Binance Square
LIVE
LIVE
朱老师区块链3000问
--1.4k views
See original
On May 3, a whale suffered a very sophisticated phishing attack on the blockchain using the same first and last address, causing him to lose 1,155 WBTC worth about $70 million. This incident has aroused the community's concerns about blockchain security, especially the importance of phishing attacks. The core of the attack is that hackers took advantage of several key points: first, they generated a large number of phishing addresses in advance, and after the user made a transfer, they quickly disguised the phishing addresses as addresses similar to the user's transaction records. Second, the hackers took the approach of tailing transactions, that is, shortly after the user completed the transfer, a tiny transaction was sent to the user's address, adding the phishing address to the user's transaction history. Finally, the user mistakenly transferred funds to the phishing address due to negligence or failure to carefully check the address. Through MistTrack's tracking analysis, it was found that the hacker had exchanged the stolen WBTC for ETH and transferred the funds to at least 10 different addresses. This transfer pattern shows that the hacker may adopt a batch attack strategy rather than a single target. SlowMist's threat intelligence network revealed a series of IP addresses related to the phishing incident. These IP addresses are located in Hong Kong and may be mobile base stations used by hackers. This discovery suggests that hackers have adopted more covert and anonymous means to carry out attacks. Although the victim has posted a message on the chain, hoping that the hacker can return some of the funds, no response has been received so far. In order to prevent similar phishing attacks, users can take some preventive measures, such as establishing a whitelist mechanism, turning on the small amount filtering function, carefully checking the correctness of the address, and conducting a small amount test before transferring. These measures can effectively protect users from the threat of phishing attacks.

On May 3, a whale suffered a very sophisticated phishing attack on the blockchain using the same first and last address, causing him to lose 1,155 WBTC worth about $70 million. This incident has aroused the community's concerns about blockchain security, especially the importance of phishing attacks.

The core of the attack is that hackers took advantage of several key points: first, they generated a large number of phishing addresses in advance, and after the user made a transfer, they quickly disguised the phishing addresses as addresses similar to the user's transaction records. Second, the hackers took the approach of tailing transactions, that is, shortly after the user completed the transfer, a tiny transaction was sent to the user's address, adding the phishing address to the user's transaction history. Finally, the user mistakenly transferred funds to the phishing address due to negligence or failure to carefully check the address.

Through MistTrack's tracking analysis, it was found that the hacker had exchanged the stolen WBTC for ETH and transferred the funds to at least 10 different addresses. This transfer pattern shows that the hacker may adopt a batch attack strategy rather than a single target.

SlowMist's threat intelligence network revealed a series of IP addresses related to the phishing incident. These IP addresses are located in Hong Kong and may be mobile base stations used by hackers. This discovery suggests that hackers have adopted more covert and anonymous means to carry out attacks.

Although the victim has posted a message on the chain, hoping that the hacker can return some of the funds, no response has been received so far.

In order to prevent similar phishing attacks, users can take some preventive measures, such as establishing a whitelist mechanism, turning on the small amount filtering function, carefully checking the correctness of the address, and conducting a small amount test before transferring. These measures can effectively protect users from the threat of phishing attacks.

Disclaimer: Includes thrid-party opinions. No financial advice. May include sponsored content. See T&Cs.
0
Explore the lastest crypto news
⚡️ Be a part of the latests discussions in crypto
💬 Interact with your favorite creators
👍 Enjoy content that interests you
Email / Phone number
Relevant Creator

Explore More From Creator

--
美联储议息会议,美联储决定保持利率不变。会议声明中唯一的重大变化是通胀进展的措辞,从“缺乏进展”变为“适度的进一步进展”,反映了最新公布的消费者价格指数(CPI)数据的改善。本月将开始缩减资产负债表(QT Taper)。   经济预测变化不大,但通胀预测小幅上调,5月个人消费支出(PCE)通胀数据已达2.8%,让人误以为通胀改善已达标。利率点阵图显示,有15位委员认为年内需要降息,但对次数存在分歧。长期利率预测连续上调,尽管鲍威尔在发布会上淡化了其重要性。   发布会中的鸽派倾向减弱,主要因通胀数据改善改变了基调,使鲍威尔显得更加从容。美股市场在通胀数据公布后上涨但随后回调,美债收益率和美元指数则在大跌后回升。   笔者认为,美联储可能在8月的杰克逊霍尔会议上明确下半年降息的条件,届时鲍威尔将拥有更多通胀数据支持。    声明原文的关键变化   经济活动继续稳步扩张,就业增长强劲,失业率保持低位。通货膨胀有所缓解但仍处于高位,最近几个月在实现2%通胀目标方面取得了适度进展。委员会决定将联邦基金利率目标区间维持在5.25%至5.5%不变,并继续减持国债和机构证券。    经济预测与点阵图   通胀预测小幅上调,利率预测随之上调。长期利率预测继3月后再次上调0.2%。年内7位委员预期降息一次,8位预期降息两次。    发布会细节   鲍威尔强调长期均衡利率是理论概念,不可直接观测,但官员认为利率回不到疫情前的低水平。启动宽松会影响金融市场环境,但市场如何定价仍不确定。服务业通胀压力较高,工资水平偏高,商品价格波动以及进口价格上涨也需关注。#内容挖矿
--

Latest News

View More

Trending Articles

View More
Sitemap
Cookie Preferences
Platform T&Cs