Ущерб $91,2 тыс. за неделю: ключевые криптоэксплойты

cryptonews.ruPublished on 2022-02-07Last updated on 2025-01-07

За период с 30 декабря 2024 года по 5 января 2025 года команда по безопасности блокчейнов SlowMist зафиксировала криптовалютные инциденты с общим ущербом в $91,2 тыс. Эксперты отметили, что в период новогодних праздников активность хакеров была сниженной. Основные потери связаны с 2 относительно крупными эксплойтами — LAURA и Sorra.

Первый инцидент произошел с LAURA, где из-за ошибки в функции removeLiquidityWhenKIncreases злоумышленники украли $48,2 тыс.. Она сжигала токены, когда значение K превышало заданный порог. Злоумышленник добавил ликвидность, сжег токены пары, а затем продал их, получив прибыль. Однако потери пользователей не столь большими.

Второй случай — эксплойт Sorra, который стоил проекту $43 ытс.. Уязвимость была связана с функцией withdraw() в смарт-контракте sorraStaking. Ошибка в механизме начисления наград позволила киберпреступнику воспользоваться ситуацией. Кроме того, зафиксированы случаи компрометации аккаунтов у таких проектов, как Superchain Eco, Centrifuge, 0xScope, Babylon и Solv Protocol. Злоумышленники продолжают использовать взломанные учетные записи для распространения фишинговых ссылок. Аналитики подчеркивают, что подобные методы пользуются большой популярностью у преступников и простя владельцев криптовалютных активов проявлять бдительность.

«Проверяйте любые анонсы и избегайте переходов по подозрительным ссылкам. Оставайтесь осторожными и регулярно проверяйте отчеты о безопасности на таких платформах, как SlowMist и прочие», — подытожили специалисты.

Эксперты SlowMist также заявили, что большинство атак связано с ошибками в смарт-контрактах. Это еще раз доказывает необходимость тщательной проверки кода и аудитов перед запуском. Пользователям рекомендуется быть особенно осторожными.

Ошибка в тексте? Выделите её мышкой и нажмите Ctrl + Enter

Related Reads

Insurance Industry Faces Its Biggest Competitor: Are Prediction Markets the 'Barbarians at the Gate'?

"Insurance Industry Faces New Rival: Are Prediction Markets the 'Barbarians at the Gate'?" Prediction markets, exemplified by platforms like Kalshi and Polymarket, are emerging as potential disruptors to the traditional insurance industry by offering alternative risk-hedging mechanisms. These markets allow users to bet on specific event outcomes, effectively creating a form of customizable, on-demand insurance. Key examples highlight this shift. In sports, Kalshi partnered with insurance broker Game Point Capital to provide NBA teams with more affordable options to hedge performance bonuses compared to traditional insurers. In real estate, Polymarket's collaboration with Parcl lets users speculate on city-specific housing price indices, allowing homeowners to hedge against price drops or buyers against price increases. Furthermore, businesses like a New York bar have used Kalshi to hedge marketing promotions (e.g., offering free drinks if a team wins), framing the transaction explicitly as placing a "hedge." The article argues prediction markets offer advantages over traditional insurance and even sports betting in transparency, liquidity, and flexibility. They provide a wider range of event coverage, act as neutral platforms rather than counterparties, and offer clearer pricing. The piece cites historical precedents like large "refund promotion" hedges by businesses using sportsbooks but notes prediction markets modernize the concept. However, challenges remain for widespread adoption as an insurance alternative, including limited liquidity in some markets, unclear regulatory status, and potential vulnerabilities in event resolution mechanisms. Despite these hurdles, prediction markets are positioning themselves as new tools for risk management, directly challenging certain segments of the conventional insurance landscape.

Odaily星球日报8m ago

Insurance Industry Faces Its Biggest Competitor: Are Prediction Markets the 'Barbarians at the Gate'?

Odaily星球日报8m ago

Which Crypto Sectors Have Been 'Eaten' by AI Agents?

The article examines the transformative impact of AI Agents on the cryptocurrency landscape, highlighting how specific sectors are becoming increasingly dominated by automated systems. Key "agent-eaten" sectors include derivatives trading (perpetuals), where AI agents demonstrate significantly higher survival and performance rates than human traders; MEV and arbitrage trading, which are almost entirely automated; yield optimization, with over two-thirds of new DeFi protocols incorporating AI agents; and spot trading/portfolio management, where agents drive a growing share of DEX volume. "Battleground" sectors like prediction markets and DeFi lending show a mix, with agents excelling in short-term/arbitrage activities but humans retaining an edge in longer-term, nuanced decisions. Sectors still primarily "human-led" include stablecoin payments/remittances (driven by real-world economic activity) and wallets, where human oversight for approvals and security remains critical. As AI agent activity grows, the article emphasizes the rising importance of human-agent verification layers (e.g., World/AgentKit, t54, Self Protocol) to ensure trust, accountability, and control in an increasingly agentic economy. The conclusion is that while AI agents dominate in speed and optimization-focused areas, human judgment, trust, and real-world context remain essential in value-creating layers like payments and identity.

marsbit9m ago

Which Crypto Sectors Have Been 'Eaten' by AI Agents?

marsbit9m ago

AC Exits Sonic Board, 'DeFi Godfather' Pulls Off Another Strategic Retreat

Andre Cronje, known as the "DeFi Godfather," and two other founding directors have stepped down from the Sonic Labs board. The S token, once valued at $1.03, has plummeted 97% to $0.028, and the chain's TVL has evaporated 98% from its peak. In his exit statement, Cronje clarified he was a technical architect, not a founder, and distanced himself from token economics and migration decisions behind the token's crash. Cronje revealed his focus for the past 18 months has been his new project, Flying Tulip. This project raised $200 million privately last year at a $10 billion valuation. Its token design includes a perpetual put option (ftPUT NFT) for early investors, allowing them to redeem their initial investment at any time—a protection not extended to public market buyers. This pattern mirrors Cronje's past exits from projects like Yearn Finance and Fantom, where he departed near peak hype, leaving later holders to bear significant losses. Sonic itself has seen a complete management overhaul in recent months. The article frames this as a microcosm of the broader crypto bear market, where Layer-1 chains are bleeding value. It highlights a harsh reality: a project's valuation is often tied to a founder's reputation rather than fundamentals. Ironically, Flying Tulip is set to launch first on the Sonic chain Cronje just left, underscoring a disconnect between the person and the platform.

marsbit30m ago

AC Exits Sonic Board, 'DeFi Godfather' Pulls Off Another Strategic Retreat

marsbit30m ago

Trading

Spot
Futures
活动图片