Zcash漏洞本可无限铸造未检测到的ZEC

bitcoinistОпубліковано о 2026-06-05Востаннє оновлено о 2026-06-05

Анотація

Zcash的Orchard隐私池中发现一个严重漏洞,可能允许攻击者在未被察觉的情况下无限制造伪造ZEC。该漏洞由安全研究员Taylor Hornby于5月29日发现,并在6月2日前通过紧急响应完成修复。漏洞源于Orchard电路中的一个规则约束不足,使得攻击者能提交虚假输入并通过验证。该漏洞自2022年5月Orchard激活起一直存在。 由于Orchard的隐私特性,无法通过密码学方法证明漏洞在修复前是否已被利用。为应对此问题,Shielded Labs正与其他开发者探讨网络升级方案,计划部署新的隐私池并采用闸门式记账,以验证ZEC供应完整性。同时,团队将加速推进对Orchard电路的正式验证工作,以提升系统安全性。 事件引发市场担忧,ZEC价格在24小时内下跌近45%。

根据Zooko Wilcox、Jason McGee和安全研究员Taylor Hornby的最新披露,Zcash的Orchard屏蔽池中存在一个关键漏洞,本可能允许攻击者在未被发现的情况下制造无限量的伪造ZEC。该漏洞于5月29日被发现,通过紧急生态响应在6月2日前完成修复,现已引发了一场关于Zcash如何在保护隐私的系统中证明供应完整性的更广泛讨论。

Orchard漏洞使Zcash供应完整性受到审视

该漏洞由Hornby发现,他是一名经验丰富的安全工程师,于2026年4月被Shielded Labs聘用,对Zcash协议进行持续安全研究。根据披露信息,其任务是明确的:在对手之前发现协议级别的弱点。Hornby开始结合传统安全研究和新型AI辅助审计方法对Zcash进行审查。

时间线异常紧凑。在Anthropic于5月28日发布其Opus 4.8模型后不久,Hornby用它针对性地审查了Orchard电路。一天后,他发现了这个关键的伪造漏洞,并披露给了Zcash开放开发实验室(ZODL),后者的工程师与其他生态系统参与者协调了紧急响应。

"该漏洞本可能被利用,在Orchard内不可检测地创建无限量的伪造ZEC," Shielded Labs的帖子称。"由于Orchard的隐私属性,无法通过密码学证明在该漏洞被修复前是否曾被利用。然而,可以部署网络升级来保护用户并证明Zcash供应的完整性。"

披露信息称该漏洞是"真实且可被利用的"。Hornby在Opus 4.8的帮助下编写了完整的利用程序,并在本地回归测试环境中进行了测试,该程序生成了无法被检测到的无限伪造ZEC。作者表示,如果同样的工具在主网上运行,它会在Hornby的主网钱包中生成无限的、不可检测的伪造ZEC。

从技术上讲,该问题涉及Orchard电路中一个约束不足的元素。这使得在仍然通过乘法检查的情况下,可以向椭圆曲线乘法输入任意错误输入成为可能。该漏洞自Orchard于2022年5月激活起一直存在,直到2026年6月1日部署紧急修复。

这个时间线是担忧的核心。在透明账本中,供应异常通常可以通过检查公共余额和交易价值进行审计。Orchard在设计上则不同:它隐藏了金额和交易历史。这种隐私模型意味着系统在很大程度上依赖于定义有效屏蔽交易的电路规则的正确性。

Zcash开放开发实验室(该实验室是Zcash创建和发布背后的团队,也是Zodl钱包的构建者)的创始人兼首席执行官Josh Swihart在另一篇帖子中从这些角度阐述了这个问题。"屏蔽的Zcash交易包含一个证明,表明其遵循了协议规则,这些规则定义在规则手册(即电路)中,规定了什么构成有效交易。Orchard漏洞存在于其中一条规则中,该规则编写得过于宽松,以至于会接受错误信息但仍然通过。结果,引擎可能会被说服,认为一笔虚假交易是有效的。"

Swihart补充说,该漏洞不在于Zcash的基础密码学或证明引擎本身,而在于手写的规则。用他的话来说,"这是手写规则中的一个缺陷,而不是基础密码学或创建证明的引擎的问题。"

Shielded Labs表示,先前的利用似乎不太可能,同时强调不应要求用户仅依赖这一评估。作者指出了他们持此观点的几个原因:该漏洞多年来逃过了顶尖密码学家的审查,Hornby是专门被雇来寻找此类漏洞的,而ZODL和更广泛的Zcash生态系统的反应速度大大缩短了发现后的响应窗口。

