扫码下载
BTC $77,808.35 -1.37%
ETH $2,316.96 -3.16%
BNB $637.15 -1.11%
XRP $1.43 -1.01%
SOL $85.14 -3.18%
TRX $0.3289 +0.15%
DOGE $0.0965 -0.56%
ADA $0.2474 -2.21%
BCH $457.18 -1.40%
LINK $9.26 -2.06%
HYPE $41.20 +0.82%
AAVE $92.23 -2.29%
SUI $0.9381 -2.66%
XLM $0.1770 -1.61%
ZEC $323.29 -0.42%
BTC $77,808.35 -1.37%
ETH $2,316.96 -3.16%
BNB $637.15 -1.11%
XRP $1.43 -1.01%
SOL $85.14 -3.18%
TRX $0.3289 +0.15%
DOGE $0.0965 -0.56%
ADA $0.2474 -2.21%
BCH $457.18 -1.40%
LINK $9.26 -2.06%
HYPE $41.20 +0.82%
AAVE $92.23 -2.29%
SUI $0.9381 -2.66%
XLM $0.1770 -1.61%
ZEC $323.29 -0.42%
first_img

慢雾披露 Bybit 黑客攻击细节

2025-02-22 00:55:46
收藏

ChainCatcher 消息,慢雾披露 Bybit 黑客攻击细节:

1、恶意的实现合约在 UTC 2025-02-19 7:15:23 被部署

0xbDd077f651EBe7f7b3cE16fe5F2b025BE2969516

2、攻击者在 UTC 2025-02-21 14:13:35 利用三个 owner 签署了将 Safe 实现合约替换为恶意合约的交易

0x46deef0f52e3a983b67abf4714448a41dd7ffd6d32d32da69d62081c68ad7882

3、恶意的升级逻辑通过 DELEGATECALL 被嵌入 STORAGE[0x0]

0x96221423681A6d52E184D440a8eFCEbB105C7242

4、攻击者使用恶意合约中的后门函数 sweepETH 和 sweepERC20 来提取热钱包中的资产。

app_icon
ChainCatcher 与创新者共建Web3世界