|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
在最近的一次事件中,著名的人工智能项目 Bittensor 在发生一系列钱包黑客攻击后被迫暂停其网络运营

Prominent AI-focused project Bittensor was recently forced to suspend its network operations following a series of wallet hacks, resulting in a loss of at least $8 million in TAO, Bittensor’s native token.
著名的人工智能项目 Bittensor 最近因一系列钱包黑客攻击而被迫暂停其网络运营,导致 Bittensor 的原生代币 TAO 损失至少 800 万美元。
The incident comes just a month after another wallet breach that led to a loss of $11 million. The Bittensor team has now released a detailed report shedding light on the developments surrounding these attacks.
就在这起事件发生一个月前,另一起钱包泄露事件导致了 1100 万美元的损失。 Bittensor 团队现已发布一份详细报告,揭示了围绕这些攻击的进展情况。
According to the report, at 7:41 PM UTC on Wednesday, the decision was made to place the Opentensor Chain Validators behind a firewall and activate safe mode on Subtensor due to the attack that affected multiple participants in the Bittensor community.
据报道,周三晚上 7:41(世界标准时间),由于影响了 Bittensor 社区多个参与者的攻击,决定将 Opentensor 链验证器置于防火墙后面并激活 Subtensor 的安全模式。
The attack timeline indicates that the attacker initiated fund transfers from wallets to their wallet, which was detected by the Opentensor Foundation (OTF).
攻击时间线表明,攻击者发起了从钱包到自己钱包的资金转账,这一行为已被 Opentensor 基金会 (OTF) 检测到。
A “war room” was reportedly established to respond to the abnormality in transfer volume. Eventually, the attack was neutralized by placing the Opentensor chain validators behind a firewall and activating safe mode. This action halted all transactions, allowing for a comprehensive situational analysis of the attack.
据报道,为了应对转移量的异常情况,成立了“作战室”。最终,通过将 Opentensor 链验证器置于防火墙后面并激活安全模式,攻击被抵消。这一行动停止了所有交易,以便对攻击进行全面的情况分析。
The root cause of the attack was traced back to the PyPi Package Manager version 6.12.2, where a malicious package was uploaded, compromising user security.
此次攻击的根本原因可以追溯到 PyPi Package Manager 6.12.2 版本,其中上传了恶意包,危及用户安全。
This malicious package, disguised as a legitimate Bittensor file, contained code to steal unencrypted coldkey details. When users downloaded the package and decrypted their coldkeys, the decrypted bytecode was sent to a remote server controlled by the attacker.
这个恶意包伪装成合法的 Bittensor 文件,包含窃取未加密的冷密钥详细信息的代码。当用户下载该包并解密其冷密钥时,解密的字节码被发送到攻击者控制的远程服务器。
The vulnerability is believed to have affected individuals who used Bittensor 6.12.2 and performed operations involving the decryption of hotkeys or coldkeys.
据信该漏洞影响了使用 Bittensor 6.12.2 并执行涉及解密热键或冷键操作的个人。
Furthermore, those who downloaded the Bittensor PyPi package between May 22, 7:14 PM UTC, and May 29, 6:47 PM UTC, and performed any relevant operations were also likely impacted.
此外,在 UTC 时间 5 月 22 日晚上 7:14 至 5 月 29 日下午 6:47 之间下载 Bittensor PyPi 软件包并执行任何相关操作的用户也可能受到影响。
Immediate mitigation steps were taken by the OTF team, including removing the malicious 6.12.2 package from the PyPi Package Manager repository. So far, no other vulnerabilities have been identified, but a comprehensive assessment of all potential attack vectors is ongoing.
OTF 团队立即采取了缓解措施,包括从 PyPi Package Manager 存储库中删除恶意 6.12.2 软件包。到目前为止,尚未发现其他漏洞,但正在对所有潜在攻击媒介进行全面评估。
The Bittensor team has collaborated with several exchanges to provide attack details, trace the attacker, and potentially recover funds.
Bittensor 团队已与多家交易所合作,提供攻击详细信息、追踪攻击者,并有可能追回资金。
As the code review nears completion, Opentensor plans to gradually resume normal operations of the Bittensor blockchain, allowing transactions to flow again.
随着代码审查接近完成,Opentensor计划逐步恢复Bittensor区块链的正常运行,允许交易再次流动。
The team emphasizes taking precautions, such as creating new wallets and transferring funds once the blockchain is operational. Upgrading to the latest version of Bittensor is strongly advised to enhance security measures.
该团队强调采取预防措施,例如在区块链运行后创建新钱包和转移资金。强烈建议升级到最新版本的 Bittensor 以增强安全措施。
Bittensor plans to investigate the breach with the PyPi maintainers and implement enhancements to prevent future incidents.
Bittensor 计划与 PyPi 维护人员一起调查此次违规行为,并实施增强功能以防止未来发生此类事件。
These enhancements include stricter access and verification processes for packages uploaded to PyPi, increased frequency of security audits, implementation of best practices in public security policies, and heightened monitoring and logging of package uploads and downloads.
这些增强功能包括对上传到 PyPi 的包进行更严格的访问和验证流程、增加安全审计的频率、实施公共安全政策的最佳实践以及加强对包上传和下载的监控和记录。
At the time of writing, the project’s native token TAO is trading at $224, down over 42% in the last 30 days alone. However, the token still has significant gains of over 386% year-to-date.
截至撰写本文时,该项目的原生代币 TAO 的交易价格为 224 美元,仅在过去 30 天内就下跌了 42% 以上。然而,该代币今年迄今仍大幅上涨超过 386%。
免责声明:info@kdj.com
所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!
如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。
-
- 比特币、eCash 分叉和空投动态:深入探讨加密货币的最新争议
- 2026-05-03 00:52:02
- 探索最近的 eCash 分叉、其作为高风险空投的分类,以及对比特币和加密生态系统的更广泛影响。
-
-
- 美联储维持利率稳定,地缘政治紧张局势引发比特币价格下跌
- 2026-05-01 04:04:38
- 美联储维持利率的决定,加上中东冲突,影响了比特币的价格。分析近期趋势和市场反应。
-
-
-
-
-
-

































