|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
この最近の事件は、デジタル資産のセキュリティの脆弱性を浮き彫りにしました。これは、Web3 ドメインにおけるサイバー犯罪被害者が増加するという広範な傾向も示しています。

A recent Web3 phishing attack has resulted in the loss of $55 million worth of Dai tokens, highlighting ongoing vulnerabilities in the security of digital assets. This incident also contributes to a broader trend of increasing cybercrime victimisation within the Web3 domain.
最近の Web3 フィッシング攻撃により、5,500 万ドル相当の Dai トークンが損失し、デジタル資産のセキュリティにおける継続的な脆弱性が浮き彫りになりました。この事件は、Web3 ドメイン内でサイバー犯罪の被害が増加するという広範な傾向にも寄与しています。
The Dai tokens, valued at $55 million at the time of the attack, were stolen by an attacker identified as Fake_Phishing187019, according to a detailed post-mortem report by CertiK Alert on 21 August.
CertiK Alertによる8月21日の詳細な事後報告書によると、攻撃当時5,500万ドル相当のDaiトークンは、Fake_Phishing187019として特定される攻撃者によって盗まれた。
"CertiK Alert: Fake_Phishing187019 (Inferno Drainer) set the owner address of a Maker vault to 0x5d4b2a02c59197eb2cae95a6df9fe27af60459d4 and minted 55,473,618 Dai tokens (~$55M) to it. Stay Vigilant! "
「CertiK アラート: Fake_Phishing187019 (Inferno Drainer) は Maker ボールトの所有者アドレスを 0x5d4b2a02c59197eb2cae95a6df9fe27af60459d4 に設定し、それに 55,473,618 Dai トークン (~5,500 万ドル) を鋳造しました。警戒してください!」
The attack involved the exploitation of weaknesses in externally owned accounts (EOAs), which are digital wallets that can be compromised if not adequately secured, akin to bank accounts. The stolen tokens were swiftly laundered through a complex trading network designed to obscure the movement of the tokens.
この攻撃には、銀行口座と同様に、適切に保護されていない場合に侵害される可能性があるデジタル ウォレットである外部所有アカウント (EOA) の弱点の悪用が含まれていました。盗まれたトークンは、トークンの動きを隠蔽するように設計された複雑な取引ネットワークを通じて迅速に洗浄されました。
After stealing the Dai tokens, the attacker began laundering the funds through a bulk transfer of $36 million to an unidentified address followed by an additional $17.5 million routed through the CoW protocol.
Dai トークンを盗んだ後、攻撃者は正体不明のアドレスに 3,600 万ドルを一括送金し、その後さらに 1,750 万ドルを CoW プロトコル経由で送金することで資金洗浄を開始しました。
Continuing efforts to conceal the assets saw the stolen funds being exchanged for bundles of ETH and Bitcoin through Uniswap V3, a decentralized cryptocurrency exchange. This method of theft underscores the criminal desire to efficiently hide and disperse stolen funds.
資産を隠蔽するための継続的な努力により、盗まれた資金は分散型暗号通貨取引所であるUniswap V3を通じてETHとビットコインのバンドルと交換された。この窃盗の手口は、盗まれた資金を効率的に隠して分散させたいという犯罪者の欲望を浮き彫りにします。
The incident serves as the latest in a string of cyber attacks targeting Web3, highlighting an alarming trend. Scams, hacks, cyberattacks, and rugpulls have become common occurrences within the crypto and Web3 realm, and this new theft adds to the concerning narrative.
この事件は、Web3 を標的とした一連のサイバー攻撃の最新のものであり、憂慮すべき傾向を浮き彫りにしています。暗号通貨と Web3 の分野では、詐欺、ハッキング、サイバー攻撃、ラグプルが日常的に発生するようになり、この新たな窃盗が憂慮すべき事態に拍車をかけています。
According to CertiK, around $270.9 million was lost to various breaches, hacks, and fraud in July, of which only $7.8 million was recovered. The report details losses incurred from exit scams, flash loans, and other exploits, presenting a sobering account of the current security landscape.
CertiK によると、7 月にはさまざまな侵害、ハッキング、詐欺により約 2 億 7,090 万ドルが失われ、そのうち回収されたのは 780 万ドルのみでした。この報告書は、出口詐欺、フラッシュローン、その他の悪用によって生じた損失を詳述しており、現在の安全保障情勢についての厳粛な説明を示しています。
"CertiK Stats Alert: Combining all the incidents in July we’ve confirmed ~$270.9m lost to exploits, hacks and scams after ~$7.8m was returned. The amount is the second highest monthly loss so far in 2024.
「CertiK Stats Alert: 7 月のすべてのインシデントを合計すると、約 780 万ドルが返還された後、エクスプロイト、ハッキング、詐欺により約 2 億 7,090 万ドルの損失が確認されました。この金額は、2024 年これまでで 2 番目に高い月間損失額です。」
Exit scams: ~$3m
離脱詐欺: ~300 万ドル
Flash loans: ~$265.8m
フラッシュローン: ~2億6,580万ドル
Exploits: ~$9.8m
エクスプロイト: ~980万ドル
"
」
The recent WazirX hack, which resulted in a loss of $230 million, further exemplifies the sector's vulnerability.
2 億 3,000 万ドルの損失をもたらした最近の WazirX ハッキングは、この分野の脆弱性をさらに例示しています。
Cryptocurrency scams exploit the decentralized nature of digital currencies, employing diverse tactics to swindle victims. These scams range from Ponzi schemes that collapse when new investments cease to flow, to phishing attacks that attempt to extract private keys through fake websites or emails, and ICO scams that vanish after collecting funds.
暗号通貨詐欺は、デジタル通貨の分散型の性質を悪用し、被害者を騙すためにさまざまな戦術を採用します。これらの詐欺は、新たな投資が流れなくなると崩壊するポンジスキームから、偽の Web サイトや電子メールを通じて秘密鍵を抽出しようとするフィッシング攻撃、資金を集めた後に消滅する ICO 詐欺まで多岐にわたります。
Pump and dump schemes inflate prices before selling off their holdings, while exit scams involve sudden shutdowns that leave investors stranded without their money. Additionally, fake wallets and exchanges are used to steal funds, and malware or ransomware can lock data, holding it hostage for a ransom.
ポンプ・アンド・ダンプ・スキームでは、保有株を売却する前に価格をつり上げますが、イグジット詐欺では、投資家が資金を失って立ち往生する突然の閉鎖が伴います。さらに、偽のウォレットや取引所は資金を盗むために使用され、マルウェアやランサムウェアはデータをロックして身代金を求める人質に取る可能性があります。
Finally, pyramid schemes rely on new recruits to pay earlier members in a collapsing chain of payments. To safeguard against these scams, users are advised to thoroughly research projects, verify their legitimacy, and employ security measures such as hardware wallets and two-factor authentication.
最後に、ねずみ講は、崩壊する一連の支払いの中で、新入社員に以前のメンバーへの支払いを依頼しています。これらの詐欺から身を守るために、ユーザーはプロジェクトを徹底的に調査し、その正当性を検証し、ハードウェアウォレットや二要素認証などのセキュリティ対策を採用することをお勧めします。
免責事項:info@kdj.com
提供される情報は取引に関するアドバイスではありません。 kdj.com は、この記事で提供される情報に基づいて行われた投資に対して一切の責任を負いません。暗号通貨は変動性が高いため、十分な調査を行った上で慎重に投資することを強くお勧めします。
このウェブサイトで使用されているコンテンツが著作権を侵害していると思われる場合は、直ちに当社 (info@kdj.com) までご連絡ください。速やかに削除させていただきます。

































