|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
7 月份,加密貨幣生態系統因駭客攻擊損失了約 2.66 億美元,其中大部分來自印度交易平台 WazirX 的 2.3 億美元駭客攻擊

Decentralized finance (DeFi) protocol Convergence has confirmed that it was exploited via a smart contract vulnerability on Aug. 1, allowing a hacker to mint and sell $210,000,000 in its native token, as well as pilfer $2,000 in unclaimed staking rewards.
去中心化金融 (DeFi) 協議 Convergence 已確認,該協議於 8 月 1 日被智能合約漏洞利用,導致駭客鑄造並出售 2.1 億美元的原生代幣,並竊取 2,000 美元無人認領的質押獎勵。
According to a new post-mortem from Wireshark, the pseudonymous founder of the Convergence protocol, the attacker exploited the protocol’s CvxRewardDistributor contract, enabling them to mint and sell 58,000,000 CVG tokens for roughly $210,000.
根據 Convergence 協議的匿名創始人 Wireshark 的最新屍檢報告,攻擊者利用了該協議的 CvxRewardDistributor 合約,使他們能夠鑄造並以大約 21 萬美元的價格出售 58,000,000 個 CVG 代幣。
The attacker also stole about $2,000 in unclaimed rewards from Convex, a DeFi protocol designed to maximize rewards for Curve liquidity providers.
攻擊者還從 Convex 竊取了約 2,000 美元無人認領的獎勵,Convex 是一種 DeFi 協議,旨在最大限度地提高 Curve 流動性提供者的獎勵。
According to Etherscan, the attack occurred on Aug. 1 at around 3:00 am UTC.
據 Etherscan 稱,這次攻擊發生在 UTC 時間 8 月 1 日凌晨 3 點左右。
Blockchain security firm PeckShield noted that after minting the CVG tokens, the attacker quickly swapped it into 60 wrapped-Ether and 15,900 Curve.fi FRAX.
區塊鏈安全公司 PeckShield 指出,在鑄造 CVG 代幣後,攻擊者迅速將其兌換成 60 個包裝以太幣和 15,900 個 Curve.fi FRAX。
The movements have since led to a near-100% price wipeout of the CVG governance token, which is now trading at $0.0004 with a market cap of just $57,000, according to CoinMarketCap data.
根據 CoinMarketCap 數據,此後的走勢導致 CVG 治理代幣價格近 100% 下跌,目前該代幣的交易價格為 0.0004 美元,市值僅為 57,000 美元。
Convergence said the attack was enabled by the team accidentally deleting a crucial line of code in its smart contract that distributes CVG staking rewards. They made the change after the smart contract code was audited four times.
Convergence 表示,這次攻擊是由於該團隊意外刪除了其智能合約中分配 CVG 質押獎勵的關鍵程式碼行而導致的。他們在智能合約程式碼經過四次審核後做出了更改。
“The modification (gas-optimization on the first hand) led us to remove the line of code that was checking the input given to the function,” it explained.
「修改(首先是氣體優化)導致我們刪除了檢查函數輸入的程式碼行,」它解釋道。
The attacker used this to exploit the CvxRewardDistributor contract through the claimMultipleStaking function.
攻擊者利用漏洞透過 ClaimMultipleStake 函數來利用 CvxRewardDistributor 合約。
This meant the staking contract couldn’t be validated, allowing the attacker to pass a separate malicious contract with the same signature as the claimCvgCvxMultiple function.
這意味著質押合約無法驗證,從而允許攻擊者傳遞與 ClaimCvgCvxMultiple 函數具有相同簽名的單獨惡意合約。
The attacker then minted all tokens dedicated to staking emissions and then dumped them into CVG liquidity pools, Convergence said.
Convergence 表示,攻擊者隨後鑄造了所有專門用於質押排放的代幣,然後將它們轉儲到 CVG 流動性池中。
Related: Over 70% of hacked funds are lost to CeFi entities — Cyvers
相關:超過 70% 的被黑資金都流向了 CeFi 實體 — Cyvers
Convergence says that user funds are safe, but has advised users to withdraw assets from the platform.
Convergence表示用戶資金是安全的,但已建議用戶從平台提取資產。
“Due to the exploit, the rewards contract for the Stake DAO integration is currently broken. It will be fixed, and stakers will be able to claim their rewards once it’s done. No rewards are lost for Stake DAO integration users,” it said.
「由於該漏洞,Stake DAO 整合的獎勵合約目前已被破壞。該問題將被修復,一旦完成,質押者將能夠獲得獎勵。 Stake DAO 整合用戶不會損失任何獎勵。
Convergence works to aggregate liquidity, boost returns and enable liquid locking across the Curve Finance ecosystem.
Convergence 致力於聚合流動性、提高回報並實現整個 Curve Finance 生態系統的流動性鎖定。
The total value locked on Convergence fell from $5.79 million to $3.69 million, DefiLlama data shows.
DefiLlama 數據顯示,Convergence 鎖定的總價值從 579 萬美元下降至 369 萬美元。
The cryptocurrency ecosystem lost around $266 million to hacks in July, largely due to the $230 million hack of Indian trading platform WazirX on July 18.
7 月份,加密貨幣生態系統因駭客攻擊損失了約 2.66 億美元,這主要是由於 7 月 18 日印度交易平台 WazirX 遭受了 2.3 億美元的駭客攻擊。
Magazine: THORChain founder and his plan to ‘vampire attack’ all of DeFi
雜誌:THORChain 創始人及其“吸血鬼攻擊”整個 DeFi 的計劃
免責聲明:info@kdj.com
所提供的資訊並非交易建議。 kDJ.com對任何基於本文提供的資訊進行的投資不承擔任何責任。加密貨幣波動性較大,建議您充分研究後謹慎投資!
如果您認為本網站使用的內容侵犯了您的版權,請立即聯絡我們(info@kdj.com),我們將及時刪除。
-
- 比特幣、eCash 分叉和空投動態:深入探討加密貨幣的最新爭議
- 2026-05-03 00:52:02
- 探索最近的 eCash 分叉、其作為高風險空投的分類,以及對比特幣和加密生態系統的更廣泛影響。
-
-
- 聯準會維持利率穩定,地緣政治緊張局勢引發比特幣價格下跌
- 2026-05-01 04:04:38
- 聯準會維持利率的決定,加上中東衝突,影響了比特幣的價格。分析近期趨勢和市場反應。
-
-
-
-
-
-

































