毫无含金量的骗局却屡屡得手?接连四起Rug Pull事件分析

Certik2022-07-21 tarihinde yayınlandı2022-07-21 tarihinde güncellendi

Özet

近期Rug Pull事件频发,针对今日及昨日发生的四起Rug Pull事件,CertiK安全团队将分别从项目的操作及合约等方面为大家解读并分析。

近期Rug Pull事件频发,针对今日及昨日发生的四起Rug Pull事件,CertiK安全团队将分别从项目的操作及合约等方面为大家解读并分析。

鉴于篇幅所限,我们将主要分析NumberSwap Rug Pull事件,其风险源于典型的代币分配问题,十分清晰地呈现了Rug Pull的实施过程。

NumberSwap

2022年7月19日,CertiK天网(Skynet)系统监测到一笔导致NumberSwap代币价格暴跌的交易。该事件是一个典型的代币分配问题。

目前,部署者拥有超过该项目98%的代币。此外,他们出售不到1%的供应量,以吸引投机者来购买。

Rug Pull操作步骤

① 部署者为自己铸造了约2.1亿的代币:https://bscscan.com/tx/0x347f524b4a380e1f78f7cf0480e962fb0eda50eff1a178605f98d6062acb9624

② 部署者目前持有约2亿的代币:https://bscscan.com/token/0xc7e9d15a2dc34d3a9f532b325396b8bf02f44fb8?a=0x916c81571fe022a58688d80d246546587b1ebe24

③ 未持有的80万个代币被部署者发送到了8个不同的地址,这些地址持续与未经验证的router地址交互并出售代币。

RacKiller

北京时间2022年7月20日,CertiK天网(Skynet)系统监测到一笔导致RacKiller代币价格下跌超过70%的交易。

经CertiK安全专家分析,这是一笔Rug Pull交易,可以确定该项目操纵了RacKiller价格以赚取利润。该项目在早期阶段为RacKiller-BSC-USD池增加了流动性。截至撰稿时,约50,000,001个RacKiller代币在三个账户中被出售。

此事件同样是一个代币分配问题。项目部署者铸造了ERC20,拥有超过98%的代币供应,此外还在吸引投机买家来购买。

Rug Pull交易:https://bscscan.com/tx/0xfebc498121eb6579b793a6996992fbc930c905f342d60a155d8a2b48741fd30a

Orchid

北京时间2022年7月19日,CertiK天网(Skynet)系统监测到ORCHID代币价格下跌超过99%。

经CertiK安全专家分析,确认Orchid项目为Rug Pull项目。恶意者钱包出售了价值50,208美元的代币,并将资金发送至0xc5264e7e4ce93f5914b1cdbfd1ac7f55cb5e8204。

Loop X

北京时间2022年7月14日凌晨1:13:04,CertiK天网(Skynet)系统监测到一个与合约部署者相连的账户将大量BNB转移至多个账户,营造出大量持有者和资金的假象。部署者资助机器人账户交易代币随后将资产转移至部署者的钱包。

北京时间2022年7月19日,部署者钱包又开始将BNB和LOOP代币由脚本抽调到大约600个账户中,随后大量抛售导致代币价格暴跌。

总结

这四起事件性质相同——项目均高度中心化,均可通过安全审计发现相关风险。

这些风险将被分别归类于中心化风险或初始代币分配。审计报告中也会标注出项目的代币将在功能实现后被转移至何处。而前两个事件的风险更可以通过对ERC20的自动审计来发现。

蕴含欺诈意图的项目团队对于安全审计往往避之唯恐不及,本可通过审计检查出的问题被恶意者刻意忽视。

这表明了用户在投资前做好项目调查的重要性,同时也凸显了围绕Web3.0项目建立透明度和问责制的必要性。

这也是为什么CertiK主张对项目团队进行KYC团队背景调查,并在今年年初推出了KYC服务,该服务可以可靠地验证项目团队成员的身份及项目背景。

Web3.0世界受Rug Pull之苦久矣,监守自盗卷款跑路事件层出不穷。2021年仅第二季度因欺诈导致的资金损失就高达26亿美元,掌握识别Rug Pull恶意欺诈的特征从而远离Rug Pull是每一位用户开启自我保障的第一步。

İlgili Okumalar

Can You Make a Steady Profit by Blindly Following Polymarket's Pre-Game Win Probability to Bet on NBA Games?

**Can You Consistently Profit by Blindly Following Pre-Game Win Probabilities on Polymarket for NBA Games?** A backtest of the entire NBA 2025-26 regular season (1,096 games) was conducted to test the strategy of always betting $100 on the team with the higher pre-game win probability on Polymarket. The results show that this strategy is not profitable. The total amount wagered was $109,600, with a return of $107,545.20, resulting in a net loss of $2,054 and a Return on Investment (ROI) of -1.87%. This indicates that the market is highly efficient, and pre-game probabilities are accurately priced, leaving no simple arbitrage opportunity. In fact, blindly following the market would have been slightly less profitable than betting against it. However, a deeper analysis by team revealed significant differences. Certain teams consistently outperformed market expectations when they were favored to win: * Portland Trail Blazers (POR): 19% ROI * Philadelphia 76ers (PHI): 14% ROI * San Antonio Spurs (SAS): 12% ROI * Los Angeles Lakers (LAL): 11% ROI * Charlotte Hornets (CHA): 9% ROI In contrast, the market was highly efficient for the top-performing teams, offering minimal returns (e.g., Boston Celtics ROI: 4%, Denver Nuggets ROI: -5%). Results for the weakest teams were too inconsistent due to small sample sizes. The key finding is that team-specific factors, rather than the probability percentage itself, drive potential value, making a one-size-fits-all strategy ineffective.

Odaily星球日报10 dk önce

Can You Make a Steady Profit by Blindly Following Polymarket's Pre-Game Win Probability to Bet on NBA Games?

Odaily星球日报10 dk önce

Are Altcoins Soaring? Is the Bull Market Back?

Recent days have seen significant volatility in altcoins while Bitcoin remained relatively stable. Some low-market-cap tokens, with circulations under $20 million, surged by several hundred percent within days—without fundamental improvements, ecosystem breakthroughs, or new institutional inflows. This is not a true altseason. The Altseason Index stands at 34, and Bitcoin dominance is at 58.5%, indicating the market is still in a "Bitcoin season." The altcoin market cap has shrunk by ~40% since its peak in December 2024, falling to around $700 billion. This severe decline has made it cheaper for large holders to accumulate significant portions of circulating supply, enabling price manipulation. A case in point is SIREN, where a single entity allegedly controlled up to 88% of the circulating supply. Such concentration allows a small group to dictate price movements. Additionally, deeply negative funding rates (as low as -0.3% every 8 hours, annualized to -328%) force short sellers to pay high fees, accelerating liquidations and further fueling upward price spikes. On-chain activity, like a 97% weekly increase in BSC DEX volume, suggests excitement, but it is largely driven by existing capital, not new inflows. Institutional flows into altcoin ETFs (like those for Solana and XRP) have been weak or negative, indicating caution rather than rotation into altcoins. This rally is a signal of structural fragility, not broad bullish momentum. Until Bitcoin dominance falls significantly and new capital enters the altcoin space, these pumps are echoes of manipulation—not the return of a true bull market.

marsbit45 dk önce

Are Altcoins Soaring? Is the Bull Market Back?

marsbit45 dk önce

İşlemler

Spot
Futures
活动图片