|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Solana 기반 플랫폼 Pump.fun은 수백만 달러의 사용자 자금을 도난당하는 악용을 겪었습니다. 이 공격으로 처음에는 8천만 달러의 손실에 대한 우려가 제기되었지만 나중에 전직 직원이 임시 대출과 횡령 자금을 사용하여 약 190만 달러를 훔친 것으로 밝혀졌습니다. 이후 플랫폼 팀은 계약을 업그레이드하고 영향을 받은 사용자에게 보상을 제공했으며 프로토콜의 전체 가치가 안전하게 유지된다고 선언했습니다.

Pump.fun Exploit: Ex-Employee Misappropriates $1.9 Million, Prompts Crypto Robin Hood Speculation
Pump.fun 악용: 전 직원이 190만 달러를 유용하고 암호화폐 로빈후드 추측이 촉발됨
The Solana-based platform Pump.fun has fallen victim to a malicious exploit that has left the crypto community reeling. Millions of dollars in user funds have been pilfered, and the exact circumstances surrounding the attack remain shrouded in uncertainty. However, amidst the confusion, a tantalizing twist has emerged: the perpetrator may have been acting as a crypto Robin Hood, redistributing ill-gotten gains to the affected community.
Solana 기반 플랫폼 Pump.fun이 암호화폐 커뮤니티를 휘청이게 만든 악의적인 공격의 희생양이 되었습니다. 수백만 달러에 달하는 사용자 자금이 도난당했으며, 공격을 둘러싼 정확한 상황은 여전히 불확실합니다. 그러나 혼란 속에서 감질나는 반전이 나타났습니다. 가해자는 암호화폐 로빈 후드 역할을 하여 부당하게 얻은 이익을 피해를 입은 커뮤니티에 재분배했을 수 있습니다.
The Incident: Millions Vanish from Pump.fun
사건: Pump.fun에서 수백만 명이 사라졌습니다.
On Thursday, Pump.fun announced that its bonding curve contracts had been compromised. Trading was immediately suspended while the platform's team scrambled to investigate the incident.
목요일에 Pump.fun은 본딩 곡선 계약이 손상되었다고 발표했습니다. 플랫폼 팀이 사건을 조사하기 위해 서두르는 동안 거래가 즉시 중단되었습니다.
Pump.fun operates as a trading platform designed to prevent "rugs," a term used to describe scams where tokens are abandoned by their creators after raising funds. The platform allows users to launch instantly tradeable tokens with ease, eliminating the need for presales or team allocation.
Pump.fun은 자금 조달 후 토큰 제작자가 토큰을 버리는 사기를 설명하는 데 사용되는 용어인 "러그"를 방지하기 위해 설계된 거래 플랫폼으로 운영됩니다. 이 플랫폼을 통해 사용자는 즉시 거래 가능한 토큰을 쉽게 출시할 수 있으므로 사전 판매나 팀 할당이 필요하지 않습니다.
Speculation and Alarms: $80 Million Heist or Crypto Robin Hood?
추측과 경보: 8천만 달러 규모의 습격인가 암호화폐 로빈후드인가?
In the aftermath of the attack, the community was abuzz with speculation. Some users alleged that the attacker had siphoned away a staggering $80 million in crypto from the platform's bonding curve contracts. This alarming claim further fueled concerns among the impacted users.
공격의 여파로 커뮤니티는 추측으로 떠들썩했습니다. 일부 사용자는 공격자가 플랫폼의 결합 곡선 계약에서 무려 8천만 달러에 달하는 암호화폐를 빼돌렸다고 주장했습니다. 이 놀라운 주장은 영향을 받은 사용자들 사이에서 우려를 더욱 촉발시켰습니다.
However, the plot thickened when Lookonchain, a blockchain analytics firm, released its report. The report identified the hacker and revealed a surprising twist: the individual had initially acted as an innocent victim, inquiring about the extent of the damage. However, he later accused the platform's founders of withdrawing the stolen funds a day earlier.
그러나 블록체인 분석 회사인 Lookonchain이 보고서를 발표하면서 음모는 더욱 두꺼워졌습니다. 보고서는 해커의 신원을 확인하고 놀라운 반전을 드러냈습니다. 해당 개인은 처음에는 피해 규모를 문의하면서 무고한 피해자인 것처럼 행동했습니다. 그러나 그는 나중에 플랫폼 창립자들이 하루 전에 훔친 자금을 인출했다고 비난했습니다.
One user, who remains anonymous, suggested that the individual may have chosen to adopt the mantle of Robin Hood, distributing the hacked funds to the victims of crypto scams. The attacker himself alluded to such a motive in a post, expressing a desire to "change the course of history."
익명을 유지한 한 사용자는 해당 개인이 로빈후드의 역할을 맡아 해킹된 자금을 암호화폐 사기 피해자들에게 분배하기로 선택했을 수도 있다고 제안했습니다. 공격자 자신도 게시물에서 이러한 동기를 언급하며 '역사의 흐름을 바꾸고 싶다'는 소망을 표현했다.