"这一发现并非偶然——它是在恶意行为者可能行动之前,为识别此类漏洞而做出的有意努力的结果,"帖子称。"Taylor是世界上最擅长这方面的人之一。他使用了最新的AI工具(这些工具仅对白帽安全研究员可用),结合一个复杂定制的AI框架和提示,努力赶在攻击者前面。我们认为他很可能成功了。"

尽管如此,作者承认存在未解决的密码学不确定性。由于Orchard的隐私属性和该漏洞的性质,他们表示无法仅通过密码学来明确证明该漏洞在修复前是否曾被利用。

Shielded Labs着眼新资金池和形式化验证

为了解决这个问题,Shielded Labs正在与其他Zcash开发者探讨一项拟议的网络升级。该计划将部署一个新的屏蔽资金池,并对从现有Orchard池中移出的硬币实施转闸门式核算,目标在于让任何人都能验证Zcash供应的完整性,并证明Orchard中不存在伪造的ZEC。预计下周将发布一篇后续文章,提供更多细节,包括权衡和实施机制。任何重大升级在激活前仍需社区支持和标准的治理流程。

Swihart表示,原则上,第二个Orchard资金池可以成为7月底NU7升级的目标,不过他并未就该路径是否应该推进表明固定立场。他认为更大的问题在于防止此类故障再次发生,而形式化验证是最有力的答案。

"形式化验证可以解决这个问题,"Swihart写道。"可以构建一个数学证明,将人类必须审查的部分简化为一个简洁、可读的规则陈述。然后由计算机检查整个规则手册,确保其匹配。AI工具现在可以完成编写这些证明的工作。"

Shielded Labs表示,它已经与Hornby和Anthropic一起加速了主动安全工作,启动了形式化验证Orchard电路的项目,并开始招聘安全主管和密码学家。这一事件为Zcash留下了一条艰难但清晰的道路:修复围绕Orchard的信任假设,在可能的情况下证明供应完整性,并使未来的屏蔽设计更接近机器检查的保证,而非人工审查的复杂性。

在过去24小时内,ZEC价格因不确定性下跌近45%。截至发稿时,其交易价格为337美元。

ZEC再次跌破1.618斐波那契线,周线图 | 来源:TradingView.com上的ZECUSDT图表

Пов'язані питання

QZcash的Orchard隐私池中发现的漏洞最严重的潜在后果是什么?

A该漏洞最严重的潜在后果是允许攻击者在未被检测的情况下,制造无限量的伪造ZEC代币。这会直接破坏Zcash的供应量完整性。由于Orchard的隐私特性,无法从密码学上证明该漏洞在被修复前是否已被利用。

Q安全研究员Taylor Hornby是如何发现这个漏洞的?

ATaylor Hornby在Anthropic于2026年5月28日发布其Opus 4.8模型后,立即将其用于对Orchard电路进行有针对性的审查。第二天(5月29日),他就发现了这个关键性的伪造漏洞。他采用了传统安全研究和新型AI辅助审计方法相结合的方式。

Q从技术角度看,Orchard漏洞的根本原因是什么?

A从技术角度看,漏洞的根本原因在于Orchard电路中存在一个约束不足的部分。这使得攻击者可以向椭圆曲线乘法运算中输入任意虚假数据,同时仍然能通过乘法检查。问题出在定义有效交易规则的“手写规则”本身,而不是底层的密码学或生成证明的引擎。

Q针对此漏洞及遗留的信任问题,Shielded Labs提出了什么样的解决方案?

AShielded Labs正与其他Zcash开发者探索一项网络升级方案。计划包括部署一个新的隐私池,并对从现有Orchard池中转出的资金实施“旋转门”式账目核算。目标是让任何人都能验证Zcash供应量的完整性,并证明Orchard池中不存在伪造的ZEC。同时,他们还启动了正式验证Orchard电路的项目。

Q除了紧急修复外,Zcash CEO Josh Swihart认为防止此类事件再次发生的最有效方法是什么?

