|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
暗号通貨融資プラットフォームの Compound Finance と Celer Network の Web サイトが攻撃され、ユーザーが悪意のあるフィッシング サイトにリダイレクトされます。

The websites of crypto lending platform Compound Finance and Celer Network have been attacked, redirecting users to a malicious phishing site, according to multiple security researchers on Friday.
金曜日、複数のセキュリティ研究者らは、仮想通貨融資プラットフォームのCompound FinanceとCeler NetworkのWebサイトが攻撃を受け、ユーザーを悪意のあるフィッシングサイトにリダイレクトしたと発表した。
Compound, one of the longest-established decentralized finance (DeFi) applications, holds assets worth over $2 billion, according to data from DeFiLlama. Celer’s cBridge allows users to send tokens between 14 blockchains, processing over $200 million in volume last month.
DeFiLlamaのデータによると、Compoundは最も長く確立されている分散型金融(DeFi)アプリケーションの1つで、20億ドル以上の価値のある資産を保有している。 CelerのcBridgeを使用すると、ユーザーは14のブロックチェーン間でトークンを送信でき、先月の処理量は2億ドルを超えました。
Security advisor to the Compound DAO, Michael Lewellen, posted a community alert via X (formerly Twitter), urging users to avoid the platform’s website. A total of 90 minutes passed before the attack was confirmed by Compound Finance. The breach was highlighted earlier by ZachXBT via Telegram.
Compound DAOのセキュリティアドバイザーであるMichael Lewellen氏は、X(旧Twitter)経由でコミュニティ警告を投稿し、ユーザーにプラットフォームのWebサイトを避けるよう促した。 Compound Finance が攻撃を確認するまでに合計 90 分が経過しました。この侵害は、Telegram 経由で ZachXBT によって以前に強調されました。
ALERT: The https://t.co/vSAGYl6wwJ URL has been compromised and is currently hosting a phishing site. DO NOT interact with the https://t.co/vSAGYl6wwJ website until further notice.The Compound protocol itself is not impacted and all smart contract funds are safe.
警告: https://t.co/vSAGYl6wwJ URL が侵害され、現在フィッシング サイトをホストしています。追って通知があるまで、https://t.co/vSAGYl6wwJ Web サイトを操作しないでください。Compound プロトコル自体は影響を受けず、すべてのスマート コントラクト ファンドは安全です。
Celer Network alerted users four hours later to a similar attack that “seems to be hitting multiple projects at the same time.” Pseudonymous security researcher Samczsun suspects the breaches to have come from Squarespace. A list of other domains that may be at risk was compiled by DeFiLlama’s 0xngmi.
Celer Networkは4時間後、「複数のプロジェクトを同時に攻撃していると思われる」同様の攻撃についてユーザーに警告した。仮名のセキュリティ研究者 Samczsun 氏は、この侵害は Squarespace からのものではないかと疑っています。リスクにさらされている可能性のある他のドメインのリストは、DeFiLlama の 0xngmi によって編集されました。
This type of attack, known as a “front-end” attack, is a relatively common vector for crypto hackers. The method doesn’t rely on finding a bug to exploit within the underlying smart contract code, instead simply replacing the project’s website with a malicious version.
「フロントエンド」攻撃として知られるこのタイプの攻撃は、暗号ハッカーにとって比較的一般的なベクトルです。この方法は、基礎となるスマート コントラクト コード内で悪用できるバグを見つけることに依存せず、単にプロジェクトの Web サイトを悪意のあるバージョンに置き換えるだけです。
A potential attacker must compromise the domain name service (DNS) registrar, generally using financial incentives or social engineering techniques on an employee. In response to the front-end attack that hit Curve Finance in June 2022, the CEO of Namecheap (the DNS registrar responsible) stated that a customer service agent was compromised, either being hacked or exploited with bitcoin.
潜在的な攻撃者は、通常、従業員に対する金銭的インセンティブやソーシャル エンジニアリング手法を使用して、ドメイン ネーム サービス (DNS) レジストラを侵害する必要があります。 2022 年 6 月に Curve Finance を襲ったフロントエンド攻撃に対応して、Namecheap (DNS レジストラを担当) の CEO は、カスタマー サービス エージェントがハッキングまたはビットコイン悪用により侵害されたと述べました。
Dear @iwantmyname, looks like something is compromised on your side (most likely, name servers – they seem to override what the UI tells them to serve). Please do something.For everyone else: we switched nameserver, but don't rush to use https://t.co/vOeMYOTq0l – wait a bit
@iwantmyname 様、あなたの側で何かが侵害されているようです (おそらくネーム サーバーです。UI が提供するように指示したものをオーバーライドしているようです)。何とかしてください。他の皆さんへ: ネームサーバーを切り替えましたが、急いで https://t.co/vOeMYOTq0l を使用しないでください – 少しお待ちください
Similar incidents have affected many major DeFi platforms, such as Curve Finance, Cream Finance, Pancake Swap, Balancer, Frax and Velodrome, among others.
