BTC $78,401.42 +1.54%
ETH $2,504.07 +0.48%
BNB $721.26 +0.26%
XRP $1.40 +3.67%
SOL $101.72 +1.07%
TRX $0.3408 +0.04%
DOGE $0.0838 +0.11%
ADA $0.2086 +0.63%
BCH $222.64 -1.16%
LINK $11.40 +0.72%
HYPE $79.78 +1.71%
AAVE $125.92 -0.59%
SUI $0.7206 +0.53%
XLM $0.1898 +5.64%
ZEC $1,141.83 +4.21%
AAPL $332.98 +0.50%
AMZN $252.44 -0.80%
GOOGL $344.46 +2.13%
MSFT $500.25 +1.49%
META $652.99 +1.63%
NVDA $210.89 -2.18%
TSLA $359.32 -1.15%
SNDK $1,543.22 -2.17%
INTC $96.15 -3.53%
SPCX $148.18 -0.66%
MU $914.65 -2.22%
AMD $484.09 -3.78%
BTC $78,401.42 +1.54%
ETH $2,504.07 +0.48%
BNB $721.26 +0.26%
XRP $1.40 +3.67%
SOL $101.72 +1.07%
TRX $0.3408 +0.04%
DOGE $0.0838 +0.11%
ADA $0.2086 +0.63%
BCH $222.64 -1.16%
LINK $11.40 +0.72%
HYPE $79.78 +1.71%
AAVE $125.92 -0.59%
SUI $0.7206 +0.53%
XLM $0.1898 +5.64%
ZEC $1,141.83 +4.21%
AAPL $332.98 +0.50%
AMZN $252.44 -0.80%
GOOGL $344.46 +2.13%
MSFT $500.25 +1.49%
META $652.99 +1.63%
NVDA $210.89 -2.18%
TSLA $359.32 -1.15%
SNDK $1,543.22 -2.17%
INTC $96.15 -3.53%
SPCX $148.18 -0.66%
MU $914.65 -2.22%
AMD $484.09 -3.78%

Slow Fog: If Bybit upgrades the Safe contract to version 1.3.0 or higher and implements an appropriate Guard mechanism, it may avoid the theft of 1.5 billion dollars in assets

2025-02-26 16:49:20

ChainCatcher message, Slow Mist stated that on February 21, 2025, Bybit's on-chain multi-signature wallet was targeted and breached, with nearly $1.5 billion in assets quietly lost through a transaction with a "legitimate signature." Subsequent on-chain analysis revealed that the attacker gained multi-signature permissions through sophisticated social engineering attacks, implanted malicious logic using the delegatecall function of the Safe contract, and ultimately bypassed the multi-signature verification mechanism to transfer funds to an anonymous address. "Multi-signature" does not equal "absolute security"; even a secure mechanism like the Safe multi-signature wallet can still be at risk of being compromised if lacking additional protective measures.

Bybit is using version v1.1.1 (<1.3.0) of the Safe contract, which means they cannot utilize the Guard mechanism, a key security feature. If Bybit had upgraded to version 1.3.0 or higher of the Safe contract and implemented an appropriate Guard mechanism, such as specifying a whitelist address for receiving funds and conducting strict contract function ACL verification, they might have been able to avoid this loss. Although this is merely a hypothesis, it provides important insights for future asset security management.

Упомянутые проекты
app_icon
ChainCatcher Building the Web3 world with innovations.