|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
회사는 신용 프로토콜 Aave에 연락하여 풀이 영향을 받았는지 확인했습니다. 그러나 사이버스는 에이브(Aave) 내부의 수영장이 안전하다는 사실을 확인했다.

Web3 decentralized finance (DeFi) protocol Dough Finance has become the latest victim of a flash loan attack, losing $1.8 million in digital assets. On July 12, Web3 security firm Cyvers detected multiple suspicious transactions and contacted credit protocol Aave to ascertain whether their pools were affected. While Cyvers confirmed that the Aave pools remained untouched, Dough Finance bore the brunt of the attack.
Web3 분산 금융(DeFi) 프로토콜 Dough Finance는 플래시 대출 공격의 최신 피해자가 되어 디지털 자산에서 180만 달러를 잃었습니다. 7월 12일 Web3 보안 회사인 Cyvers는 여러 개의 의심스러운 거래를 감지하고 신용 프로토콜 Aave에 연락하여 풀이 영향을 받았는지 확인했습니다. Cyvers는 Aave 풀이 그대로 유지되었음을 확인했지만 Dough Finance는 공격의 직격탄을 맞았습니다.
According to Cyvers, the attacker was funded through zero-knowledge (ZK) protocol Railgun and exchanged the stolen USD Coin for Ethereum. In total, the attacker managed to siphon off 608 ETH, valued at approximately $1.8 million at the time of the incident.
Cyvers에 따르면 공격자는 영지식(ZK) 프로토콜인 Railgun을 통해 자금을 조달했으며 훔친 USD 코인을 이더리움으로 교환했습니다. 공격자는 사건 당시 약 180만 달러 상당의 608 ETH를 빼돌렸습니다.
Web3 security provider Olympix further noted that the exploit was a result of unvalidated call data within the “ConnectorDeleverageParaswap” contract. “The contract did not properly check the data it received during flash loan calls, allowing the attacker to manipulate it to his advantage,” explained Olympix.
Web3 보안 제공업체 Olympix는 이 악용이 "ConnectorDeleverageParaswap" 계약 내의 검증되지 않은 호출 데이터의 결과라고 덧붙였습니다. Olympix는 "계약서가 플래시 대출 호출 중에 받은 데이터를 제대로 확인하지 않았기 때문에 공격자가 이를 조작할 수 있었습니다"라고 설명했습니다.
This manipulation of the data allowed the attacker to pilfer the platform’s funds. Olympix highlighted that those who had deposited funds into Dough Finance’s exploited contract may be impacted by the hack. However, they emphasized that the Aave pools were not affected by this particular exploit.
이러한 데이터 조작을 통해 공격자는 플랫폼의 자금을 훔칠 수 있었습니다. Olympix는 Dough Finance의 악용된 계약에 자금을 예치한 사람들이 해킹의 영향을 받을 수 있다고 강조했습니다. 그러나 그들은 Aave 풀이 이 특정 공격의 영향을 받지 않았다는 점을 강조했습니다.
“If you have deposited into the exploited contract on Dough Finance, please consider withdrawing your funds to a secure wallet and monitor announcements from the Dough Finance team,” advised Olympix.
Olympix는 "Dough Finance에서 악용된 계약에 입금한 경우 안전한 지갑으로 자금을 인출하고 Dough Finance 팀의 공지를 모니터링하는 것을 고려해 보십시오"라고 조언했습니다.
“Please refrain from interacting with the protocol until the situation is resolved.”
“상황이 해결될 때까지 프로토콜과의 상호 작용을 자제해 주시기 바랍니다.”
As Dough Finance users anxiously await further updates, the broader crypto space has already lost over $1 billion in digital assets due to various incidents throughout the year.
Dough Finance 사용자가 추가 업데이트를 애타게 기다리면서, 더 넓은 암호화폐 공간은 일년 내내 다양한 사고로 인해 이미 10억 달러 이상의 디지털 자산을 잃었습니다.
On July 3, blockchain security firm CertiK released its security report, revealing that losses from onchain incidents in the first half of 2024 reached $1.19 billion. A significant portion of these losses — nearly $500 million — were attributed to phishing attacks, while private key breaches also took a heavy toll, amounting to approximately $409 million in losses.
7월 3일, 블록체인 보안 회사인 CertiK는 보안 보고서를 발표하여 2024년 상반기 온체인 사고로 인한 손실이 11억 9천만 달러에 달했다고 밝혔습니다. 이러한 손실 중 상당 부분(거의 5억 달러)은 피싱 공격으로 인한 것이며, 개인 키 침해 역시 막대한 피해를 입혀 약 4억 900만 달러에 달합니다.
CertiK co-founder Ronghui Gu emphasized the critical need to implement multi-factor authentication methods, such as two-factor authentication (2FA) and security keys, to bolster protection against phishing attempts.
CertiK 공동 창립자 Ronghui Gu는 피싱 시도에 대한 보호를 강화하기 위해 2단계 인증(2FA) 및 보안 키와 같은 다단계 인증 방법을 구현해야 하는 중요한 필요성을 강조했습니다.
부인 성명:info@kdj.com
제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!
본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

































