시가총액: $2.2043T 0.58%
거래량(24시간): $56.8553B 3.76%
  • 시가총액: $2.2043T 0.58%
  • 거래량(24시간): $56.8553B 3.76%
  • 공포와 탐욕 지수:
  • 시가총액: $2.2043T 0.58%
암호화
주제
암호화
소식
cryptostopics
비디오
최고의 뉴스
암호화
주제
암호화
소식
cryptostopics
비디오
bitcoin
bitcoin

$87959.907984 USD

1.34%

ethereum
ethereum

$2920.497338 USD

3.04%

tether
tether

$0.999775 USD

0.00%

xrp
xrp

$2.237324 USD

8.12%

bnb
bnb

$860.243768 USD

0.90%

solana
solana

$138.089498 USD

5.43%

usd-coin
usd-coin

$0.999807 USD

0.01%

tron
tron

$0.272801 USD

-1.53%

dogecoin
dogecoin

$0.150904 USD

2.96%

cardano
cardano

$0.421635 USD

1.97%

hyperliquid
hyperliquid

$32.152445 USD

2.23%

bitcoin-cash
bitcoin-cash

$533.301069 USD

-1.94%

chainlink
chainlink

$12.953417 USD

2.68%

unus-sed-leo
unus-sed-leo

$9.535951 USD

0.73%

zcash
zcash

$521.483386 USD

-2.87%

암호화폐 뉴스 기사

UwU Lend는 환급 과정에서 370만 달러의 두 번째 공격을 받았습니다.

2024/06/14 12:00

DeFi 대출 프로토콜인 UwU Lend는 지난 3일 동안 두 차례의 공격을 받았습니다. 두 번째 공격은 목요일에 첫 번째 해킹으로 인한 프로토콜의 환급 과정에서 발생했습니다.

UwU Lend는 환급 과정에서 370만 달러의 두 번째 공격을 받았습니다.

DeFi lending protocolUwU Lend has been hit by two attacks in the past three days, with the second exploit occurring on Thursday during the protocol’s reimbursement process from the first hack. The ongoing saga has taken around $23 million from the protocol.

DeFi 대출 프로토콜 UwU Lend는 지난 3일 동안 두 차례의 공격을 받았습니다. 두 번째 공격은 첫 번째 해킹으로 인한 프로토콜 상환 과정에서 목요일에 발생했습니다. 현재 진행 중인 사건은 프로토콜에서 약 2,300만 달러를 가져갔습니다.

DeFi Protocol Hit With $20 Million Exploit

DeFi 프로토콜, 2천만 달러 악용으로 타격

On June 10, DeFi project UwU Lend was hit by a sophisticated attack that took $19.3 million. The attack seemingly involved the use of flash loans to exploit the protocol. The project quickly addressed the situation by pausing the protocol and assured users that most assets were safe.

6월 10일, DeFi 프로젝트 UwU Lend는 1,930만 달러의 비용이 소요되는 정교한 공격을 받았습니다. 이 공격에는 프로토콜을 악용하기 위해 플래시 대출을 사용하는 것으로 보입니다. 프로젝트는 프로토콜을 일시 중지하여 상황을 신속하게 해결하고 사용자에게 대부분의 자산이 안전하다는 것을 확신시켰습니다.

Additionally, the team offered a $4 million white hat bounty for the return of the funds. The list of stolen assets included Wrapped Ethereum (wETH), Wrapped Bitcoin (wBTC), Curve DAO (CRV), Tether (USDT), Staked USDe (sUSDE), and others.

또한 팀은 자금 반환에 대해 400만 달러의 화이트햇 포상금을 제공했습니다. 도난당한 자산 목록에는 Wrapped Ethereum(wETH), Wrapped Bitcoin(wBTC), Curve DAO(CRV), Tether(USDT), Staked USDe(sUSDE) 등이 포함되었습니다.

Blockchain security firm Beosin revealed that the attacker manipulated the price of USDe (USDE) by swapping it for other tokens through flash loans. Seemingly, this move lowered USDe and sUSDE’s price.

블록체인 보안업체 Beosin은 공격자가 플래시론을 통해 USDe(USDE)를 다른 토큰으로 교환하여 가격을 조작했다고 밝혔습니다. 겉으로는 이러한 움직임으로 인해 USDe와 sUSDE의 가격이 낮아졌습니다.

Following the price manipulation, the hacker deposited part of the tokens to UwU Lend and “lent more $sUSDe than expected,” driving USDe’s price higher. Similarly, the attacker deposited the sUSDE to the DeFi protocol and borrowed CRV.

가격 조작 이후 해커는 토큰의 일부를 UwU Lend에 예치하고 “예상보다 더 많은 $sUSDe를 빌려” USDe의 가격을 높였습니다. 마찬가지로 공격자는 sUSDE를 DeFi 프로토콜에 입금하고 CRV를 빌렸습니다.

