市值: $2.2043T 0.58%
成交额(24h): $56.8553B 3.76%
  • 市值: $2.2043T 0.58%
  • 成交额(24h): $56.8553B 3.76%
  • 恐惧与贪婪指数:
  • 市值: $2.2043T 0.58%
加密货币
话题
百科
资讯
加密话题
视频
热门新闻
加密货币
话题
百科
资讯
加密话题
视频
bitcoin
bitcoin

$87959.907984 USD

1.34%

ethereum
ethereum

$2920.497338 USD

3.04%

tether
tether

$0.999775 USD

0.00%

xrp
xrp

$2.237324 USD

8.12%

bnb
bnb

$860.243768 USD

0.90%

solana
solana

$138.089498 USD

5.43%

usd-coin
usd-coin

$0.999807 USD

0.01%

tron
tron

$0.272801 USD

-1.53%

dogecoin
dogecoin

$0.150904 USD

2.96%

cardano
cardano

$0.421635 USD

1.97%

hyperliquid
hyperliquid

$32.152445 USD

2.23%

bitcoin-cash
bitcoin-cash

$533.301069 USD

-1.94%

chainlink
chainlink

$12.953417 USD

2.68%

unus-sed-leo
unus-sed-leo

$9.535951 USD

0.73%

zcash
zcash

$521.483386 USD

-2.87%

加密货币新闻

Thorchain Deepfake骗局:当加密货币创始人成为目标时

2025/09/13 14:00

Thorchain联合创始人在一个精致的Deepfake骗局中损失了135万美元。了解攻击,朝鲜联系以及如何保护自己。

Thorchain Deepfake骗局:当加密货币创始人成为目标时

THORChain Deepfake Scam: When Crypto Founders Become the Target

Thorchain Deepfake骗局:当加密货币创始人成为目标时

In the ever-evolving world of crypto, even the most seasoned veterans aren't immune to sophisticated scams. The recent $1.35 million theft from a THORChain co-founder, orchestrated through a deepfake attack, serves as a stark reminder of this reality.

在不断发展的加密世界中,即使是经验丰富的退伍军人也无法免疫复杂的骗局。最近,通过索什(Thorchain)联合创始人盗窃了135万美元的盗窃案,通过深层攻击进行了精心策划,这引起了这一现实的明显提醒。

The Anatomy of the Attack

攻击的解剖结构

The attack began with a compromised Telegram account. The victim, John-Paul Thorbjornsen, was lured into a fake Zoom meeting. This wasn't just any scam; it involved deepfake technology to impersonate someone he knew. Once the attackers gained access, they exploited vulnerabilities in his iCloud Keychain and browser profile to extract private keys tied to an old, forgotten MetaMask wallet. The result? A devastating $1.35 million loss.

攻击始于受损的电报帐户。受害人约翰·鲍尔·索布约恩森(John-Paul Thorbjornsen)被引诱参加假缩放会议。这不仅仅是任何骗局;它涉及DeepFake技术,以模仿他认识的人。一旦攻击者获得访问权限,他们就会在其iCloud钥匙扣和浏览器配置文件中利用漏洞,以提取与旧的,被遗忘的元掩蔽钱包有关的私钥。结果?毁灭性的135万美元亏损。

North Korean Connection?

朝鲜联系?

Blockchain investigators have pointed fingers at North Korean actors, citing patterns and prior behavior. While attribution in such cases is complex and requires time to confirm, the possibility adds another layer of concern to this already alarming incident. Ironically, THORChain products had been previously used by North Korean groups to launder stolen funds.

区块链的调查人员以手指指着朝鲜演员,并以模式和先前的行为为由。虽然在这种情况下的归因很复杂,并且需要时间来确认,但可能性增加了这一令人震惊的事件的另一层关注。具有讽刺意味的是,北朝鲜集团以前曾使用过胸腔产品来洗钱。

A Wake-Up Call for Security

警惕安全要求

This incident isn't isolated. It's part of a growing trend of deepfake and Zoom scams targeting crypto users. Security researchers warn that criminals are increasingly combining social engineering with AI tools to create incredibly convincing scams. Storing private keys in software that syncs to cloud services creates vulnerabilities. Threshold signature wallets, splitting key shares across multiple devices, may be the best defense against such advanced attacks.

此事件并非孤立。这是针对加密用户的DeepFake和变焦骗局不断增长的趋势的一部分。安全研究人员警告说,犯罪分子越来越多地将社会工程与AI工具相结合,以创造令人信服的骗局。将私钥存储在与云服务同步的软件中会产生漏洞。阈值签名钱包,跨多个设备的钥匙股分开,可能是针对此类高级攻击的最佳防御。

THORSwap's Response: A Bounty for the Hacker

Thorswap的回应:黑客的赏金

In a rather unusual move, THORSwap offered a public bounty to the hacker, promising no legal action if the funds were returned within 72 hours. This approach, while surprising, reflects a growing trend in the crypto community: prioritizing recovery over revenge.

在一个相当不寻常的举动中,Thorswap向黑客提供了公开赏金,承诺如果在72小时内退还资金,则无法律行动。这种方法令人惊讶地反映了加密社区的增长趋势:优先考虑恢复而不是报仇。

The Broader Implications

更广泛的含义

This incident underscores the fragility of trust in the crypto sector. As scammers adapt to advanced tools like deepfakes and supply chain exploits, individual investors and major companies face growing pressure to adapt. The recent Ledger CTO warning after the NPM attack further highlights the risks facing cryptocurrency users: direct scams that exploit human error and technical attacks that compromise widely used development tools.

这一事件强调了加密部门信任的脆弱性。随着骗子适应高级工具和供应链的利用,个人投资者和主要公司面临着越来越多的适应压力。 NPM攻击后最近的Ledger CTO警告进一步突出了加密货币用户面临的风险:直接骗局,这些骗局利用了人为错误和技术攻击,这些骗局损害了广泛使用的开发工具。

So, What Can You Do?

那么,你能做什么?

The lesson here is clear: vigilance is non-negotiable. Diversify protective measures by adopting hardware wallets, verifying transaction details, and regularly auditing the applications you rely upon.

这里的教训很明显:警惕性是不可谈判的。通过采用硬件钱包,验证交易详细信息并定期审核您所依赖的应用程序来多样化保护措施。

While all of this might sound like a scene from a dystopian thriller, remember that knowledge is power. Stay informed, stay vigilant, and maybe think twice before clicking that Zoom link. After all, in the wild west of crypto, a little bit of paranoia can go a long way.

尽管所有这些听起来都像是反乌托邦惊悚片的场景,但请记住,知识就是力量。保持告密性,保持警惕,然后在单击该缩放链接之前三思而后行。毕竟,在加密货币的野外,一点偏执狂可能会走很长一段路。

原文来源:bitcoinist

免责声明:info@kdj.com

所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!

如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。

2026年08月13日 发表的其他文章