币安Trust Wallet 浏览器插件被盗,用户损失 700 万美元。
Binance's Trust Wallet extension hacked; users lose $7M

原始链接: https://www.web3isgoinggreat.com/?id=trust-wallet-hack

11月21日,卡尔达诺区块链因一笔利用旧版节点软件已知漏洞的交易而发生重大分叉。责任人承认,他发起此问题是为了个人挑战,并受到有缺陷的AI生成指令的误导,无意中阻塞了网络流量。 尽管链很快恢复,卡尔达诺创始人查尔斯·霍金森公开指责该个人发动了恶意、预谋的攻击,声称他在Discord服务器内策划了数月,旨在损害卡尔达诺的声誉。他还声称FBI已经展开调查。 霍金森的回应以及执法部门的介入引发了争议,导致一名IOG工程师辞职,表达了对潜在严重后果的担忧——包括可能发生的突袭,针对无意错误和在线批评。该事件凸显了卡尔达诺社区内围绕安全测试、负责任的AI使用以及网络中断处理的紧张关系。

## Trust Wallet 被黑与加密货币安全问题 近期,币安旗下 Trust Wallet 扩展程序遭到黑客攻击,导致用户损失 700 万美元,引发了 Hacker News 上关于加密货币固有风险的讨论。该事件凸显了一个反复出现的问题:保护加密资产充满危险,无论用户自行管理密钥(容易丢失/被盗)还是依赖第三方托管人(容易遭受黑客攻击或诈骗)。 评论员将这些风险与传统、政府担保的银行存款进行了对比,指出它们提供的责任和安全性。虽然加密货币的去中心化特性对某些人具有吸引力,但也意味着出现问题时补救措施有限。人们对加密交易的匿名性(或缺乏匿名性)以及起诉在传统管辖范围之外运营的实体所面临的困难表示担忧。 讨论还涉及在现有网络基础设施中保护加密货币的技术挑战,建议需要超越网络浏览器的替代交互方式。尽管存在风险,一些人仍然对底层技术抱有信心,而另一些人则认为加密货币是不受约束的自由市场中的一次有缺陷的实验。币安承诺向受影响的用户进行赔偿,但有关此类承诺的可行性和可靠性的问题仍然存在。
相关文章

原文
On November 21, the Cardano blockchain suffered a major chainsplit after someone created a transaction that exploited an old bug in Cardano node software, causing the chain to split. The person who submitted the transaction fessed up on Twitter, writing, "It started off as a 'let's see if I can reproduce the bad transaction' personal challenge and then I was dumb enough to rely on AI's instructions on how to block all traffic in/out of my Linux server without properly testing it on testnet first, and then watched in horror as the last block time on explorers froze."

Charles Hoskinson, the founder of Cardano, responded with a tweet boasting about how quickly the chain recovered from the catastrophic split, then accused the person of acting maliciously. "It was absolutely personal", Hoskinson wrote, adding that the person's public version of events was merely him "trying to walk it back because he knows the FBI is already involved". Hoskinson added, "There was a premeditated attack from a disgruntled [single pool operator] who spent months in the Fake Fred discord actively looking at ways to harm the brand and reputation of IOG. He targeted my personal pool and it resulted in disruption of the entire cardano network."

Hoskinson's decision to involve the FBI horrified some onlookers, including one other engineer at the company who publicly quit after the incident. They wrote, "I've fucked up pen testing in a major way once. I've seen my colleagues do the same. I didn't realize there was a risk of getting raided by the authorities because of that + saying mean things on the Internet."

联系我们 contact @ memedata.com