市值: $2.166T 0.12%
成交额(24h): $39.5437B -26.91%
  • 市值: $2.166T 0.12%
  • 成交额(24h): $39.5437B -26.91%
  • 恐惧与贪婪指数:
  • 市值: $2.166T 0.12%
加密货币
话题
百科
资讯
加密话题
视频
热门新闻
加密货币
话题
百科
资讯
加密话题
视频
bitcoin
bitcoin

$87959.907984 USD

1.34%

ethereum
ethereum

$2920.497338 USD

3.04%

tether
tether

$0.999775 USD

0.00%

xrp
xrp

$2.237324 USD

8.12%

bnb
bnb

$860.243768 USD

0.90%

solana
solana

$138.089498 USD

5.43%

usd-coin
usd-coin

$0.999807 USD

0.01%

tron
tron

$0.272801 USD

-1.53%

dogecoin
dogecoin

$0.150904 USD

2.96%

cardano
cardano

$0.421635 USD

1.97%

hyperliquid
hyperliquid

$32.152445 USD

2.23%

bitcoin-cash
bitcoin-cash

$533.301069 USD

-1.94%

chainlink
chainlink

$12.953417 USD

2.68%

unus-sed-leo
unus-sed-leo

$9.535951 USD

0.73%

zcash
zcash

$521.483386 USD

-2.87%

加密货币新闻

网络钓鱼:黑客变得更聪明

2024/10/17 13:00

由于网络钓鱼攻击的不断增加,10 月份迄今为止已损失了 4100 万美元。加密空间内的大多数网络钓鱼操作通常涉及让用户通过其加密钱包签署操作,以批准合同或链接权限。

网络钓鱼:黑客变得更聪明

A whopping $41 million has been lost in October so far due to the increasing influx of phishing attacks. Most of the phishing operations within the crypto space usually involve engaging users in signing actions through their crypto wallets, to approve contracts or linking permissions.

由于网络钓鱼攻击的不断增加,10 月份迄今为止已损失了 4100 万美元。加密空间内的大多数网络钓鱼操作通常涉及让用户通过其加密钱包签署操作,以批准合同或链接权限。

Making false tokens that look like real wallet tokens is one typical phishing method used to pilfer cryptocurrencies from victims’ wallets. Particularly harmful is permit phishing since it lets several highly valuable tokens be transferred simultaneously.

制作看起来像真实钱包代币的虚假代币是一种典型的网络钓鱼方法,用于从受害者的钱包中窃取加密货币。特别有害的是允许网络钓鱼,因为它允许同时转移多个高价值的代币。

3 hours ago, another victim lost $1.57M after signing a “permit” phishing signature.

3小时前,另一名受害者在签署“许可”网络钓鱼签名后损失了157万美元。

Phishing: Hackers Getting Smarter

网络钓鱼:黑客变得更聪明

An example is a wallet breach with $1.39 million worth of meme tokens. Although such ransom attacks are not new, they picked up the pace just in the last few days of October, which correlates with increased user activity.

一个例子是价值 139 万美元的 Meme 代币的钱包泄露。尽管此类勒索攻击并不新鲜,但在 10 月份的最后几天,其攻击速度有所加快,这与用户活动的增加有关。

25 mins ago, a PEPE holder lost $1.39M worth of PEPE, MSTR, and APU after signing a “permit2” phishing signature.

25 分钟前,一名 PEPE 持有者在签署“permit2”网络钓鱼签名后损失了价值 139 万美元的 PEPE、MSTR 和 APU。

Most such attacks occur on the Ethereum blockchain, which is very liquid and uses well-known smart contracts. Most hackers use open-source contracts to devise malicious links or develop quite realistic-looking smart contracts for unsuspecting individuals to click.

大多数此类攻击发生在以太坊区块链上,该区块链流动性非常好,并且使用众所周知的智能合约。大多数黑客使用开源合约来设计恶意链接或开发看起来非常逼真的智能合约,供毫无戒心的个人点击。

Hacked Social Media Accounts Spread Fake Links

被黑的社交媒体帐户传播虚假链接

Crypto has seen a lot of activity on X and similar platforms, which makes X user accounts now the biggest target for hackers. The issue is particularly high in October, as the meme token frenzy would overlap with a broader market recovery. Hacked X accounts, especially those of influencers or meme token projects, share links deceiving users into connecting their wallets.

Crypto 在 X 和类似平台上出现了大量活动,这使得 X 用户帐户现在成为黑客的最大目标。这个问题在 10 月份尤其严重,因为 meme 代币的狂热将与更广泛的市场复苏重叠。被黑的 X 帐户,尤其是影响者或 meme 代币项目的帐户,会共享链接,欺骗用户连接他们的钱包。

The link might empty the wallets, even from a simple “connect wallet” click. Some malicious links might be token recovery or anti-hack tools. Other fake links also resemble and mimic advertisements from search engines, such as Google, which ask people to connect their wallets to new blockchains. Therefore, all necessary testing for authenticity should be done with empty wallets.

即使单击简单的“连接钱包”,该链接也可能会清空钱包。一些恶意链接可能是令牌恢复或反黑客工具。其他虚假链接也类似于谷歌等搜索引擎的广告,要求人们将钱包连接到新的区块链。因此,所有必要的真实性测试都应该在空钱包的情况下进行。

Exploits In Airdrop And Advertising

空投和广告中的漏洞

Phishing schemes always employ interest in airdrops or point farming to raise the guard and obtain wallet permissions. Recently, hackers stole an X account associated with the SPX6900 meme token, which might have put the buyers at risk of malicious addresses.

网络钓鱼骗局总是利用空投或积分挖矿的兴趣来提高警惕并获取钱包权限。最近,黑客窃取了与 SPX6900 meme 令牌相关的 X 帐户,这可能使买家面临恶意地址的风险。

Malicious links may appear like harmless offers or download links targeting people preparing their wallets for trading meme tokens but these events will become more prevalent as more users begin filling the meme token space.

恶意链接可能看起来像是无害的优惠或下载链接,目标是准备钱包进行 Meme 代币交易的人们,但随着越来越多的用户开始填充 Meme 代币空间,这些事件将变得更加普遍。

Social media scam ads, fake comments, botched Discord servers, and expired invitation links are additional risks. One attack can swallow your wallet, another might do a lot more damage that could be beyond your crypto wallet.

社交媒体诈骗广告、虚假评论、损坏的 Discord 服务器和过期的邀请链接都是额外的风险。一种攻击可能会吞噬您的钱​​包,另一种攻击可能会造成更大的损害,甚至超出您的加密钱包。

原文来源:bitcoinist

免责声明:info@kdj.com

所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!

如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。

2026年08月02日 发表的其他文章