On Wednesday, UwU Lend informed users that its team had identified the vulnerability. Per the post, it was a vulnerability unique to the sUSDE market oracle and had been resolved at the time of the report.

수요일에 UwU Lend는 사용자들에게 자사 팀이 취약점을 식별했다고 알렸습니다. 게시물에 따르면 이는 sUSDE 시장 오라클의 고유한 취약점이었으며 보고서 작성 당시 해결되었습니다.

As a result, the protocol was unpaused, and the markets were slowly relaunched to return to their normal operations. The DeFi project also announced it would repay all its bad debt and that users’ funds had not been lost during the exploit, claiming that their funds “are safu at UwU Lend.”

그 결과, 프로토콜의 일시 중지가 해제되었고 시장은 천천히 다시 시작되어 정상적인 운영으로 돌아갔습니다. DeFi 프로젝트는 또한 모든 불량 부채를 상환할 것이며 사용자의 자금은 "UwU Lend에서 안전하다"고 주장하면서 악용 중에 손실되지 않았다고 발표했습니다.

Do You Get DéFì Vu?

DéFì Vu를 받으시나요?

What seemed to be the end of the story turned out to be the first installment of a saga. On Thursday, reports of a second attack on UwU Lend appeared as the protocol carried out its reimbursement process.

이야기의 끝인 것처럼 보였던 것이 무용담의 첫 번째 기사로 밝혀졌습니다. 목요일, 프로토콜이 상환 프로세스를 수행하는 동안 UwU Lend에 대한 두 번째 공격에 대한 보고가 나타났습니다.

According to the reports, the same attacker drained another $3.7 million from the DeFi protocol before converting the funds to ETH again. The affected pools included uDAI, uWETH, uLUSD, uFRAX, UCRVUSD, and uUSDT.

보고서에 따르면, 동일한 공격자는 자금을 다시 ETH로 전환하기 전에 DeFi 프로토콜에서 추가로 370만 달러를 빼냈습니다. 영향을 받은 풀에는 uDAI, uWETH, uLUSD, uFRAX, UCRVUSD 및 uUSDT가 포함되었습니다.

The crypto community expressed their concern about the second attack, with many questioning if their funds were indeed safe. Users started to joke that funds were not “safu” but were “with Sifu” instead.

암호화폐 커뮤니티는 두 번째 공격에 대한 우려를 표명했으며 많은 사람들이 자금이 실제로 안전한지 의문을 제기했습니다. 사용자들은 자금이 "사푸"가 아니라 "시푸와 함께"라는 농담을 하기 시작했습니다.

UwU Lend was founded by Michael Patryn, also known as Sifu. Patryn was the co-founder of the now-collapsed QuadrigaCX. As reported by Bitcoinist, Canadian authorities were pursuing an unexplained wealth order (UWO) against Sifu for his involvement in the exchange’s criminal activities.

UwU Lend는 Sifu라고도 알려진 Michael Patryn에 의해 설립되었습니다. Patryn은 현재는 붕괴된 QuadrigaCX의 공동 창립자였습니다. Bitcoinist가 보고한 바와 같이, 캐나다 당국은 Sifu가 거래소의 범죄 활동에 연루된 이유로 UWO(Unexplained Wealth Order)를 추진하고 있었습니다.

The DeFi project has paused the protocol for the second time this week, and the situation is being investigated. However, online reports claim that the second exploit was caused by a vulnerability similar to the first attack.

DeFi 프로젝트는 이번 주에 두 번째로 프로토콜을 일시 중지했으며 상황을 조사하고 있습니다. 그러나 온라인 보고서에 따르면 두 번째 공격은 첫 번째 공격과 유사한 취약점으로 인해 발생했다고 합니다.

MetaTrust Labs explained the hacker seemingly used 60 million uSUSDE obtained from Monday’s hack “as collateral to drain the pool.”

MetaTrust Labs는 해커가 월요일 해킹에서 얻은 6천만 uSUSDE를 "풀을 빼기 위한 담보로" 사용한 것으로 보인다고 설명했습니다.

The news caused users to wonder whether the UwU Lend team was unaware of the tokens in the attacker’s wallet. Some also questioned why they didn’t stop supporting the sUSDE collateral.

이 소식을 접한 사용자들은 UwU Lend 팀이 공격자의 지갑에 있는 토큰을 인식하지 못했는지 궁금해했습니다. 일부 사람들은 왜 sUSDE 담보 지원을 중단하지 않았는지 의문을 제기했습니다.

At the time of writing, an official explanation for the second exploit has not been published.

이 글을 쓰는 시점에서 두 번째 익스플로잇에 대한 공식적인 설명은 공개되지 않았습니다.

부인 성명:info@kdj.com

제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!

본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

2026年08月07日 에 게재된 다른 기사