|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
最近の事件では、著名な AI に焦点を当てたプロジェクトである Bittensor が一連のウォレット ハッキングを受けてネットワーク運用の停止を余儀なくされました

Prominent AI-focused project Bittensor was recently forced to suspend its network operations following a series of wallet hacks, resulting in a loss of at least $8 million in TAO, Bittensor’s native token.
AIに焦点を当てた著名なプロジェクトであるBittensorは最近、一連のウォレットハッキングを受けてネットワーク運用の一時停止を余儀なくされ、その結果、BittensorのネイティブトークンであるTAOが少なくとも800万ドル損失した。
The incident comes just a month after another wallet breach that led to a loss of $11 million. The Bittensor team has now released a detailed report shedding light on the developments surrounding these attacks.
この事件は、1,100万ドルの損失をもたらした別のウォレット侵害からわずか1か月後に発生しました。 Bittensor チームは、これらの攻撃を取り巻く状況を明らかにする詳細なレポートを発表しました。
According to the report, at 7:41 PM UTC on Wednesday, the decision was made to place the Opentensor Chain Validators behind a firewall and activate safe mode on Subtensor due to the attack that affected multiple participants in the Bittensor community.
レポートによると、水曜日の午後 7 時 41 分 (協定世界時) に、Bittensor コミュニティの複数の参加者に影響を与えた攻撃のため、Opentensor Chain Validators をファイアウォールの内側に配置し、Subtensor でセーフ モードを有効にする決定が下されました。
The attack timeline indicates that the attacker initiated fund transfers from wallets to their wallet, which was detected by the Opentensor Foundation (OTF).
攻撃タイムラインは、攻撃者がウォレットからウォレットへの資金移動を開始したことを示しており、これは Opentensor Foundation (OTF) によって検出されました。
A “war room” was reportedly established to respond to the abnormality in transfer volume. Eventually, the attack was neutralized by placing the Opentensor chain validators behind a firewall and activating safe mode. This action halted all transactions, allowing for a comprehensive situational analysis of the attack.
転送量の異常に対応するため「作戦室」が設置されたという。最終的に、Opentensor チェーン検証ツールをファイアウォールの内側に配置し、セーフ モードをアクティブにすることで、攻撃は無力化されました。このアクションによりすべてのトランザクションが停止され、攻撃の包括的な状況分析が可能になりました。
The root cause of the attack was traced back to the PyPi Package Manager version 6.12.2, where a malicious package was uploaded, compromising user security.
攻撃の根本原因は PyPi Package Manager バージョン 6.12.2 にまで遡り、悪意のあるパッケージがアップロードされ、ユーザーのセキュリティが侵害されました。
This malicious package, disguised as a legitimate Bittensor file, contained code to steal unencrypted coldkey details. When users downloaded the package and decrypted their coldkeys, the decrypted bytecode was sent to a remote server controlled by the attacker.
正規の Bittensor ファイルを装ったこの悪意のあるパッケージには、暗号化されていないコールドキーの詳細を盗むコードが含まれていました。ユーザーがパッケージをダウンロードしてコールドキーを復号すると、復号されたバイトコードが攻撃者が制御するリモート サーバーに送信されました。
The vulnerability is believed to have affected individuals who used Bittensor 6.12.2 and performed operations involving the decryption of hotkeys or coldkeys.
この脆弱性は、Bittensor 6.12.2 を使用し、ホットキーまたはコールドキーの復号化を伴う操作を実行した個人に影響を及ぼしたと考えられています。
Furthermore, those who downloaded the Bittensor PyPi package between May 22, 7:14 PM UTC, and May 29, 6:47 PM UTC, and performed any relevant operations were also likely impacted.
さらに、5 月 22 日午後 7 時 14 分 (協定世界時) から 5 月 29 日午後 6 時 47 分 (協定世界時) の間に Bittensor PyPi パッケージをダウンロードし、関連する操作を実行したユーザーも影響を受ける可能性があります。
Immediate mitigation steps were taken by the OTF team, including removing the malicious 6.12.2 package from the PyPi Package Manager repository. So far, no other vulnerabilities have been identified, but a comprehensive assessment of all potential attack vectors is ongoing.
OTF チームは、PyPi パッケージ マネージャー リポジトリから悪意のある 6.12.2 パッケージを削除するなど、ただちに緩和策を講じました。これまでのところ、他の脆弱性は特定されていませんが、すべての潜在的な攻撃ベクトルの包括的な評価が進行中です。
The Bittensor team has collaborated with several exchanges to provide attack details, trace the attacker, and potentially recover funds.
Bittensor チームはいくつかの取引所と協力して、攻撃の詳細を提供し、攻撃者を追跡し、資金を回収する可能性があります。
As the code review nears completion, Opentensor plans to gradually resume normal operations of the Bittensor blockchain, allowing transactions to flow again.
コードレビューが完了に近づくにつれて、Opentensor は Bittensor ブロックチェーンの通常の動作を段階的に再開し、トランザクションが再び流れるようにする予定です。
The team emphasizes taking precautions, such as creating new wallets and transferring funds once the blockchain is operational. Upgrading to the latest version of Bittensor is strongly advised to enhance security measures.
チームは、ブロックチェーンが稼働したら新しいウォレットを作成して資金を転送するなどの予防措置を講じることを強調しています。セキュリティ対策を強化するために、Bittensor の最新バージョンにアップグレードすることを強くお勧めします。
Bittensor plans to investigate the breach with the PyPi maintainers and implement enhancements to prevent future incidents.
Bitensor は、PyPi のメンテナーとともにこの侵害を調査し、将来のインシデントを防ぐための機能強化を実装する予定です。
These enhancements include stricter access and verification processes for packages uploaded to PyPi, increased frequency of security audits, implementation of best practices in public security policies, and heightened monitoring and logging of package uploads and downloads.
これらの機能強化には、PyPi にアップロードされたパッケージのアクセスと検証プロセスの厳格化、セキュリティ監査の頻度の増加、公共セキュリティ ポリシーのベスト プラクティスの実装、パッケージのアップロードとダウンロードの監視とロギングの強化が含まれます。
At the time of writing, the project’s native token TAO is trading at $224, down over 42% in the last 30 days alone. However, the token still has significant gains of over 386% year-to-date.
本稿執筆時点で、プロジェクトのネイティブトークンTAOは224ドルで取引されており、過去30日間だけで42%以上下落した。しかし、トークンは依然として年初から386%を超える大幅な上昇を続けています。
免責事項:info@kdj.com
提供される情報は取引に関するアドバイスではありません。 kdj.com は、この記事で提供される情報に基づいて行われた投資に対して一切の責任を負いません。暗号通貨は変動性が高いため、十分な調査を行った上で慎重に投資することを強くお勧めします。
このウェブサイトで使用されているコンテンツが著作権を侵害していると思われる場合は、直ちに当社 (info@kdj.com) までご連絡ください。速やかに削除させていただきます。

































