|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
同社はクレジットプロトコルAaveに連絡し、プールが影響を受けているかどうかを確認した。しかし、Cyvers は Aave 内のプールが安全であることを確認しました。

Web3 decentralized finance (DeFi) protocol Dough Finance has become the latest victim of a flash loan attack, losing $1.8 million in digital assets. On July 12, Web3 security firm Cyvers detected multiple suspicious transactions and contacted credit protocol Aave to ascertain whether their pools were affected. While Cyvers confirmed that the Aave pools remained untouched, Dough Finance bore the brunt of the attack.
Web3 分散型金融 (DeFi) プロトコル Dough Finance がフラッシュ ローン攻撃の最新の被害者となり、デジタル資産 180 万ドルを失いました。 7 月 12 日、Web3 セキュリティ会社 Cyvers は複数の不審な取引を検出し、クレジット プロトコル Aave に連絡して、自社のプールが影響を受けているかどうかを確認しました。 Cyvers は Aave プールが無傷のままであることを確認しましたが、Dough Finance が攻撃の矢面に立たされました。
According to Cyvers, the attacker was funded through zero-knowledge (ZK) protocol Railgun and exchanged the stolen USD Coin for Ethereum. In total, the attacker managed to siphon off 608 ETH, valued at approximately $1.8 million at the time of the incident.
サイバーズ氏によると、攻撃者はゼロ知識(ZK)プロトコルのレールガンを通じて資金提供を受け、盗んだUSDコインをイーサリアムと交換したという。攻撃者は合計で 608 ETH (事件当時で約 180 万ドル相当) を吸い出すことに成功しました。
Web3 security provider Olympix further noted that the exploit was a result of unvalidated call data within the “ConnectorDeleverageParaswap” contract. “The contract did not properly check the data it received during flash loan calls, allowing the attacker to manipulate it to his advantage,” explained Olympix.
Web3 セキュリティ プロバイダーである Olympix はさらに、このエクスプロイトは「ConnectorDeleverageParaswap」契約内の未検証の通話データの結果であると指摘しました。 「契約では、フラッシュローンの通話中に受け取ったデータを適切にチェックしておらず、攻撃者が自分に有利になるようにデータを操作することができた」とオリンピック社は説明した。
This manipulation of the data allowed the attacker to pilfer the platform’s funds. Olympix highlighted that those who had deposited funds into Dough Finance’s exploited contract may be impacted by the hack. However, they emphasized that the Aave pools were not affected by this particular exploit.
このデータ操作により、攻撃者はプラットフォームの資金を盗むことができました。オリンピックは、Dough Financeの悪用された契約に資金を預けた人々がハッキングの影響を受ける可能性があると強調した。ただし、Aave プールはこの特定のエクスプロイトの影響を受けていないことを強調しました。
“If you have deposited into the exploited contract on Dough Finance, please consider withdrawing your funds to a secure wallet and monitor announcements from the Dough Finance team,” advised Olympix.
「Dough Financeの悪用された契約に入金した場合は、資金を安全なウォレットに引き出し、Dough Financeチームからの発表を監視することを検討してください」とオリンピクスはアドバイスした。
“Please refrain from interacting with the protocol until the situation is resolved.”
「状況が解決するまでプロトコルとのやり取りを控えてください。」
As Dough Finance users anxiously await further updates, the broader crypto space has already lost over $1 billion in digital assets due to various incidents throughout the year.
Dough Finance ユーザーがさらなるアップデートを心配して待っている中、広範な暗号通貨スペースでは、年間を通じてさまざまな事件により、すでに 10 億ドル以上のデジタル資産が失われています。
On July 3, blockchain security firm CertiK released its security report, revealing that losses from onchain incidents in the first half of 2024 reached $1.19 billion. A significant portion of these losses — nearly $500 million — were attributed to phishing attacks, while private key breaches also took a heavy toll, amounting to approximately $409 million in losses.
7月3日、ブロックチェーンセキュリティ企業CertiKはセキュリティレポートを発表し、2024年上半期のオンチェーンインシデントによる損失が11億9000万ドルに達したことを明らかにした。これらの損失の大部分 (約 5 億ドル) はフィッシング攻撃によるものであり、秘密鍵侵害も大きな被害をもたらし、損失額は約 4 億 900 万ドルに達しました。
CertiK co-founder Ronghui Gu emphasized the critical need to implement multi-factor authentication methods, such as two-factor authentication (2FA) and security keys, to bolster protection against phishing attempts.
CertiK の共同創設者 Ronghui Gu 氏は、フィッシング攻撃に対する保護を強化するために、2 要素認証 (2FA) やセキュリティ キーなどの多要素認証方法を実装することが重要であると強調しました。
免責事項:info@kdj.com
提供される情報は取引に関するアドバイスではありません。 kdj.com は、この記事で提供される情報に基づいて行われた投資に対して一切の責任を負いません。暗号通貨は変動性が高いため、十分な調査を行った上で慎重に投資することを強くお勧めします。
このウェブサイトで使用されているコンテンツが著作権を侵害していると思われる場合は、直ちに当社 (info@kdj.com) までご連絡ください。速やかに削除させていただきます。

