同様の事件は、Curve Finance、Cream Finance、Pancake Swap、Balancer、Frax、Velodrome など、多くの主要な DeFi プラットフォームに影響を及ぼしました。
Previous hacks often involve cloning the original website, but swapping out key elements which can lead to users’ wallets crafting malicious transactions. This could be to transfer funds directly to an address controlled by the hacker, or to “harvest” token approvals.
これまでのハッキングでは、元の Web サイトのクローンを作成することが多く、重要な要素が交換され、ユーザーのウォレットで悪意のあるトランザクションが作成される可能性がありました。これは、ハッカーが管理するアドレスに資金を直接転送すること、またはトークンの承認を「収集」することを目的としている可能性があります。
This approvals harvesting technique was used to devastating effect in the $120 million BadgerDAO hack of December 2021.
この承認収集手法は、2021 年 12 月の 1 億 2,000 万ドルの BadgerDAO ハッキングで壊滅的な効果をもたらすために使用されました。
Over the course of 12 days, BadgerDAO users inadvertently signed malicious approval transactions which granted the exploiter permission to spend tokens directly from the victims’ wallets. Now-bankrupt Celsius was among the victims, losing 897 BTC (then valued at over $40 million) before later forfeiting $22 million in compensation due to an ‘unforced error’.
12 日間にわたり、BadgerDAO ユーザーは誤って悪意のある承認トランザクションに署名し、悪用者に被害者のウォレットからトークンを直接使用する許可を与えてしまいました。現在破産したセルシアスも被害者の一人で、897BTC(当時4000万ドル以上相当)を失い、後に「アンフォーストエラー」により2200万ドルの賠償金を剥奪された。
Here is the current whereabouts as well as the total loss: $120.3M (with ~2.1k BTC + 151 ETH) @BadgerDAO pic.twitter.com/fJ4hJcMWTq
現在の居場所と損失総額は次のとおりです: $120.3M (約 2.1k BTC + 151 ETH) @BadgerDAO pic.twitter.com/fJ4hJcMWTq
Despite today’s incident, Compound’s back-end code is considered among the most secure in DeFi, with any changes requiring scrutiny via a fully on-chain governance process.
今日の事件にもかかわらず、Compound のバックエンド コードは DeFi で最も安全なものの 1 つと考えられており、変更には完全なオンチェーン ガバナンス プロセスによる精査が必要です。
Low-effort “forks”, however, regularly find themselves exploited due to dodgy collateral or basic errors when setting up new markets.
しかし、労力の少ない「フォーク」は、新しい市場を立ち上げる際の危険な担保や基本的なエラーによって悪用されることがよくあります。
Compound itself hasn’t been entirely without its issues in the past, though.
ただし、コンパウンド自体には過去にまったく問題がなかったわけではありません。
? Alert: @compoundfinance's Twitter account has been compromised. Do not click on any links posted from their account.A phishing link (compound-labs[.]xyz) was spotted 16 hours ago.Stay vigilant and ensure the safety of your assets by avoiding suspicious links. pic.twitter.com/yoa1RM4P4E
? 警告: @compoundfinance の Twitter アカウントが侵害されました。アカウントから投稿されたリンクはクリックしないでください。フィッシング リンク (compound-labs[.]xyz) が 16 時間前に発見されました。警戒を怠らず、疑わしいリンクを避けることで資産の安全を確保してください。 pic.twitter.com/yoa1RM4P4E
The project’s X account was compromised in December 2023 to spread a phishing link, promising free COMP, the project’s native token.
プロジェクトの X アカウントは 2023 年 12 月に侵害され、プロジェクトのネイティブ トークンである無料の COMP を約束するフィッシング リンクが拡散されました。
In September and October of 2021, a total of almost $150 million worth of COMP was accidentally distributed as excess rewards to users. Another incident the following year saw the platform’s $830 million ETH market frozen for a week.
2021 年の 9 月と 10 月に、合計約 1 億 5,000 万ドル相当の COMP が超過報酬としてユーザーに誤って配布されました。翌年の別の事件では、プラットフォームの8億3,000万ドルのETH市場が1週間凍結されました。
免責事項:info@kdj.com
提供される情報は取引に関するアドバイスではありません。 kdj.com は、この記事で提供される情報に基づいて行われた投資に対して一切の責任を負いません。暗号通貨は変動性が高いため、十分な調査を行った上で慎重に投資することを強くお勧めします。
このウェブサイトで使用されているコンテンツが著作権を侵害していると思われる場合は、直ちに当社 (info@kdj.com) までご連絡ください。速やかに削除させていただきます。

