Unveiling the Truth: A Misappropriation by a Former Employee
진실 밝히기: 전직 직원의 유용
Despite the speculation and the attacker's claims, the truth eventually emerged. Pump.fun's post-mortem post revealed that the perpetrator was a former employee who had exploited his privileged position to pilfer funds from the bonding curve contracts.
추측과 공격자의 주장에도 불구하고 결국 진실은 드러났습니다. Pump.fun의 사후 게시물에 따르면 가해자는 자신의 특권적 지위를 이용하여 결합 곡선 계약에서 자금을 훔친 전직 직원이었던 것으로 나타났습니다.
The ex-employee had gained unauthorized access to accounts by obtaining their private keys. Using his insider knowledge, he borrowed SOL, a Solana-based cryptocurrency, from a lending protocol to purchase as many tokens as possible in Pump.fun.
전 직원은 개인 키를 획득하여 계정에 대한 무단 액세스 권한을 얻었습니다. 그는 내부 지식을 활용하여 대출 프로토콜에서 솔라나 기반 암호화폐인 SOL을 빌려 Pump.fun에서 최대한 많은 토큰을 구매했습니다.
Once the tokens reached 100% on their respective bonding curves, the attacker utilized the compromised keys to access the bonding curve liquidity, repaying the loans he had taken out.
토큰이 해당 결합 곡선에서 100%에 도달하면 공격자는 손상된 키를 활용하여 결합 곡선 유동성에 접근하고 대출금을 상환했습니다.
Fortunately, the attacker's access was limited, and he was only able to steal $1.9 million out of the $45 million liquidity in the contracts.
다행히 공격자의 접근이 제한되어 있어 계약 유동성 4,500만 달러 중 190만 달러만 훔칠 수 있었습니다.
Aftermath: Making Affected Users Whole
여파: 영향을 받은 사용자를 온전하게 만들기
Following the exploit, the Pump.fun team has taken swift action to redeploy the bonding curve contracts and implement measures to assist the impacted crypto investors.
악용 이후 Pump.fun 팀은 결합 곡선 계약을 재배포하고 영향을 받는 암호화폐 투자자를 지원하기 위한 조치를 구현하기 위해 신속한 조치를 취했습니다.
As a gesture of goodwill, the team has pledged to "seed the LPs for each affected coin with an equal or greater amount of SOL liquidity that the coin had at 15:21 UTC within the next 24 hours." Additionally, trading fees will be waived for the next seven days.
선의의 표시로 팀은 "향후 24시간 이내에 UTC 15시 21분에 해당 코인이 보유하고 있던 SOL 유동성과 동일하거나 더 큰 양의 SOL 유동성으로 영향을 받은 각 코인의 LP를 시드"할 것을 약속했습니다. 또한 향후 7일 동안 거래 수수료가 면제됩니다.
This move is a "non-trivial" concession, as Pump.fun generates approximately $1 million in daily revenue from fees. The team's commitment to rectifying the situation has been met with cautious optimism by the community.
Pump.fun은 수수료로 일일 약 100만 달러의 수익을 창출하므로 이러한 움직임은 "사소하지 않은" 양보입니다. 상황을 바로잡으려는 팀의 노력은 커뮤니티의 조심스러운 낙관론과 만났습니다.
The Cipher: A Robin Hood or a Crypto Criminal?
암호: 로빈후드인가, 암호화폐 범죄자인가?
The Pump.fun exploit has raised intriguing questions about the nature of altruism and deceit in the crypto realm. While the initial speculation about a crypto Robin Hood may have been unfounded, the attacker's motives remain a subject of speculation.
Pump.fun 익스플로잇은 암호화폐 세계에서 이타주의와 사기의 본질에 대한 흥미로운 질문을 제기했습니다. 암호화폐 Robin Hood에 대한 초기 추측은 근거가 없을 수 있지만 공격자의 동기는 여전히 추측의 대상입니다.
Some argue that the attacker's decision to redistribute a portion of the stolen funds to victims of crypto scams may have been a genuine act of remorse or rebellion against the platform's founders. Others dismiss such claims, suggesting that the attacker's actions were driven solely by self-interest.
일부에서는 훔친 자금의 일부를 암호화폐 사기 피해자에게 재분배하기로 한 공격자의 결정이 플랫폼 창립자에 대한 진정한 후회 또는 반항 행위였을 수도 있다고 주장합니다. 다른 사람들은 공격자의 행동이 전적으로 사리사욕에 의해 주도되었다는 주장을 일축합니다.
As the crypto community grapples with the aftermath of the exploit, the full extent of the attacker's intentions may never be fully known. However, the incident serves as a stark reminder of the risks associated with investing in the crypto space and the importance of exercising due diligence when entrusting funds to third parties.
암호화폐 커뮤니티가 악용의 여파를 해결하기 위해 고군분투하는 동안 공격자의 의도는 완전히 알려지지 않을 수도 있습니다. 그러나 이번 사건은 암호화폐 공간에 대한 투자와 관련된 위험과 자금을 제3자에게 위탁할 때 실사를 실시하는 것이 얼마나 중요한지를 극명하게 일깨워주는 역할을 합니다.
부인 성명:info@kdj.com
제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!
본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

































