新版 FTX 或进行版本更新。

此外,FTX Telegram 管理员 Rey 表示 FTX 遭黑客攻击,并提示不要访问 FTX 网站,因为它可能会下载木马病毒。

FTX US 法律总顾问 Ryne Miller 回应称,正在调查与跨交易所合并 FTX 余额相关的钱包异动情况,会尽快分享更多信息。

图片

一直追踪本次事件的推特用户 Autism Capital 则给出了更为耸人听闻的猜想:黑客子虚乌有,系内部人员卷款潜逃。

资金流向

黑客地址 0x59ab...d32b 同时对 FTX 在以太坊和币安链上的资产进行转移。使用虚拟货币追踪查证平台逐迹的通用工具查询,该黑客的 ETH 地址持有 20 万枚 ETH。

此外,黑客在币安链地址上持有 74041 个 BNB,1685309 个 DAI。

黑客的资金中转地址如下:

0x585ed783c9246553e8bc9f9046c80f54afee7765

0xb7e3d0fe8349c980a7a93e8378ec6d728970bd52

0x2cb356d17ce28135d593795de6a398f2b997a69f

0xadb8ddf11607fc5faf1d6b50beed9f6c3577203e

0x23a43cf429ec32ebca4624e2182a799141425556

0xc40abf7e6499694ea6f965df96e39e51305e019a

0x29bd06bfb1b52bdae3190f7151ec0367b745b67f

0x961baeb17b99da67daba6de02933fa0195cb425e

0xd73ac858a9b5a83792d2a5e56fb755273620fe73

0x866eeecd1f248d1a0a2e0263f13594a6b8b7c01a

0x60478ad54604f63fe1e46dcee72a7f6463a08f77

资金来源

1、多种资产发生转移

以太坊链的 FTX 地址:

0x2faf487a4414fe77e2327f0bf4ae2a264a776ad2

以太坊链的 FTX US 地址:

0x7abe0ce388281d2acf297cb089caef3819b13448

以太坊链的 FTX 地址以及 FTX US 地址,向黑客地址 0x59ab...d32b 转移资产,共转移了ETH、USDT、UNI、stETH、1INCH、WBTC、SUSHI、YFI、LDO、LINK、MATIC、AAVE、SHIB、APE、PAXG、cUSDT、SNX、USDP、DAI 十九个币种。

币安链上的 FTX 地址也同时被转移转移资产到黑客地址 0x59ab...d32b,转移了BNB、BSC-USDT、BSC-ETH、BSC-DAI 四种币种。

AVAX 链黑客地址 0x59ab...d32b 同时转入 USDT。

2、被转移资金汇总

根据链上交易可知,FTX 地址被转移资产金额 4 余亿美元:以太坊链上被转移资产达 2.88 亿美元,币安链上被转移资产 1 亿美元,AVAX 链被转移 397 万美元。

3、多种手法兑换资产

黑客转移完资产后将以太坊链上的所有代币通过去1inch、Compound、Curve、Uniswap 等去中心化交易所兑换为 ETH,并且滑点极高。币安的一部分的资产利用跨链桥进行跨链转移到了以太坊上,并且中间利用多个地址进行资产兑换。

4、代币兑换汇总

通过链上交易可以发现,被盗资产的变现十分着急,并且滑点极高。变现资金中折损金额达 5900 万美元,除此之外,还向 0x866e...c01a 地址转移了 50000 枚 ETH,在该地址将 ETH 兑换为 rBTC,并进行跨链资金转移。以太坊链持有以太坊 20 万,PAXG 持有 8184 枚,币安链 BNB 持有 44288.94 枚,DAI 持有 1685309.12 枚,AVAX 持有 397 万枚 USDT。

事件汇总

此次的 FTX 被盗案件的资金变现可以看出黑客的变现匆忙,为了防止各种代币被冻结没收,低价出手砸盘,不惜高滑点。现在该黑客地址持有的以太坊量成为了第三大以太坊持有量钱包。

结合近期 SBF 的一系列“操作”和坊间传闻,人们对此次黑客事件尚存疑虑,幕后真相也变得扑朔迷离。目前平台已经对这起黑客事件进行调查,知帆安全团队也会持续关注此事。

