# Сопутствующие статьи по теме Security

Новостной центр HTX предлагает последние статьи и углубленный анализ по "Security", охватывающие рыночные тренды, новости проектов, развитие технологий и политику регулирования в криптоиндустрии.

Behind the 2000 BTC Incident: The Fundamental Problem of CEX Ledgers

A critical incident at South Korean exchange Bithumb on February 6 revealed a fundamental vulnerability in centralized exchange (CEX) accounting systems. During a small promotional event intended to distribute around $1.4 per user, a configuration error caused the system to credit 695 users with 2,000 BTC each—totaling 1.24 million BTC, worth approximately $41.5–44 billion—instead of the intended 2,000 KRW. Although these assets were not on-chain, they were tradable on the platform, causing Bithumb’s BTC/KRW pair to drop nearly 17% and triggering brief global market turbulence. Bithumb responded within 35 minutes, freezing accounts and recovering over 99% of the erroneously credited funds. The remaining 1,788 BTC sold by users were covered by the exchange’s own capital. The event underscores a systemic risk in CEXes: user balances are often merely entries in an internal database, decoupled from actual on-chain reserves. This “accounting illusion” allows exchanges to modify balances without corresponding blockchain movement, creating a trust asymmetry where users rely on the platform’s promise rather than direct asset ownership. Historical precedents like Mt. Gox and FTX further highlight how such internal ledger systems can mask insolvency, enable fraud, or—as in Bithumb’s case—allow catastrophic errors. While Bithumb contained this incident due to its limited scale and rapid response, the episode has drawn regulatory scrutiny in South Korea, emphasizing the need for stronger oversight and structural safeguards in crypto trading platforms.

Odaily星球日报02/10 10:46

Behind the 2000 BTC Incident: The Fundamental Problem of CEX Ledgers

Odaily星球日报02/10 10:46

Behind the 2000 BTC Incident: The Fundamental Problem of CEX Ledgers

On February 6, Korean crypto exchange Bithumb mistakenly distributed 2,000 BTC (worth approximately $1.6 million at the time) to each of 249 users due to a unit configuration error in a promotional event, instead of the intended 2,000 KRW (about $1.4). The total erroneous distribution amounted to 62,000 BTC, with a notional value of $41.5–44 billion, far exceeding Bithumb’s actual Bitcoin holdings of 42,600 BTC. Although Bithumb recovered over 99% of the misallocated funds within 35 minutes by freezing accounts and covering the remainder with company assets, the incident exposed a fundamental flaw in centralized exchanges (CEXs): their reliance on internal ledgers that are decoupled from on-chain assets. Unlike decentralized exchanges, where transactions occur on-chain, CEXs use internal databases to record user balances, allowing instant—but potentially unbacked—asset entries. This creates systemic risk, as seen in historical failures like Mt. Gox (where internal ledger mismasks hid massive theft) and FTX (where customer funds were secretly diverted). The event underscores the trust asymmetry in CEXs: users see balances as real assets, but they are merely IOU promises. The Korean Financial Supervisory Service has since launched inspections, signaling heightened regulatory scrutiny. Bithumb’s near-disaster serves as a critical reminder of the inherent vulnerabilities in CEXs’ accounting models.

marsbit02/10 10:43

Behind the 2000 BTC Incident: The Fundamental Problem of CEX Ledgers

marsbit02/10 10:43

A Crayfish Ignites the Tech World: Is Humanity Ready to 'Flip the Table'?

The article titled "A Little Lobster Ignites the Tech World: Is Humanity Ready to 'Flip the Table'?" discusses the rapid rise and implications of OpenClaw, an open-source AI agent that has quickly gained popularity in the tech community. Developed by an independent retiree, Peter Steinberger, OpenClaw allows users to run a functional AI assistant on low-end hardware like an old Mac mini or smartphone. It has attracted significant attention for enabling tasks such as scheduling, stock trading, podcast production, and SEO optimization, making the vision of a personal "Jarvis" seemingly attainable. However, the excitement is tempered by practical challenges and risks. Despite its accessibility, installation can be complex and time-consuming, excluding non-technical users. More critically, OpenClaw’s high-level permissions pose security threats, including potential file deletion, unauthorized financial transactions, and vulnerability to malicious attacks. Over 1,000 OpenClaw instances and 8,000 vulnerable plugins have already been exposed, amplifying these risks. Experts note that while OpenClaw isn’t a technological breakthrough, it represents a milestone in AI agents' ability to perform complex, continuous tasks autonomously. Its open-source nature fosters innovation but also heightensates security and privacy concerns. The piece highlights emerging risks, such as AI agents evolving in social environments like Moltbook (an AI-only forum) and the blurred lines of accountability when things go wrong. Recommendations for users include limiting sensitive data, cautiously managing permissions, and recognizing the tool’s experimental stage. For enterprises, professional oversight and secure alternatives are advised. Ultimately, OpenClaw signals rapid progress in AI, pushing the boundaries of what’s possible while urging the development of robust safety measures, including "endogenous security" and the capacity to "flip the table" in crises. The next few years are seen as critical for determining the future of general AI.

marsbit02/10 04:08

A Crayfish Ignites the Tech World: Is Humanity Ready to 'Flip the Table'?

marsbit02/10 04:08

活动图片