|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
dYdX에 따르면 2024년 7월 23일 공격자가 DNS 네임서버를 변경하고 DNSSEC를 제거하면서 "dYdX.exchange" 도메인이 손상되었습니다.

Two users lost approximately $31,000 in a recent DNS (Domain Name System) hijack of dYdX, according to a post-mortem analysis published by the decentralized exchange (DEX).
분산형 거래소(DEX)가 발표한 사후 분석에 따르면 최근 dYdX의 DNS(도메인 이름 시스템) 하이재킹으로 두 명의 사용자가 약 31,000달러의 손실을 입었습니다.
The incident occurred on July 23, 2024, when an attacker compromised the "dYdX.exchange" domain and changed the DNS nameservers, according to dYdX. The attacker also removed the DNSSEC, which is supposed to add a layer of trust to the DNS by providing authentication.
dYdX에 따르면 이 사건은 2024년 7월 23일 공격자가 "dYdX.exchange" 도메인을 손상시키고 DNS 네임서버를 변경하면서 발생했습니다. 공격자는 인증을 제공하여 DNS에 신뢰 계층을 추가하도록 되어 있는 DNSSEC도 제거했습니다.
After discovering the attack, dYdX said it immediately contacted Squarespace's customer support, who began working to restore domain possession and fix the DNS nameserver resolution, which was completed within a few hours. However, there was a 30-minute delay in Squarespace's response due to third-party vendor maintenance.
dYdX는 공격을 발견한 후 즉시 Squarespace의 고객 지원팀에 연락하여 도메인 소유권을 복원하고 DNS 이름 서버 확인을 수정하기 시작했으며 몇 시간 내에 완료되었다고 말했습니다. 그러나 타사 공급업체 유지 관리로 인해 Squarespace의 응답이 30분 지연되었습니다.
During this delay, the attacker reportedly hosted a malicious site, which requested connected wallets to send ETH or any ERC20 token to the attacker's address. At the same time, dYdXs worked with SEAL to blacklist the site from crypto wallets such as Metamask and Phantom.
이 지연 기간 동안 공격자는 연결된 지갑에 ETH 또는 ERC20 토큰을 공격자의 주소로 보내도록 요청하는 악성 사이트를 호스팅한 것으로 알려졌습니다. 동시에 dYdXs는 SEAL과 협력하여 Metamask 및 Phantom과 같은 암호화폐 지갑에서 사이트를 블랙리스트에 올렸습니다.
"2 users were affected with approximately $31,000 in lost funds due to this attack. dYdX trading is in contact with both affected users and is assisting in securing their wallets and is committed to recovering funds," dYdX explained in the post-mortem analysis.
dYdX는 사후 분석에서 "2명의 사용자가 이 공격으로 인해 약 31,000달러의 자금 손실을 입었습니다. dYdX 거래는 영향을 받은 두 사용자 모두와 연락하여 지갑 보안을 지원하고 자금 회수에 최선을 다하고 있습니다"라고 설명했습니다.
The identity of the attacker is still unknown, but they appear to be a fairly skilled actor, according to the post-mortem analysis, which raises the possibility of a social engineering attack, considering that the perpetrator deliberately chose a human-believable email address.
공격자의 신원은 아직 알려지지 않았지만 사후 분석에 따르면 상당히 숙련된 행위자로 보인다. 이는 가해자가 의도적으로 사람이 믿을 수 있는 이메일 주소를 선택한 점을 고려하면 소셜엔지니어링 공격의 가능성이 제기된다.
Earlier this month, several decentralized finance (DeFi) applications were impacted by a large DNS hijacking incident, which also targeted multiple DEXs.
이달 초 여러 탈중앙화 금융(DeFi) 애플리케이션이 여러 DEX를 표적으로 삼은 대규모 DNS 하이재킹 사건의 영향을 받았습니다.
The attack, which was later traced back to a vulnerability in Squarespace's domain registry, also compromised several other DeFi platforms, including Compound Finance and Pendle Finance.
나중에 Squarespace 도메인 레지스트리의 취약점으로 추적된 이 공격은 컴파운드 파이낸스(Compound Finance)와 펜들 파이낸스(Pendle Finance)를 포함한 다른 여러 DeFi 플랫폼도 손상시켰습니다.
부인 성명:info@kdj.com
제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!
본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

































