시가총액: $2.1826T -1.93%
거래량(24시간): $56.1969B -8.13%
  • 시가총액: $2.1826T -1.93%
  • 거래량(24시간): $56.1969B -8.13%
  • 공포와 탐욕 지수:
  • 시가총액: $2.1826T -1.93%
암호화
주제
암호화
소식
cryptostopics
비디오
최고의 뉴스
암호화
주제
암호화
소식
cryptostopics
비디오
bitcoin
bitcoin

$87959.907984 USD

1.34%

ethereum
ethereum

$2920.497338 USD

3.04%

tether
tether

$0.999775 USD

0.00%

xrp
xrp

$2.237324 USD

8.12%

bnb
bnb

$860.243768 USD

0.90%

solana
solana

$138.089498 USD

5.43%

usd-coin
usd-coin

$0.999807 USD

0.01%

tron
tron

$0.272801 USD

-1.53%

dogecoin
dogecoin

$0.150904 USD

2.96%

cardano
cardano

$0.421635 USD

1.97%

hyperliquid
hyperliquid

$32.152445 USD

2.23%

bitcoin-cash
bitcoin-cash

$533.301069 USD

-1.94%

chainlink
chainlink

$12.953417 USD

2.68%

unus-sed-leo
unus-sed-leo

$9.535951 USD

0.73%

zcash
zcash

$521.483386 USD

-2.87%

암호화폐 뉴스 기사

Solana DeFi 사용자, Memecoin 보유자를 표적으로 삼는 새로운 악성 코드에 대해 경고

2024/08/21 20:32

DEX(분산형 거래소) 수집업체인 Jupiter는 Bull Checker라는 Chrome 기반 확장 프로그램으로 패키지된 새로운 악성 코드에 대해 사용자에게 경고했습니다.

Solana DeFi 사용자, Memecoin 보유자를 표적으로 삼는 새로운 악성 코드에 대해 경고

A new malware, disguised as a Chrome-based extension and named Bull Checker, has been targeting Solana-based DeFi users, leading to their assets being stolen. Jupiter, a DEX (decentralized exchange) aggregator, has warned users about this malicious extension.

Chrome 기반 확장 프로그램으로 위장하고 Bull Checker라는 이름의 새로운 악성 코드가 Solana 기반 DeFi 사용자를 표적으로 삼아 자산을 도난당했습니다. DEX(분산형 거래소) 수집업체인 Jupiter는 사용자에게 이 악성 확장 프로그램에 대해 경고했습니다.

The Bull Checker extension was reportedly advertised to show all the holders of any memecoin, and several Solana-based DeFi users encountered their assets being drained after installing the extension. As Jupiter's user base experienced and voiced similar incidents, the DEX aggregator investigated to find the source of the hacks. In an X post, it revealed its findings.

Bull Checker 확장 프로그램은 모든 밈코인 보유자에게 표시되도록 광고된 것으로 알려졌으며, 몇몇 Solana 기반 DeFi 사용자들은 확장 프로그램 설치 후 자산이 고갈되는 현상을 겪었습니다. Jupiter의 사용자 기반이 유사한 사건을 경험하고 목소리를 높이자 DEX 수집기는 해킹의 출처를 찾기 위해 조사했습니다. X 게시물에서 그 결과를 공개했습니다.

"After extensive investigation, we have identified a malicious Chrome extension called “Bull Checker” that had targeted users on several Solana-related subreddits," the post stated. It further highlighted that those behind the extension advertised the product on Reddit, attempting to lure users by showing how they can make thousands of dollars with the extension.

"광범위한 조사 끝에 우리는 여러 솔라나 관련 하위 레딧의 사용자를 표적으로 삼은 'Bull Checker'라는 악성 Chrome 확장 프로그램을 확인했습니다."라고 해당 게시물은 밝혔습니다. 또한 확장 프로그램 뒤에 있는 사람들이 Reddit에 제품을 광고하여 확장 프로그램을 사용하여 수천 달러를 벌 수 있는 방법을 보여줌으로써 사용자를 유인하려고 시도했다는 점을 더욱 강조했습니다.

"Users with this extension would interact with the dApps as per normal, have the simulation show up as normal, but have the possibility of their tokens being maliciously transferred to another wallet upon transaction completion," the post explained. It also added, "If you have this extension (or similar extensions with extensive permissions you cannot trust), please remove it immediately."

"이 확장 프로그램을 사용하는 사용자는 정상적으로 dApp과 상호 작용하고 시뮬레이션이 정상적으로 표시되지만 거래 완료 시 토큰이 악의적으로 다른 지갑으로 전송될 가능성이 있습니다."라고 게시물은 설명했습니다. 또한 "이 확장 프로그램(또는 신뢰할 수 없는 광범위한 권한을 가진 유사한 확장 프로그램)이 있는 경우 즉시 제거하십시오"라고 덧붙였습니다.

Upon installation, Bull Checker asks users for permission to read and change data, which should serve as a warning sign. However, many users might not notice this detail. Extensions that are safe to use typically only ask to read data. By allowing Bull Checker to modify data, it can manipulate recipient addresses on transactions, diverting funds from crypto transfers to a bad actor's wallet.

Bull Checker는 설치 시 사용자에게 경고 신호 역할을 하는 데이터 읽기 및 변경 권한을 요청합니다. 그러나 많은 사용자는 이 세부 사항을 알아차리지 못할 수도 있습니다. 사용하기에 안전한 확장 프로그램은 일반적으로 데이터 읽기만 요청합니다. Bull Checker가 데이터를 수정할 수 있도록 허용함으로써 거래의 수신자 주소를 조작하여 암호화폐 전송에서 악의적인 행위자의 지갑으로 자금을 전환할 수 있습니다.

What's concerning about this malware is that the crypto drainer passes all simulation checks and cannot be detected as a tool developed and used by malicious entities. In a detailed report, Jupiter's pseudonymous founder, known as Meow, wrote, "Bull Checker is supposed to be a read-only extension that allows you to view the holders of memecoins. There should be no need for an extension like this to read or write data on all websites."

이 악성코드에서 우려되는 점은 암호화폐 드레이너가 모든 시뮬레이션 검사를 통과했으며 악의적인 개체가 개발하고 사용하는 도구로 탐지될 수 없다는 것입니다. 세부 보고서에서 Meow로 알려진 Jupiter의 가명 창립자는 다음과 같이 썼습니다. "Bull Checker는 밈코인 보유자를 볼 수 있는 읽기 전용 확장 프로그램입니다. 모든 웹사이트에 데이터를 쓰세요."

The report also includes advice for those interacting with offerings promoted in online communities: "Do not trust something just because someone mentioned it on Reddit or other media and it has many upvotes. Astroturfing and social engineering are very real."

보고서에는 온라인 커뮤니티에서 홍보되는 제품과 상호 작용하는 사람들을 위한 조언도 포함되어 있습니다. "누군가가 Reddit이나 다른 미디어에서 언급했고 많은 찬성표를 받았다고 해서 그것을 신뢰하지 마십시오. 인공 잔디와 사회 공학은 매우 현실적입니다."

원본 소스:livebitcoinnews

부인 성명:info@kdj.com

제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!

본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

2026年07月26日 에 게재된 다른 기사