AZcash Open Development Lab的创始人兼CEO Josh Swihart认为,防止此类事件再次发生的最有效方法是“正式验证”。通过构建数学证明,将人类必须审查的部分简化为一条简明、可读的规则陈述,然后由计算机检查整个规则手册以确保其匹配。他指出,AI工具现在可以完成编写这些证明的工作。

Пов'язані матеріали

Dalio's Latest Warning: Don't Get Carried Away by AI, Real Returns on US Stocks in the Next 5-10 Years Could Be -5% to -10%

Ray Dalio, founder of Bridgewater Associates, warns investors against excessive concentration in AI stocks. He argues the current market, dominated by a few AI giants, mirrors historical patterns where revolutionary new technologies lead to high risk, volatility, and uncertainty. While acknowledging AI's transformative potential, Dalio emphasizes that most investors fail at this stage of the cycle by over-concentrating in a handful of leading companies. He cites inherent risks: companies cannot accurately forecast investment needs or external shocks (e.g., monetary policy, geopolitics, taxes), face potential disruption from future technologies and international competition (notably from China), and experience significant price swings. Dalio's core advice is diversification, calling it his "Holy Grail of Investing." He presents a mathematical case that a well-diversified portfolio of 15-20 uncorrelated, good bets offers a superior risk-adjusted return compared to a concentrated position. Dalio also offers a cautious outlook, suggesting U.S. stocks may deliver real returns of -5% to -10% over the next 5-10 years based on valuation and bubble indicators. He concludes that in the face of high uncertainty, the prudent strategy is not to avoid betting entirely, but to avoid large, concentrated bets where one lacks sufficient informational edge. Instead, investors should build a strategically balanced, diversified portfolio.

marsbit18 хв тому

Dalio's Latest Warning: Don't Get Carried Away by AI, Real Returns on US Stocks in the Next 5-10 Years Could Be -5% to -10%

marsbit18 хв тому

Rain Valuation Approaches $20 Billion: The Battle for U-Cards Extends to Rewards Systems

Rain, a stablecoin payments infrastructure company, is shifting the competitive focus for U Cards from simple issuance to user retention and repeated usage. On June 15, Rain launched "Rain Rewards," an embedded loyalty program capability within its card-issuing infrastructure. This allows partner businesses—like fintech platforms and neobanks—to configure branded loyalty points, earning rules, redemptions, and merchant promotions directly within their card products. The system, built from the 2025 acquisition of Uptop, ensures points are only issued upon final transaction settlement, preventing liabilities from refunds. Trials, such as with Avalanche Card, reportedly boosted spending by 25% among enrolled users. Founded by Farooq Malik and Charles Yoo-Naut, Rain evolved from a tool for managing Web3 company expenses into a full-stack enterprise platform. It is a Principal Member of Visa and Mastercard, enabling partners to issue stablecoin-backed cards and wallets while leveraging traditional payment networks. Notably, the popular U Card Plasma One is issued by Rain under Visa's authority. Rain also integrates with Visa's stablecoin settlement pilot, using USDC for network settlement. Rain's rapid funding reflects growing institutional interest in stablecoin payment infrastructure. It raised a $245 million Series A in March 2025, a $58 million Series B in August 2025, and a $250 million Series C in January of this year, reaching a $19.5 billion valuation. Annualized transaction volume exceeds $3 billion, serving over 200 partners including Western Union and Nuvei. Beyond cards, Rain is expanding into programmable payments. Its June 2026 "Agent Control Layer" allows businesses to set spending rules—like merchant categories, amounts, and frequency—for AI agents before transactions occur. This positions Rain not as a single product but as an operating system for stablecoin payments, handling everything from card issuance and wallet management to rewards, on/off-ramps, and automated compliance. The goal is to enable seamless, often invisible, real-world spending of on-chain assets.

Foresight News21 хв тому

Rain Valuation Approaches $20 Billion: The Battle for U-Cards Extends to Rewards Systems

Foresight News21 хв тому

Google TPU Shipments Revised Up by 50%

Recent industry research indicates a significant upward revision in the shipments of Google's TPU (Tensor Processing Unit) chips. Previous expectations for 2027 were set at around 10 million units, but new estimates now point to 15 million units, a 50% increase. This substantial boost directly translates to higher demand across the entire supporting supply chain. Google's TPU clusters utilize a standardized all-optical interconnect architecture. Consequently, key hardware components are deeply integrated and scaled in fixed ratios with the chips. The 15 million TPU target will drive corresponding demand increases for NPO optical engines (roughly a 1:1 match), 1.6T optical modules, OCS optical switches, high-end server power supplies, fiber optics & MPO connectors, and liquid cooling solutions. Among these, liquid cooling is highlighted as the sector experiencing the most significant transformation and offering the most stable potential for excess returns. As next-generation TPU chips reach power levels where traditional air cooling is insufficient, liquid cooling becomes essential. 2026 is forecasted as the first year of substantial adoption for Google's liquid cooling solutions. This shift, coupled with delivery and capacity bottlenecks faced by incumbent overseas manufacturers, is creating a prime window for domestic Chinese suppliers to enter and secure Google's core supply chain. The market size for Google-specific liquid cooling is projected to potentially triple from a baseline of hundreds of billions to around 300 billion units by 2028. The logic for the fiber optic sector is also being rewritten. Once considered a cyclical commodity tied to telecom operator procurement, fiber is now a strategic and scarce resource for AI Data Centers (AIDC). A severe supply-demand imbalance, driven by the long lead time for preform production (18-24 months) and surging demand from cloud giants, is supporting strong performance. Chinese fiber manufacturers are well-positioned to capture a significant share of global AIDC demand, with exports potentially reaching 200-300 million core kilometers in 2026. Overall, the investment focus within the AI computing industry is shifting from pure "chip performance speculation" towards the more certain incremental growth in computing infrastructure and its supporting ecosystem. The upward revision in Google TPU shipments, along with the potential for further doubling by 2028, is seen as solidifying performance visibility for the entire supporting supply chain over the next two years.

