一起黑客事件,意外地揭下了EigenLayer的遮羞布

Odaily星球日报Published on 2024-10-05Last updated on 2024-10-05

Abstract

草台班子唱大戏。

原创 | Odaily星球日报(@OdailyChina

作者|Azuma(@azuma_eth

一起黑客事件,意外地揭下了EigenLayer的遮羞布

北京时间昨晚 11 点左右,链上分析机构 Lookonchain 监测到了一笔异常交易,某地址(0xA7A1c66168cC0b5fC78721157F513c89697Df10D)从 Eigenlayer 的团队地址收到了约 167 万枚 EIGEN 后,直接以 3.3 美元的价格完全抛售,套现约 551 万美元。

一起黑客事件,意外地揭下了EigenLayer的遮羞布

该笔交易被曝光之后,社区之内质疑声音频起 —— EIGEN 刚刚解除转账限制没几天,团队就这样子明目张胆的直接砸盘了?

今晨 5 点半左右,EigenLayer 就社区质疑给出了官方回应。

今天早晨发生了一起孤立事件,某投资人关于将代币转入托管地址的电子邮件遭恶意攻击者劫持,黑客替换了邮件中的具体地址,结果导致 1673645 枚 EIGEN 被错误地转移到了攻击者的地址。攻击者已通过去中心化交易平台出售了这些被盗的 EIGEN,并将稳定币转移到了中心化交易所。我们正在与这些平台和执法部门联系。部分资金已经被冻结。

这次破坏没有影响到 Eigenlayer 系统,协议或代币合约中并不存在已知的漏洞,此次事件与 EigenLayer 的任何链上功能无关。

我们仍在调查这一情况,一旦有进一步的信息,我们将继续披露。

这起攻击事件本身并不复杂,知名安全专家、慢雾创始人余弦在个人 X 上给出了很详尽的分析。

针对该起攻击事件本身,攻击者恐怕预谋挺久了,攻击者地址最早先收到 1 EIGEN,隔了差不多 26 小时收到 1673644 EIGEN,都来自 3/5 多签地址(0x87787389BB2Eb2EC8Fe4aA6a2e33D671d925A60f)。接着,一个多小时后开始各种洗币。Gas 来自 ChangeNow,非法获取的 EIGEN 主要兑换成 USDC/USDT,并主要通过 HitBTC 等平台洗完。

攻击者得手原因据官方说法是“邮件被入侵”。估计是在邮件内容里,应该发送的预期接收 EIGEN 的钱包地址被替换成了攻击者地址,导致项目方将 EIGEN 打入了攻击者地址。哪怕是先打了 1 EIGEN,说不定攻击者收到 1 EIGEN 后,也给预期接收地址打了 1 EIGEN,导致预期接收者以为整个流程无误…当然这只是猜测,具体以官方披露为准。

 然而,这起“普通”的安全事件背后却暴露了另一层更为严重的问题 —— 为什么 EigenLayer 的投资人现在就可以收到代币?且为什么接收地址(不管是投资人还是黑客)可以在收到 EIGEN 之后毫无限制的直接抛售?

在 EigenLayer 此前所披露的代币经济模型中,关于早期贡献者及投资人的份额部分曾白纸黑字地明确强调了存在“为期 1 年的锁仓限制”

EIGEN 合约的转账限制移除后,早期贡献者、投资者和 Eigen 基金会服务提供商的代币将被锁定一年。一年之后,上述每位接收者的 EIGEN 将解锁 4% ,此后每个月将额外解锁 4% 。

一起黑客事件,意外地揭下了EigenLayer的遮羞布

作为一个融资规模过亿,TVL 高居全网头部,各大头部交易所争相上线的“天王级”项目……很难想象 EigenLayer 既没有选择使用当前已相当成熟的代币分配协议,也没有自行部署代币解锁合约,而是相当“无脑”地在代币刚刚解除转账限制后立即向投资人地址打币……

