|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
随着加密货币重新获得其价值,并且推出更有价值的代币,针对个人钱包的攻击正在加速。仅在前两个

Cryptocurrency scams are accelerating as the value of digital assets rises and new tokens are launched rapidly. According to recent reports, phishing attacks have already resulted in staggering losses of over $41 million in the first two weeks of October.
随着数字资产价值的上升和新代币的迅速推出,加密货币诈骗正在加速发生。根据最近的报告,10 月的前两周网络钓鱼攻击已造成超过 4100 万美元的惊人损失。
These scams often target individual wallets, and the latest figures from Certik show a concerning increase in all types of attacks during Q3. As more people venture into the world of crypto, wallet phishing and malicious links are becoming prevalent threats to be aware of.
这些诈骗通常针对个人钱包,Certik 的最新数据显示,第三季度所有类型的攻击都有令人担忧的增长。随着越来越多的人涉足加密世界,钱包网络钓鱼和恶意链接正成为需要注意的普遍威胁。
In the last 24 hours, another victim has lost a significant amount of $1.57 million after signing a "permit" phishing signature. This incident highlights the urgency to stay vigilant and be cautious of any suspicious links or requests to sign transactions from unknown sources.
在过去 24 小时内,另一名受害者在签署“许可”网络钓鱼签名后损失了 157 万美元。这一事件凸显了保持警惕的紧迫性,并对任何可疑链接或来自未知来源的交易签名请求保持警惕。
According to DefiHackLabs, October has seen eight total exploits, ranging in attack value from $100K to $2.4M, targeting individual wallets. While these sums may seem small compared to the large-scale exchange exploits we've seen in recent weeks, the ubiquity of these attacks and their impact on retail traders make phishing a major threat in Web3.
据 DefiHackLabs 称,10 月份总共出现了 8 起针对个人钱包的攻击,攻击价值从 10 万美元到 240 万美元不等。虽然与我们最近几周看到的大规模交易所攻击相比,这些金额似乎很小,但这些攻击的普遍性及其对零售交易者的影响使网络钓鱼成为 Web3 中的主要威胁。
These losses are also proving harder to recover, as attackers are moving the funds through DEX or mixers to complicate tracking efforts. Phishing hacks are adding to the tally of losses from more elaborate attacks, such as the validator address hacks and MEV exploits.
事实证明,这些损失也更难恢复,因为攻击者通过 DEX 或混合器转移资金,使追踪工作变得更加复杂。网络钓鱼黑客正在增加更复杂的攻击(例如验证器地址黑客和 MEV 漏洞)造成的损失。
Typically, phishing attacks will ask for actions to be signed through the user's wallet, such as approving a contract or signing another type of transfer or permission. Another common tactic involves fake phishing tokens targeting wallets with crypto balances in an attempt to redirect funds to a fake address. Permit phishing is particularly damaging, as it can gain permission to move multiple tokens. We saw an example of this just days ago, where a wallet was hacked for $1.4M in meme tokens.
通常,网络钓鱼攻击会要求通过用户的钱包签署操作,例如批准合同或签署其他类型的转让或许可。另一种常见策略涉及假冒网络钓鱼代币,以具有加密货币余额的钱包为目标,试图将资金重定向到假地址。允许网络钓鱼尤其具有破坏性,因为它可以获得移动多个令牌的许可。几天前我们就看到了一个这样的例子,一个钱包被黑客窃取了价值 140 万美元的 meme 代币。
While these attacks are not entirely new, they are accelerating in October due to the massive inflow of users into crypto. Most of these attacks are centered around Ethereum, being one of the most liquid chains with well-understood smart contracts. Attackers often use open-source contracts to generate malicious links or even build specific smart contracts that look realistic to carry out these scams.
虽然这些攻击并不是全新的,但由于用户大量涌入加密货币领域,这些攻击在 10 月份正在加速。大多数攻击都以以太坊为中心,以太坊是流动性最强的链之一,拥有易于理解的智能合约。攻击者经常使用开源合约来生成恶意链接,甚至构建看起来很现实的特定智能合约来实施这些诈骗。
Hacked X accounts deliver fake links
被黑的 X 帐户提供虚假链接
Since the crypto community is largely based on X, these accounts are vulnerable to being hacked, which can pose a serious risk to users, especially in October.
由于加密社区主要基于 X,因此这些帐户很容易被黑客攻击,这可能会给用户带来严重的风险,尤其是在 10 月份。
With the meme token frenzy coinciding with the general market recovery, all assets are being targeted, from BTC and blue chips down to the latest new meme token that promises to grow 1,000 times or more.
随着 Meme 代币的狂热与市场总体复苏的同时,所有资产都成为目标,从 BTC 和蓝筹股到有望增长 1,000 倍或更多的最新 Meme 代币。
One common attack vector involves hacked X handles, which could belong to influencers or meme token accounts. Instead of signing to buy a token, users might find their wallets emptied. Even pressing ‘connect wallet’ to a link from social media can lead to losing all the assets within that wallet. Sometimes, a malicious link will be disguised as a token recovery tool or even a protection against hacks.
一种常见的攻击媒介涉及被黑的 X 账号,这些账号可能属于影响者或 meme 代币账户。用户可能会发现他们的钱包被掏空,而不是签名购买代币。即使按社交媒体上的“连接钱包”链接也可能导致丢失该钱包内的所有资产。有时,恶意链接会伪装成令牌恢复工具,甚至是针对黑客的保护。
Links may also appear through Google ads, inviting users to join new chains. In this case, the scam website will ask the user to connect a wallet - and in that case, it's best to only risk the test with a new empty wallet.
链接也可能通过谷歌广告出现,邀请用户加入新的连锁店。在这种情况下,诈骗网站将要求用户连接钱包 - 在这种情况下,最好只用新的空钱包进行测试。
Finally, promising airdrops or point farming can lull users into putting their skepticism to sleep and granting permission to their wallets. One of the latest X handles to be hacked belonged to the SPX6900 hot meme token, exposing potential buyers to a malicious address. Sometimes, links are hidden in what appear to be harmless offers or download links. As more newcomers flock to meme tokens, keeping their wallets ready for trading at all times, we can expect to see more of these incidents.
最后,承诺的空投或积分耕种可以让用户放下怀疑,并允许他们的钱包使用。最新被黑客攻击的 X 账号之一属于 SPX6900 热门 meme 代币,使潜在买家面临恶意地址。有时,链接隐藏在看似无害的优惠或下载链接中。随着越来越多的新手涌向 meme 代币,并随时准备好钱包进行交易,我们预计会看到更多此类事件。
Scam advertising on social media, as well as scam replies, often carry malicious links. Additionally, be wary of compromised Discord servers or expired invitations, and never install software or open calls to do so, as they may be designed to drain wallets or compromise private keys.
社交媒体上的诈骗广告以及诈骗回复通常带有恶意链接。此外,请警惕受损的 Discord 服务器或过期的邀请,切勿安装软件或公开调用来执行此操作,因为它们可能旨在耗尽钱包或泄露私钥。
免责声明:info@kdj.com
所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!
如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。
-
- 比特币、eCash 分叉和空投动态:深入探讨加密货币的最新争议
- 2026-05-03 00:52:02
- 探索最近的 eCash 分叉、其作为高风险空投的分类,以及对比特币和加密生态系统的更广泛影响。
-
-
- 美联储维持利率稳定,地缘政治紧张局势引发比特币价格下跌
- 2026-05-01 04:04:38
- 美联储维持利率的决定,加上中东冲突,影响了比特币的价格。分析近期趋势和市场反应。
-
-
-
-
-
-

































