2,600만 달러 규모의 Ether 도난으로 인해 Truebit의 TRU 토큰이 충돌하여 레거시 스마트 계약 취약점이 노출되었습니다. DeFi 세계에 대한 엄연한 알림입니다.

Another Day, Another Digital Dollar Disappears
또 다른 날, 또 다른 디지털 달러가 사라진다
Well, folks, grab a cuppa and settle in. It seems the wild, wired world of decentralized finance just served up another stark reminder of its volatile nature. This time, the spotlight’s on Truebit, an Ethereum-based project that watched its TRU token plummet nearly 99.9% faster than a hot dog vendor closing shop on a rainy Tuesday. The culprit? A sophisticated hacker, who, with a flair for the dramatic, drained approximately 8,535 Ether – a cool $26.6 million – from the protocol’s reserves. It’s a story as old as time, or at least as old as five-year-old smart contracts.
글쎄요, 여러분, 한 잔 마시고 정착하세요. 탈중앙화 금융의 거칠고 연결된 세계는 방금 그 변덕스러운 성격을 또 다른 극명하게 상기시켜 준 것 같습니다. 이번에는 비오는 화요일에 핫도그 판매점이 문을 닫는 것보다 TRU 토큰이 거의 99.9% 빠르게 급락하는 것을 지켜본 이더리움 기반 프로젝트인 Truebit이 주목을 받고 있습니다. 범인은? 극적인 재능을 지닌 정교한 해커는 프로토콜 보유고에서 약 8,535 Ether(약 2,660만 달러)를 빼냈습니다. 그것은 시간만큼 오래된 이야기이거나 적어도 5년 된 스마트 계약만큼 오래된 이야기입니다.
The Glitch in the Old Machine: How the Ether Vanished
오래된 기계의 결함: 에테르가 사라진 이유
According to the digital detectives at Lookonchain and independent researchers like Weilin Li, this wasn’t some cutting-edge, never-before-seen trick. No, this was a classic case of an antique vulnerability. The attacker exploited a flaw in an *older* smart contract, deployed roughly half a decade ago. Imagine that: code from 2021 coming back to bite you in 2026. This particular old-timer had a minting function that, under just the right (or wrong) conditions, would essentially give away TRU tokens for free. Our resourceful hacker then repeatedly bought these 'free' tokens and immediately sold them back into the protocol’s reserve, steadily siphoning off Ether with each transaction. They even reportedly paid a small 'builder bribe' to ensure their transactions got VIP treatment, like getting the best table at a crowded restaurant.
Lookonchain의 디지털 탐정과 Weilin Li와 같은 독립 연구원에 따르면 이것은 이전에 볼 수 없었던 최첨단 기술이 아니었습니다. 아니요, 이것은 골동품 취약점의 전형적인 사례였습니다. 공격자는 약 5년 전에 배포된 *오래된* 스마트 계약의 결함을 악용했습니다. 2021년의 코드가 2026년에 다시 돌아올 것이라고 상상해 보십시오. 이 특별한 노련한 사람은 단지 올바른(또는 잘못된) 조건 하에서 기본적으로 TRU 토큰을 무료로 제공하는 발행 기능을 가지고 있었습니다. 그런 다음 우리의 유능한 해커는 이러한 '무료' 토큰을 반복적으로 구입하고 즉시 프로토콜의 예비금으로 다시 판매하여 각 거래마다 꾸준히 Ether를 빼냈습니다. 그들은 붐비는 레스토랑에서 최고의 테이블을 얻는 것과 같이 거래가 VIP 대우를 받도록 하기 위해 소액의 '건축업자 뇌물'을 지불한 것으로 알려졌습니다.
Market Mayhem and a Muted Response
시장 대혼란과 묵묵한 대응
As word spread, the TRU token’s price did a swan dive, leaving many investors with holdings worth less than a subway token. Liquidity evaporated, and panic selling ensued. Truebit, for its part, acknowledged the
소문이 퍼지면서 TRU 토큰의 가격은 급락하여 많은 투자자들이 지하철 토큰보다 가치가 낮은 보유 자산을 갖게 되었습니다. 유동성이 증발하고 공황 매도가 이어졌습니다. Truebit은 그 부분을 인정했습니다.