![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
![]() |
|
在网络暂时停止以阻止最近的漏洞利用后,Terra 区块链已恢复正常运行。今天早些时候,Terra 报告了一起安全漏洞,导致包括 USDC 和 Astroport 代币在内的各种资产被盗。
Terra blockchain resumes operations after halting to patch recent exploit
Terra 区块链在停止修补最近的漏洞后恢复运行
Earlier today, Terra reported a security breach that led to the theft of various assets, including USDC and Astroport tokens.
今天早些时候,Terra 报告了一起安全漏洞,导致包括 USDC 和 Astroport 代币在内的各种资产被盗。
The attack
攻击
The exploit targeted a vulnerability in IBC-hooks, a third-party add-on for Inter-Blockchain Communication (IBC) that supports cross-chain contract interactions and token transfers. Although Terra patched the issue in April, the fix was unintentionally reversed in a June update.
该漏洞针对的是 IBC-hooks 中的漏洞,IBC-hooks 是支持跨链合约交互和代币传输的区块链间通信 (IBC) 第三方插件。尽管 Terra 在 4 月份修复了该问题,但该修复在 6 月份的更新中无意中被撤销。
Cyvers Alert, a Web3 security firm, explained that the attacker exploited a reentrancy vulnerability in the timeout callback of IBC hooks.
Web3安全公司Cyvers Alert解释称,攻击者利用了IBC钩子超时回调中的重入漏洞。
The firm revealed that the attacker used this vulnerability to steal assets worth approximately $5 million. This includes 60 million ASTRO valued at around $1 million, 3.5 million USDC, 500,000 USDT, and 2.7 BTC, roughly $178,000 at current rates.
该公司透露,攻击者利用此漏洞窃取了价值约 500 万美元的资产。其中包括价值约 100 万美元的 6000 万个 ASTRO、350 万个 USDC、50 万个 USDT 和 2.7 个 BTC,按当前汇率计算约为 178,000 美元。
In response, the network paused block production at block height 11,430,400 to implement an emergency patch.
作为回应,网络在区块高度 11,430,400 处暂停了区块生产,以实施紧急补丁。
The vulnerability has been fixed as of press time, and the network Validators are updating their nodes to prevent similar exploits. Terra added:
截至发稿时,该漏洞已得到修复,网络验证器正在更新其节点以防止类似的攻击。泰拉补充道:
“Validators holding over 67% of the voting power on Terra have upgraded their nodes to prevent the exploit from recurring. More validators are expected to upgrade soon.”
“在 Terra 上拥有超过 67% 投票权的验证者已经升级了他们的节点,以防止漏洞再次发生。预计很快会有更多验证器升级。”
Astroport token declines
Astroport 代币下跌
Despite Terra’s recovery efforts, Astroport’s ASTRO token has plunged by 62% in the past 24 hours, trading at $0.01775, according to CryptoSlate’s data.
根据 CryptoSlate 的数据,尽管 Terra 做出了恢复努力,但 Astroport 的 ASTRO 代币在过去 24 小时内暴跌 62%,交易价格为 0.01775 美元。
The Cosmos-based liquidity protocol explained that the IBC vulnerability allowed the attacker to mint several tokens on the Terra chain, negatively impacting the asset’s price. It stated:
基于 Cosmos 的流动性协议解释说,IBC 漏洞允许攻击者在 Terra 链上铸造多个代币,从而对资产价格产生负面影响。它指出:
“The Astroport contributors are working with the other chains and Cosmos builders to determine what measures can be taken. We will keep you updated as we learn more.”
“Astroport 贡献者正在与其他连锁店和 Cosmos 建设者合作,以确定可以采取哪些措施。当我们了解更多信息时,我们会及时向您通报最新情况。”
Meanwhile, security experts have also emphasized that Astroport wasn’t exploited, and its token “became collateral damage because it’s the only Terra token that has meaningful liquidity for stealing.”
与此同时,安全专家还强调,Astroport 没有被利用,它的代币“成为了附带损害,因为它是唯一一个具有有意义的盗窃流动性的 Terra 代币。”
Mentioned in this article
这篇文章中提到
Oluwapelumi Adejumo
奥鲁瓦佩鲁米·阿德朱莫
Oluwapelumi values Bitcoin's potential. He imparts insights on a range of topics like DeFi, hacks, mining and culture, underlining transformative power.
Oluwapelumi 重视比特币的潜力。他就 DeFi、黑客、挖矿和文化等一系列主题发表了见解,强调了变革的力量。
Liam 'Akiba' Wright
利亚姆·“秋叶”·赖特
Also known as "Akiba," Liam is a reporter, editor and podcast producer at CryptoSlate. He believes that decentralized technology has the potential to make widespread positive change.
Liam 也被称为“Akiba”,是 CryptoSlate 的记者、编辑和播客制作人。他相信去中心化技术有潜力带来广泛的积极改变。
免责声明:info@kdj.com
所提供的信息并非交易建议。根据本文提供的信息进行的任何投资,kdj.com不承担任何责任。加密货币具有高波动性,强烈建议您深入研究后,谨慎投资!
如您认为本网站上使用的内容侵犯了您的版权,请立即联系我们(info@kdj.com),我们将及时删除。
-
-
- XRP与比特币:有关直接促销的辩论在加密社区中展开
- 2025-02-23 23:10:26
- 最近在加密货币社区进行了关于XRP和比特币如何促进的差异的辩论。 XRP支持者指出了涟漪
-
-
-
-
-
-
-
- SOL价格复兴来了:顶级趋势潘迪尼(Shibi)的目标是20倍
- 2025-02-23 23:00:27
- 由于分析师暗示了索拉纳(Solana)的上升空间,因此有关当前SOL价格的讨论正在加热。