|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Solana ベースのプラットフォーム Pump.fun が悪用を受け、ユーザーの資金数百万ドルが盗まれました。この攻撃により当初は8000万ドルの損失が懸念されたが、後に元従業員がフラッシュローンや流用資金を利用して約190万ドルを盗んだことが判明した。その後、プラットフォームのチームは契約をアップグレードし、影響を受けたユーザーに補償を提供し、ロックされたプロトコルの合計値は引き続き安全であると宣言しました。

Pump.fun Exploit: Ex-Employee Misappropriates $1.9 Million, Prompts Crypto Robin Hood Speculation
Pump.fun の悪用: 元従業員が 190 万ドルを横領、仮想通貨ロビンフッドの投機を促す
The Solana-based platform Pump.fun has fallen victim to a malicious exploit that has left the crypto community reeling. Millions of dollars in user funds have been pilfered, and the exact circumstances surrounding the attack remain shrouded in uncertainty. However, amidst the confusion, a tantalizing twist has emerged: the perpetrator may have been acting as a crypto Robin Hood, redistributing ill-gotten gains to the affected community.
Solana ベースのプラットフォーム Pump.fun が悪意のあるエクスプロイトの被害に遭い、仮想通貨コミュニティは動揺しています。数百万ドルのユーザー資金が盗まれており、攻撃を取り巻く正確な状況は依然として不確実な状況に包まれています。しかし、混乱のさなか、興味深い展開が浮上した。犯人は暗号通貨のロビンフッドとして行動し、不正に得た利益を影響を受けたコミュニティに再分配していた可能性がある。
The Incident: Millions Vanish from Pump.fun
事件: Pump.fun から数百万人が失踪
On Thursday, Pump.fun announced that its bonding curve contracts had been compromised. Trading was immediately suspended while the platform's team scrambled to investigate the incident.
木曜日、Pump.fun は、結合曲線契約が侵害されたと発表しました。プラットフォームのチームが事件の調査に奔走する間、取引は直ちに停止された。
Pump.fun operates as a trading platform designed to prevent "rugs," a term used to describe scams where tokens are abandoned by their creators after raising funds. The platform allows users to launch instantly tradeable tokens with ease, eliminating the need for presales or team allocation.
Pump.fun は、資金調達後にトークンの作成者が放棄する詐欺を表す用語である「ラグ」を防止するために設計された取引プラットフォームとして運営されています。このプラットフォームを使用すると、ユーザーは即座に取引可能なトークンを簡単に起動できるため、事前販売やチーム割り当ての必要がなくなります。
Speculation and Alarms: $80 Million Heist or Crypto Robin Hood?
憶測と警報:8000万ドル強盗か、それとも暗号通貨ロビンフッドか?
In the aftermath of the attack, the community was abuzz with speculation. Some users alleged that the attacker had siphoned away a staggering $80 million in crypto from the platform's bonding curve contracts. This alarming claim further fueled concerns among the impacted users.
攻撃の余波で、コミュニティは憶測で沸き立った。一部のユーザーは、攻撃者がプラットフォームのボンディングカーブ契約から8,000万ドルという驚異的な暗号通貨を吸い上げたと主張した。この憂慮すべき主張は、影響を受けるユーザーの懸念をさらに煽りました。
However, the plot thickened when Lookonchain, a blockchain analytics firm, released its report. The report identified the hacker and revealed a surprising twist: the individual had initially acted as an innocent victim, inquiring about the extent of the damage. However, he later accused the platform's founders of withdrawing the stolen funds a day earlier.
しかし、ブロックチェーン分析会社Lookonchainがレポートを発表すると、陰謀はさらに濃厚になった。報告書はハッカーを特定し、驚くべき展開を明らかにした。その人物は当初、無実の被害者を装い、被害の程度について尋ねていたのだ。しかしその後、同氏はプラットフォームの創設者らが前日に盗まれた資金を引き出したと非難した。
One user, who remains anonymous, suggested that the individual may have chosen to adopt the mantle of Robin Hood, distributing the hacked funds to the victims of crypto scams. The attacker himself alluded to such a motive in a post, expressing a desire to "change the course of history."
匿名のユーザーの一人は、その人物がロビン・フッドの役割を引き受けて、ハッキングされた資金を仮想通貨詐欺の被害者に分配することを選択したのではないかと示唆した。襲撃者自身も投稿の中でそのような動機をほのめかし、「歴史の流れを変えたい」という願望を表明した。
Unveiling the Truth: A Misappropriation by a Former Employee
真相を暴く 元社員による横領事件
Despite the speculation and the attacker's claims, the truth eventually emerged. Pump.fun's post-mortem post revealed that the perpetrator was a former employee who had exploited his privileged position to pilfer funds from the bonding curve contracts.