从黑客的抛售行为来看,这些地址在收到代币之后也并没有受到任何硬性的操作限制,换句话说 EigenLayer 似乎是在指望着 VC 们去“道德锁仓”……

更为离谱的是,EigenLayer 似乎在收到“投资人”(其实是黑客)关于更改地址的邮件后,并未通过电话或是其他其他形式交叉确认,而是直接放款打币,这才导致黑客成功窃取了数百万美元的资金……

总而言之,这一整起事件可谓槽点满满。但凡 EigenLayer 遵循了正常的代币解锁规范,但凡 EigenLayer 团队的运营素质稍微合格那么一点,这起黑客事件都不可能发生,EigenLayer 也不会被社区口诛笔伐为“草台班子”。

从技术角度来看,EigenLayer 创新的“再质押”叙事扩展了节点验证服务的边界,利用 AVS 将原本仅可用于网络共识维护的节点验证服务扩展至预言机、排序器、跨链桥等更多的细分场景。这对于以太坊生态乃至于整个加密货币行情都具有长远的效用意义。

但技术归技术,运营归运营,从过往的“团队向生态项目索取空投”争议再到如今的“黑客及解锁”风波,EigenLayer 的这些离谱操作正在一步步透支着社区信心。对于任何一家项目而言,哪怕它的规模再大,背书再硬,这都是一个极度危险的信号。

Related Reads

Base MCP, The Next Step for x402

Base has officially launched Base MCP, allowing users to connect their Base Account to AI Agents to perform actions like swaps, transfers, portfolio tracking, and transaction history queries through conversational commands. This move aligns with Base's strategic focus on AI, driven by the broader competition in the emerging Agent-to-Agent payment sector. The evolution of Agent payments has accelerated. In late 2024, the primary method involved insecure browser automation. By 2025, solutions like Coinbase's x402 (providing crypto wallets for Agents), Google's AP2, and Visa's token-based system emerged. x402 has since processed 176 million transactions totaling over $70 million, with a median value between $0.01 and $0.10. Stablecoins, particularly USDC, dominate these settlements due to their negligible transaction costs compared to traditional payment fees, which are prohibitive for micro-payments. Coinbase faces competition from Stripe, which has built a comparable infrastructure for Agent payments with its Tempo blockchain, Privy wallets, Bridge routing (acquired for $1.1B), and the recently launched MPP protocol. Both companies are now competing at the application layer. The core reason AI is central to Base's strategy is to expand the scenarios for Agent payments, ensuring more transactions occur on its network. By securing a dominant position and scale advantage in this nascent field, Coinbase aims to capture the future commercial potential of Agent-driven payments. The launch of Base MCP is thus a strategic step in this larger ambition.

marsbit1m ago

Base MCP, The Next Step for x402

marsbit1m ago

Reframing Ethereum's Valuation: Why the Fee Model is Wrong, and the 'Treasury Logic' is the Future?

"Rethinking Ethereum's Value: The 'Vault Logic' Framework" Traditional valuation models incorrectly treat Ethereum as a company, valuing ETH based on transaction fees ("revenue"). This is flawed. Fees are network friction; a successful network aims to reduce them to zero. Ethereum's average fee has dropped from over $50 in 2021 to around $0.20 today, while transaction volume has tripled. Instead, view Ethereum as a digital vault securing ~$250 billion in on-chain assets (stablecoins, RWAs, L2 bridged funds, wBTC, etc.). Post-merge, Ethereum's security is directly purchased with its own asset: ETH. To attack the network, an attacker must acquire and control staked ETH. Therefore, the vault's security level is intrinsically tied to ETH's market value. Currently, the value of all staked ETH is only ~$72B, protecting ~$250B in assets—a dangerous imbalance. For robust security, the staked ETH securing the network should be valued significantly *higher* than the total value it protects. Applying a conservative security multiplier suggests ETH's fair value should be closer to ~$6,900 (vs. ~$2,070 currently). As on-chain asset value grows into the trillions, ETH's price must rise proportionally to maintain this security budget. Comparisons to free infrastructure like Linux or low-margin utilities like the DTCC are misguided. Their security is provided externally (community, law, banks). Ethereum's security is internal and must be purchased in the open market using ETH. ETH is not the clearinghouse; it is the collateral backing it. The model is not a short-term price predictor but a structural framework. The economic force for ETH appreciation grows monotonically with the adoption of Ethereum for settling value. The narrative that high fees are good is backwards; low fees enable more activity, which increases the value needing protection, thus demanding a more valuable ETH.

