市值: $2.8559T 0.10%
體積(24小時): $103.5716B 30.79%
  • 市值: $2.8559T 0.10%
  • 體積(24小時): $103.5716B 30.79%
  • 恐懼與貪婪指數:
  • 市值: $2.8559T 0.10%
加密
主題
加密植物
資訊
加密術
影片
頭號新聞
加密
主題
加密植物
資訊
加密術
影片
bitcoin
bitcoin

$83957.731555 USD

1.09%

ethereum
ethereum

$2707.672309 USD

2.28%

tether
tether

$0.999601 USD

0.01%

bnb
bnb

$767.737573 USD

0.59%

xrp
xrp

$1.504228 USD

1.61%

usd-coin
usd-coin

$1.000070 USD

0.02%

solana
solana

$119.467955 USD

0.71%

tron
tron

$0.334923 USD

0.34%

zcash
zcash

$1422.665327 USD

-8.02%

hyperliquid
hyperliquid

$88.309849 USD

-0.91%

dogecoin
dogecoin

$0.094847 USD

2.10%

chainlink
chainlink

$15.113620 USD

9.67%

monero
monero

$542.499853 USD

1.68%

cardano
cardano

$0.249405 USD

1.76%

unus-sed-leo
unus-sed-leo

$9.063597 USD

-0.10%

加密貨幣新聞文章

基於 Solana 的 Meme Coin Launchpad Pump.fun 被駭客攻擊,損失 190 萬美元

2024/05/18 00:16

基於 Solana 的 meme 代幣啟動平台 Pump.fun 成為一名前員工利用該漏洞的受害者,導致價值約 190 萬美元的 SOL 被盜用。該漏洞涉及透過閃電貸操縱債券曲線,導致交易暫時停止。被盜的代幣目前處於困境且無法交易。

基於 Solana 的 Meme Coin Launchpad Pump.fun 被駭客攻擊,損失 190 萬美元

Pump.fun Meme Coin Launchpad Falls Victim to Insider Exploit, Over $1.9 Million Siphoned

Pump.fun Meme Coin Launchpad 成為內部人利用的受害者,超過 190 萬美元被盜走

Solana-based meme coin launchpad Pump.fun has become the latest victim of a malicious insider exploit, resulting in the misappropriation of approximately 12,300 SOL, valued at roughly $1.9 million at the time of the incident.

基於 Solana 的 Meme 代幣啟動板 Pump.fun 已成為惡意內部漏洞的最新受害者,導致約 12,300 SOL 被盜用,事件發生時價值約 190 萬美元。

Insider Access, Flash Loan Abuse

內部訪問、閃電貸方濫用

According to Pump.fun's official announcement, a former employee exploited their "privileged position" to gain unauthorized access to "withdraw authority" within the platform's systems. This illicit access allowed the perpetrator to execute a sophisticated attack utilizing flash loans from a Solana lending protocol.

據Pump.fun官方公告稱,一名前員工利用其「特權地位」未經授權存取平台系統內的「撤權」。這種非法存取使犯罪者能夠利用 Solana 借貸協議的閃貸執行複雜的攻擊。

The former employee borrowed SOL via flash loans and then purchased targeted meme coins on Pump.fun, artificially inflating their bonding curves to reach 100%. This maneuver enabled them to drain liquidity from the bonding curves and repay the flash loans, leaving the platform with a substantial loss.

這名前員工透過閃電貸借了 SOL,然後在 Pump.fun 上購買了目標迷因幣,人為地將他們的聯合曲線推高至 100%。這項舉措使他們能夠從聯合曲線中抽走流動性並償還閃電貸款,從而使平台遭受重大損失。

Immediate Response, Platform Suspension

立即回應,平台暫停

Upon detecting the exploit, Pump.fun promptly halted trading operations and swiftly initiated contract updates to prevent further damage. Out of the platform's total liquidity of $45 million, approximately $1.9 million was compromised in the attack.

在檢測到漏洞後,Pump.fun 立即停止了交易操作,並迅速啟動了合約更新,以防止進一步的損害。該平台總流動資金為 4,500 萬美元,其中約 190 萬美元在此次攻擊中受損。

Reparations and Future Enhancements

賠償和未來的改進

To compensate affected users, the Pump.fun team has pledged to replenish liquidity pools for the targeted coins with an equivalent or greater amount of SOL within 24 hours. The coins that reached 100% during the exploit will remain temporarily untradeable until liquidity pools are re-established on Raydium, a Solana lending protocol.

為了補償受影響的用戶,Pump.fun團隊承諾在24小時內為目標幣種補充等值或更多的SOL流動性池。在利用該漏洞期間達到 100% 的代幣將暫時無法交易,直到在 Solana 借貸協議 Raydium 上重新建立流動性池。

The team is actively collaborating with renowned security experts to both minimize the impact of the incident and implement robust measures to prevent future vulnerabilities. They emphasized their commitment to ensuring the safety and integrity of the platform for all users.

團隊正在與知名安全專家積極合作,以盡量減少事件的影響,並採取強有力的措施來防止未來出現漏洞。他們強調了確保所有用戶平台安全和完整性的承諾。

Internal Insider Suspected

涉嫌內部知情人

Prior to Pump.fun's official announcement, Igor Igamberdiev, Head of Research at cryptocurrency market maker Wintermute, attributed the exploit to an internal private key leak and implicated X user "STACCoverflow" as a potential suspect.

在 Pump.fun 正式宣布之前,加密貨幣做市商 Wintermute 研究主管 Igor Igamberdiev 將此漏洞歸因於內部私鑰洩露,並暗示 X 用戶「STACoverflow」是潛在嫌疑人。

Subsequently, an X user known as "Stacc" confessed to executing the exploit, criticizing the "horrible bosses" at Pump.fun and questioning their suitability within the blockchain community.

隨後,一位名為“Stacc”的 X 用戶承認執行了該漏洞,批評 Pump.fun 的“可怕的老闆”,並質疑他們在區塊鏈社區中的適用性。

Wider Implications for the Meme Coin Market

對 Meme 幣市場的更廣泛影響

The Pump.fun exploit highlights the inherent risks associated with meme coins and the importance of due diligence for investors. While meme coins may offer potential for speculative gains, it is crucial to recognize their volatility and the potential for manipulation.

Pump.fun 漏洞凸顯了與迷因幣相關的固有風險以及投資者盡職調查的重要性。雖然模因幣可能提供投機收益的潛力,但認識到其波動性和操縱潛力至關重要。

The incident underscores the need for robust security measures, transparency, and accountability within the rapidly evolving meme coin market. Investors are urged to approach such investments with caution and conduct thorough research before allocating funds.

這事件凸顯了快速發展的迷因幣市場需要強有力的安全措施、透明度和問責制。我們敦促投資者謹慎對待此類投資,並在分配資金之前進行徹底的研究。

免責聲明:info@kdj.com

所提供的資訊並非交易建議。 kDJ.com對任何基於本文提供的資訊進行的投資不承擔任何責任。加密貨幣波動性較大,建議您充分研究後謹慎投資!

如果您認為本網站使用的內容侵犯了您的版權,請立即聯絡我們(info@kdj.com),我們將及時刪除。

2026年09月30日 其他文章發表於