Truebit の TRU トークンは、2,600 万ドルのイーサ盗難後にクラッシュし、従来のスマート コントラクトの脆弱性が暴露されました。 DeFiの世界における厳しい思い出です。

Another Day, Another Digital Dollar Disappears
またある日、またデジタルドルが消える
Well, folks, grab a cuppa and settle in. It seems the wild, wired world of decentralized finance just served up another stark reminder of its volatile nature. This time, the spotlight’s on Truebit, an Ethereum-based project that watched its TRU token plummet nearly 99.9% faster than a hot dog vendor closing shop on a rainy Tuesday. The culprit? A sophisticated hacker, who, with a flair for the dramatic, drained approximately 8,535 Ether – a cool $26.6 million – from the protocol’s reserves. It’s a story as old as time, or at least as old as five-year-old smart contracts.
さて、皆さん、一杯飲んで落ち着いてください。分散型金融のワイルドで有線の世界は、その不安定な性質を改めてはっきりと思い出させたようです。今回は、イーサリアムベースのプロジェクトである Truebit にスポットライトを当てます。Truebit は、雨の火曜日に店を閉めるホットドッグ屋よりも 99.9% 近い速さで TRU トークンが急落するのを目撃しました。犯人は?洗練されたハッカーで、劇的な展開の才能を持ち、プロトコルの準備金から約 8,535 イーサ (2,660 万ドル相当) を吸い出しました。これははるか昔の話、少なくとも 5 年前のスマート コントラクトと同じくらい古い話です。
The Glitch in the Old Machine: How the Ether Vanished
古いマシンの不具合: エーテルはどのようにして消えたのか
According to the digital detectives at Lookonchain and independent researchers like Weilin Li, this wasn’t some cutting-edge, never-before-seen trick. No, this was a classic case of an antique vulnerability. The attacker exploited a flaw in an *older* smart contract, deployed roughly half a decade ago. Imagine that: code from 2021 coming back to bite you in 2026. This particular old-timer had a minting function that, under just the right (or wrong) conditions, would essentially give away TRU tokens for free. Our resourceful hacker then repeatedly bought these 'free' tokens and immediately sold them back into the protocol’s reserve, steadily siphoning off Ether with each transaction. They even reportedly paid a small 'builder bribe' to ensure their transactions got VIP treatment, like getting the best table at a crowded restaurant.
Lookonchain のデジタル探偵や Weilin Li のような独立研究者によると、これは最先端の、これまでに見たことのないトリックではありませんでした。いいえ、これは古い脆弱性の典型的なケースでした。攻撃者は、約 5 年前に導入された *古い* スマート コントラクトの欠陥を悪用しました。想像してみてください。2021 年のコードが 2026 年に戻ってきて、あなたを苦しめるでしょう。この古いタイマーは、適切な (または間違った) 条件下で、基本的に TRU トークンを無料で配布する鋳造機能を持っていました。その後、私たちの機知に富んだハッカーは、これらの「無料」トークンを繰り返し購入し、すぐにプロトコルの準備金に売り戻し、トランザクションのたびに着実にイーサを吸い上げました。伝えられるところによると、彼らは、混雑したレストランで最高のテーブルを確保するなど、自分たちの取引にVIP待遇を確実に提供するために、少額の「建設業者の賄賂」を支払ったとも言われています。
Market Mayhem and a Muted Response
市場の混乱と沈黙の反応
As word spread, the TRU token’s price did a swan dive, leaving many investors with holdings worth less than a subway token. Liquidity evaporated, and panic selling ensued. Truebit, for its part, acknowledged the
噂が広がるにつれ、TRUトークンの価格は急落し、多くの投資家が地下鉄トークン以下の価値の保有を残した。流動性がなくなり、パニック売りが起こった。 Truebit 側も、次のことを認めました。