憶測や攻撃者の主張にもかかわらず、最終的に真実が明らかになりました。 Pump.fun の死後の投稿により、犯人は元従業員で、特権的地位を利用してボンディングカーブ契約から資金を盗んだことが明らかになった。
The ex-employee had gained unauthorized access to accounts by obtaining their private keys. Using his insider knowledge, he borrowed SOL, a Solana-based cryptocurrency, from a lending protocol to purchase as many tokens as possible in Pump.fun.
元従業員は、秘密鍵を取得することでアカウントに不正にアクセスしていました。彼は内部知識を利用して、Solana ベースの暗号通貨である SOL を融資プロトコルから借りて、Pump.fun でできるだけ多くのトークンを購入しました。
Once the tokens reached 100% on their respective bonding curves, the attacker utilized the compromised keys to access the bonding curve liquidity, repaying the loans he had taken out.
トークンがそれぞれの結合曲線で 100% に達すると、攻撃者は侵害されたキーを利用して結合曲線の流動性にアクセスし、借りたローンを返済しました。
Fortunately, the attacker's access was limited, and he was only able to steal $1.9 million out of the $45 million liquidity in the contracts.
幸いなことに、攻撃者のアクセスは限られており、契約の流動性 4,500 万ドルのうち 190 万ドルしか盗めませんでした。
Aftermath: Making Affected Users Whole
余波: 影響を受けたユーザーを完全にする
Following the exploit, the Pump.fun team has taken swift action to redeploy the bonding curve contracts and implement measures to assist the impacted crypto investors.
エクスプロイトを受けて、Pump.fun チームはボンディングカーブコントラクトを再展開し、影響を受けた仮想通貨投資家を支援する措置を講じるために迅速な行動をとりました。
As a gesture of goodwill, the team has pledged to "seed the LPs for each affected coin with an equal or greater amount of SOL liquidity that the coin had at 15:21 UTC within the next 24 hours." Additionally, trading fees will be waived for the next seven days.
善意のしるしとして、チームは「今後24時間以内に、影響を受ける各コインのLPに、そのコインが協定世界時15時21分の時点で持っていたのと同等以上のSOL流動性をシードする」ことを約束した。さらに、取引手数料は今後 7 日間無料となります。
This move is a "non-trivial" concession, as Pump.fun generates approximately $1 million in daily revenue from fees. The team's commitment to rectifying the situation has been met with cautious optimism by the community.
Pump.fun は手数料から毎日約 100 万ドルの収益を上げているため、この動きは「重要な」譲歩です。状況を是正するというチームの取り組みは、コミュニティから慎重ながらも楽観的な見方で迎えられています。
The Cipher: A Robin Hood or a Crypto Criminal?
暗号: ロビンフッドか暗号犯罪者か?
The Pump.fun exploit has raised intriguing questions about the nature of altruism and deceit in the crypto realm. While the initial speculation about a crypto Robin Hood may have been unfounded, the attacker's motives remain a subject of speculation.
Pump.fun エクスプロイトは、暗号領域における利他主義と欺瞞の性質について興味深い疑問を引き起こしました。暗号通貨「ロビン・フッド」に関する当初の憶測には根拠がなかったかもしれないが、攻撃者の動機は依然として憶測の対象となっている。
Some argue that the attacker's decision to redistribute a portion of the stolen funds to victims of crypto scams may have been a genuine act of remorse or rebellion against the platform's founders. Others dismiss such claims, suggesting that the attacker's actions were driven solely by self-interest.
盗まれた資金の一部を仮想通貨詐欺の被害者に再分配するという攻撃者の決定は、プラットフォームの創設者に対する真の反省または反逆の行為だったのではないかと主張する人もいる。他の人はそのような主張を却下し、攻撃者の行動は単に私利私欲によって引き起こされたことを示唆しています。
As the crypto community grapples with the aftermath of the exploit, the full extent of the attacker's intentions may never be fully known. However, the incident serves as a stark reminder of the risks associated with investing in the crypto space and the importance of exercising due diligence when entrusting funds to third parties.
暗号通貨コミュニティがエクスプロイトの余波に対処しているため、攻撃者の意図の全容が完全に解明されることは決してないかもしれません。しかし、この事件は、暗号通貨分野への投資に伴うリスクと、第三者に資金を預ける際のデューデリジェンスの重要性をはっきりと思い出させるものとなった。
免責事項:info@kdj.com
提供される情報は取引に関するアドバイスではありません。 kdj.com は、この記事で提供される情報に基づいて行われた投資に対して一切の責任を負いません。暗号通貨は変動性が高いため、十分な調査を行った上で慎重に投資することを強くお勧めします。
このウェブサイトで使用されているコンテンツが著作権を侵害していると思われる場合は、直ちに当社 (info@kdj.com) までご連絡ください。速やかに削除させていただきます。

