marsbit1 год тому

Google TPU Shipments Revised Up by 50%

marsbit1 год тому

What Wall Street Really Wants After the Crypto Story Recedes

The tide of speculative crypto narratives has receded, revealing Wall Street's true objective: building a controlled, yield-generating, and compliant financial pipeline on distributed ledgers. They are migrating core functions onto blockchains, not for decentralization, but for efficiency and new revenue streams. Key developments include BlackRock's BUIDL fund, a tokenized treasury fund acting as a foundational reserve asset, and the rise of Securitize, which is going public and partnering with the NYSE to build a 24/7 digital securities trading and settlement system. This signals a major shift of securities clearing to blockchain technology. To make volatile assets like Bitcoin palatable for institutional investors, firms like BlackRock and Goldman Sachs are creating "covered call" ETFs (e.g., BITA). These products systematically sell options on Bitcoin holdings, transforming price volatility into stable monthly income, effectively repackaging crypto as a yield-bearing asset. Stablecoins are being positioned not as speculative tools but as efficient payment rails. Companies like Stripe and Mastercard are integrating them for instant, low-cost merchant settlements and cross-border card payments, respectively. Critically, new legislation like the GENIUS Act shapes them as non-interest-bearing, heavily regulated extensions of the US dollar system. In summary, Wall Street is quietly constructing a parallel, blockchain-based financial infrastructure featuring tokenized traditional assets, structured crypto yields, and programmable dollar pipelines—all under its control and fully integrated with existing regulatory and credit frameworks.

marsbit2 год тому

What Wall Street Really Wants After the Crypto Story Recedes

marsbit2 год тому

Торгівля

Спот
Ф'ючерси

Популярні статті

Як купити ZEC

Ласкаво просимо до HTX.com! Ми зробили покупку Zcash (ZEC) простою та зручною. Дотримуйтесь нашої покрокової інструкції, щоб розпочати свою криптовалютну подорож.Крок 1: Створіть обліковий запис на HTXВикористовуйте свою електронну пошту або номер телефону, щоб зареєструвати обліковий запис на HTX безплатно. Пройдіть безпроблемну реєстрацію й отримайте доступ до всіх функцій.ЗареєструватисьКрок 2: Перейдіть до розділу Купити крипту і виберіть спосіб оплатиКредитна/дебетова картка: використовуйте вашу картку Visa або Mastercard, щоб миттєво купити Zcash (ZEC).Баланс: використовуйте кошти з балансу вашого рахунку HTX для безперешкодної торгівлі.Треті особи: ми додали популярні способи оплати, такі як Google Pay та Apple Pay, щоб підвищити зручність.P2P: Торгуйте безпосередньо з іншими користувачами на HTX.Позабіржова торгівля (OTC): ми пропонуємо індивідуальні послуги та конкурентні обмінні курси для трейдерів.Крок 3: Зберігайте свої Zcash (ZEC)Після придбання Zcash (ZEC) збережіть його у своєму обліковому записі на HTX. Крім того, ви можете відправити його в інше місце за допомогою блокчейн-переказу або використовувати його для торгівлі іншими криптовалютами.Крок 4: Торгівля Zcash (ZEC)Легко торгуйте Zcash (ZEC) на спотовому ринку HTX. Просто увійдіть до свого облікового запису, виберіть торгову пару, укладайте угоди та спостерігайте за ними в режимі реального часу. Ми пропонуємо зручний досвід як для початківців, так і для досвідчених трейдерів.

558 переглядів усьогоОпубліковано 2024.12.12Оновлено 2026.06.02

Як купити ZEC

Обговорення

Ласкаво просимо до спільноти HTX. Тут ви можете бути в курсі останніх подій розвитку платформи та отримати доступ до професійної ринкової інформації. Нижче представлені думки користувачів щодо ціни ZEC (ZEC).

活动图片