marsbit8m ago

Reframing Ethereum's Valuation: Why the Fee Model is Wrong, and the 'Treasury Logic' is the Future?

marsbit8m ago

Justin Sun’s Interview with Hurun Report: A New Order and Certainty for Value Flow in the Era of Transformation

In an interview with *Hurun Report*, Justin Sun, founder of TRON, discussed the evolution of the Web3 industry as it moves from initial exploration to large-scale adoption. He emphasized that the core value of blockchain lies in building an open and inclusive internet of value, enabling anyone globally to transfer and use funds efficiently and at low cost, regardless of location or access to banking. Sun highlighted that projects with lasting impact are those built on genuine demand and real-world usage. He pointed to the stablecoin payment ecosystem as the most mature and scalable application currently, noting that TRON has rapidly become one of the world's largest stablecoin networks. The circulation of USDT on TRON has surpassed $86.3 billion, driven by actual use cases such as cross-border transfers and daily payments, demonstrating strong network effects. Regarding strategy, Sun outlined a methodology combining data-driven iteration, rapid execution, and user-centric focus. He cited the decision to partner with Tether to launch TRC-20 USDT as a key strategic move, based on an assessment of market trends and long-term potential, which has become a significant growth engine for the TRON ecosystem. On globalization, Sun stressed the importance of local compliance and cultural adaptation, noting that success in different markets depends on deep understanding and local partnerships. He also addressed the convergence of AI and blockchain, describing it as a transformative direction where blockchain provides decentralized infrastructure for AI, while AI enhances the intelligence and user experience of blockchain systems. For industry participants and young entrepreneurs, Sun advised continuous learning and adaptability in a fast-changing environment, focusing on building irreplaceable core strengths rather than spreading resources too thinly. Through infrastructure development, global strategy, and technological foresight, TRON aims to advance the practical implementation and evolution of the value internet.

marsbit40m ago

Justin Sun’s Interview with Hurun Report: A New Order and Certainty for Value Flow in the Era of Transformation

marsbit40m ago

Samsung Leverages Technology Cycles, SK Hynix Relies on HBM, What Enabled Micron to Win a Trillion-Dollar Market Cap?

