扫码下载
BTC $76,856.25 +2.63%
ETH $2,411.46 +2.72%
BNB $639.86 +2.67%
XRP $1.48 +3.83%
SOL $89.89 +4.44%
TRX $0.3242 -0.63%
DOGE $0.1013 +4.04%
ADA $0.2635 +4.06%
BCH $453.13 +2.67%
LINK $9.72 +3.29%
HYPE $44.50 -1.25%
AAVE $117.75 +9.11%
SUI $1.02 +3.33%
XLM $0.1719 +6.22%
ZEC $346.19 +0.29%
BTC $76,856.25 +2.63%
ETH $2,411.46 +2.72%
BNB $639.86 +2.67%
XRP $1.48 +3.83%
SOL $89.89 +4.44%
TRX $0.3242 -0.63%
DOGE $0.1013 +4.04%
ADA $0.2635 +4.06%
BCH $453.13 +2.67%
LINK $9.72 +3.29%
HYPE $44.50 -1.25%
AAVE $117.75 +9.11%
SUI $1.02 +3.33%
XLM $0.1719 +6.22%
ZEC $346.19 +0.29%

慢雾:zkLend 被盗核心原因在于市场合约采用 safeMath 库

2025-02-12 21:13:35
收藏

ChainCatcher 消息,针对今日 zkLend 被盗超 900 万美元事件,慢雾发布分析称,这次攻击的核心原因在于市场合约采用的 safeMath 库。在进行除法计算时,采用直接除法,导致在计算提现作时实际需要销毁的 zToken 数量时存在四舍五入漏洞。攻击者可能会利用此漏洞非法获取利益。

请用户密切关注自身在 zkLend 上的资产状态,暂时停止与 zkLend 相关的充值动作,以免造成可能的损失。

app_icon
ChainCatcher 与创新者共建Web3世界