最后,可以肯定的是,随着 FTX 事件影响的扩大,势必会引起全球对加密行业监管的进一步重视。

Related Reads

A Company Once on the Brink of Bankruptcy Just Surpassed Bitcoin in Market Cap

On June 22nd, driven by rising stock prices, SK Hynix’s market capitalization reached $1.35 trillion, surpassing Bitcoin's total market cap of approximately $1.29 trillion. This temporarily made it South Korea's highest-valued company. The core driver of this surge is HBM (High Bandwidth Memory), for which SK Hynix is the primary supplier to NVIDIA, holding over 60% market share. AI's demand for high memory bandwidth has translated into immense profitability, with SK Hynix reporting a 72% operating profit margin in Q1. The company's success follows a 13-year bet on HBM technology, beginning in 2009. It nearly failed after the 2001 dot-com bubble, was acquired by SK Group in 2012, and was subsequently recapitalized to continue its long-term HBM development. The article contrasts this with the Crypto AI narrative. Capital currently favors AI infrastructure players like SK Hynix due to "real orders, physical barriers, and quantifiable profit margins." In comparison, Crypto AI projects, promising decentralized compute and data markets, remain largely conceptual with limited tangible progress. Examples include Bittensor, whose core mechanisms are still under development, and Bitcoin miners transitioning to AI, who face significant funding gaps and execution challenges. The piece cites analysis suggesting the AI sector has absorbed nearly all new market liquidity since 2022, leaving little for crypto. It concludes that the current AI infrastructure红利 is captured by entities with proven technical barriers and supply capabilities, while crypto networks still need to define their concrete role in the value chain.

链捕手34m ago

A Company Once on the Brink of Bankruptcy Just Surpassed Bitcoin in Market Cap

链捕手34m ago

Bittensor Moves Towards Ultimate Decentralization: The Critical 18 Months for the TAO Ecosystem is Here?

Bittensor, a decentralized AI protocol, is accelerating its transition to full decentralization over the next 18 months, as outlined in a recent post by co-founder Const. The project currently operates in a "semi-decentralized" state: ownership and network participation are open and permissionless, with TAO distribution based on competitive contribution. However, protocol upgrades and governance have remained under core team control to enable rapid iteration in the fast-evolving AI sector. This strategic shift comes as the ecosystem matures, boasting 128 subnets and a large community. Const argues that continued centralization now poses risks, including single points of failure and regulatory scrutiny. The upcoming decentralization roadmap includes optimizing validator competition, opening liquidity pools, introducing governance rights for Alpha holders, and refining economic models. The move could fundamentally reshape TAO's value proposition, adding governance premiums to its existing valuation based on AI narrative and scarcity. It also signals a potential maturation of the AI crypto sector, where competition may shift from hype to sustainable protocol design and real economic activity. Bittensor positions itself not just as another AI token, but as foundational infrastructure aiming to decentralize intelligence production—analogous to Bitcoin's role in decentralizing money—with the goal of creating a resilient "Millennium Intelligence Federation."

marsbit46m ago

Bittensor Moves Towards Ultimate Decentralization: The Critical 18 Months for the TAO Ecosystem is Here?

marsbit46m ago

Japan's AI Dark Horse Emerges: How a 7B Small Model Challenges Fable and Mythos?

In June 2026, Sakana AI's new model Fugu caused a stir in the AI community. Its Fugu Ultra variant achieved scores of 73.7 on SWE-Bench Pro and 82.1 on TerminalBench 2.1, surpassing GPT-5.5 and Claude Opus 4.8, and was claimed to be comparable to export-restricted models like Fable 5 and Mythos Preview. Remarkably, the core of this high-performance system is not a massive model, but a small 7B-parameter RL Conductor model. Fugu operates as a multi-agent orchestrator: the 7B model acts as a "foreman," dynamically analyzing user tasks and delegating subtasks to a pool of top-tier global models (e.g., GPT-5, Gemini 3.1 Pro). It then synthesizes and verifies their outputs. This architecture represents a paradigm shift from monolithic models to an expert-team approach. It enhances performance in complex, multi-step engineering tasks like code review and security testing by enabling cross-validation from specialized models, improving long-session stability and token efficiency. However, Fugu's strengths come with trade-offs: it faces inherent latency due to multiple API calls, relies heavily on underlying US model APIs (creating dependency risks), and its benchmark comparisons with Fable/Mythos are based on reported scores, not head-to-head testing. For Japan's AI ecosystem, which lacks the massive compute and data resources of the US or China, Fugu exemplifies an "asymmetric breakthrough" strategy. Instead of competing directly in parameter scale, it focuses on intelligent orchestration of existing global models, offering a degree of AI sovereignty and resilience. While a significant system-level innovation, its ultimate capability is still bounded by the underlying models it coordinates.

marsbit46m ago

Japan's AI Dark Horse Emerges: How a 7B Small Model Challenges Fable and Mythos?

marsbit46m ago

Trading

Spot
Futures
活动图片