Micron Technology, the Idaho-based memory chip maker, recently saw its market cap surpass $1 trillion, securing its position as one of the top three DRAM manufacturers alongside Samsung and SK Hynix. Its survival and growth story is marked by a unique combination of political maneuvering and hard-won manufacturing efficiency, but also strategic missteps that now challenge its future. Founded in 1978 in Boise without significant government or capital backing, Micron repeatedly turned to Washington for survival during critical junctures. In the 1980s, it filed anti-dumping complaints against Japanese firms, leading to the U.S.-Japan Semiconductor Agreement. Ironically, this created an opening for Samsung, which Micron had earlier licensed its 64K DRAM technology to. In 2002, Micron avoided heavy fines in a price-fixing investigation by acting as a whistleblower against its competitors, cementing its reputation as a "political opportunist." A major strategic error occurred in 2013 with its $2.5 billion acquisition of bankrupt Japanese firm Elpida. This deal burdened Micron with integrating incompatible manufacturing processes just as the industry was pivoting toward HBM (High Bandwidth Memory), a critical technology for AI. SK Hynix had launched its first HBM chip that same year. By the time AI demand exploded with ChatGPT in 2022, SK Hynix commanded about 85% of the HBM3 market, while Micron, playing catch-up, held only around 3%. In 2017, Micron employed similar tactics against a new competitor, Chinese startup Fujian Jinhua, by alleging intellectual property theft, which led to U.S. sanctions effectively crippling the firm. However, this strategy backfired in 2023 when China banned Micron's products from its critical infrastructure, causing its revenue share from China to plummet from 14% in FY2023 to just 7.1% by FY2025. Today, Micron faces a triple squeeze: it lags in the high-margin HBM race, faces pricing pressure in low-end DRAM from Chinese manufacturers like CXMT, and has lost crucial access to the booming Chinese AI server market. Despite its political strategies, Micron's core strength is its exceptional manufacturing cost control, achieved through decades of engineering. Its DRAM chips have a smaller cell area than its rivals, yielding more chips per wafer. This efficiency has been vital for weathering industry downturns. However, this advantage cannot compensate for the decade lost in HBM development. Micron is now racing to ramp up production of its HBM3E, certified by NVIDIA, and develop HBM4. Its future hinges on whether it can close this technological "time debt" through relentless R&D and execution, in a marathon where its competitors, having started earlier, are not slowing down.

marsbit59m ago

Samsung Leverages Technology Cycles, SK Hynix Relies on HBM, What Enabled Micron to Win a Trillion-Dollar Market Cap?

marsbit59m ago

Deconstructing Mysterious Researcher Serenity's Chokepoint Algorithm and the Global Revaluation of Equity Assets

Unmasking Serenity's "Chokepoint Theory": A Framework for AI-Era Investment This article deconstructs the investment methodology of the pseudonymous online researcher Serenity (formerly AleaBito on Reddit), who claims extraordinary returns by identifying critical bottlenecks in AI and robotics supply chains. Rejecting Wall Street's typical top-down analysis, Serenity employs a bottom-up, reverse-engineering approach. Starting with an end product like an Nvidia GPU cluster, he meticulously maps the global supply chain down to its most essential, irreplaceable physical components—the "choke points." These are low-profile, often monopolized sub-sectors where a disruption could paralyze entire downstream industries, analogous to a strategic strait controlling global oil flow. His primary focus is the physical evolution of AI data centers, specifically the shift from copper interconnects to silicon photonics and Co-Packaged Optics (CPO). He identifies five critical, monopolized technical barriers within CPO: high-precision fiber alignment components (e.g., FOCI), external light sources and high-power lasers (e.g., SIVE), molecular beam epitaxy equipment (ALRIB/Riber), ultra-high-purity red phosphorus raw materials, and Silicon-on-Insulator (SOI) wafers (Soitec). Serenity extends this framework to humanoid robotics, arguing that while the AI "brain" resides in the US, the physical "body" hardware (actuators, gears, motors) is dominated by Asian manufacturers. He highlights a looming "demand tsunami" for specific rare earth elements essential for robot motors, presenting a severe future supply chain and geopolitical challenge. The article cites several of his investment targets (RPI, SIVE, Soitec, VLN, NBIS) where identifying such choke points, coupled with correcting market mispricings (e.g., ticker code confusion for VLN), allegedly led to significant re-ratings. Ultimately, the article posits that Serenity's core value is not in providing stock picks, but in demonstrating a paradigm: using deep technical analysis to find the silent, indispensable "physical switches" within complex systems, thereby exploiting institutional research blind spots. However, it warns of major risks, including illiquidity in micro-cap stocks, potential "pump-and-dump" accusations, and the foundational gamble that his identified technological paths (like CPO) are the correct and inevitable ones.

marsbit1h ago

Deconstructing Mysterious Researcher Serenity's Chokepoint Algorithm and the Global Revaluation of Equity Assets

marsbit1h ago

Trading

Spot
Futures
活动图片