BTC $79,051.67 -1.73%
ETH $2,486.83 -1.23%
BNB $739.18 -1.97%
XRP $1.39 -2.03%
SOL $103.73 -2.69%
TRX $0.3341 -0.42%
DOGE $0.0905 -0.30%
ADA $0.2204 -1.32%
BCH $257.99 -1.33%
LINK $12.74 -3.61%
HYPE $85.09 -3.23%
AAVE $132.00 -3.45%
SUI $0.8167 +0.83%
XLM $0.1937 +3.75%
ZEC $1,139.15 -7.13%
BTC $79,051.67 -1.73%
ETH $2,486.83 -1.23%
BNB $739.18 -1.97%
XRP $1.39 -2.03%
SOL $103.73 -2.69%
TRX $0.3341 -0.42%
DOGE $0.0905 -0.30%
ADA $0.2204 -1.32%
BCH $257.99 -1.33%
LINK $12.74 -3.61%
HYPE $85.09 -3.23%
AAVE $132.00 -3.45%
SUI $0.8167 +0.83%
XLM $0.1937 +3.75%
ZEC $1,139.15 -7.13%

slow

Все
Статьи
Новости

OKX совместно с Elliptic, SlowMist и OttoSec опубликовали отчет по безопасности и управлению рисками Web3 за первую половину 2026 года

Сообщение ChainCatcher, согласно официальным данным, OKX совместно с Elliptic, SlowMist, OttoSec выпустила «Отчет о безопасности и управлении рисками Web3 за первую половину 2026 года». В отчете отмечается, что акцент атак Web3 постепенно смещается с кода смарт-контрактов на более сложные сценарии, такие как процессы подписи, пользовательские устройства, инфраструктура эксплуатации и AI Agent.Данные показывают, что за первую половину 2026 года система управления рисками OKX заблокировала более 5,7 миллиона высокорисковых транзакций, из которых около 2,41 миллиона транзакций были связаны с хакерами и кражами, около 1,48 миллиона транзакций были связаны с фишингом, и около 990 тысяч транзакций были связаны с мошенничеством. Библиотека меток разведывательной информации OKX Web3 в настоящее время содержит более 1 миллиарда меток, охватывающих более 420 цепочек, и интегрирует возможности проверки адресов, мониторинга транзакций и управления санкционными адресами в такие инфраструктуры, как DEX и Exchange OS.Кроме того, в области защиты пользователей OKX заблокировала более 7 миллионов попыток доступа к рискованным сайтам, провела более 200 тысяч проверок рисков устройств, идентифицировала более 60 тысяч высокорисковых приложений и заблокировала или выдала предупреждения по более чем 4 миллионам высокорисковых операций с подписями. В отчете также представлено проектирование «предварительного управления рисками» в таких сценариях, как Exchange OS, Outcomes, RWA и Agentic Wallet.

Bitget совместно с Slow Mist выпустил «Отчет о мошенничестве 2026 года»: доля пользователей с кросс-активами превышает 10%, AI комплексное мошенничество ускоряет эволюцию

Сообщение ChainCatcher, согласно совместно опубликованному Bitget и SlowMist «Отчету о борьбе с мошенничеством 2026 года», показывает, что с продолжающимся расширением цифровых финансов в области акций, токенизированных активов и инструментов ИИ, кросс-активная торговля постепенно становится важной тенденцией участия пользователей на рынке. Доля пользователей кросс-активного распределения увеличилась с менее чем 1% в середине 2025 года до более 10% в мае 2026 года.В отчете отмечается, что мошеннические методы эволюционируют от простых атак к сложным цепочкам атак, объединяя такие способы, как контент, сгенерированный ИИ, глубокая подделка, клонирование голоса и многоканальная социальная инженерия. С июля 2025 года по июнь 2026 года система безопасности Bitget перехватила более 150 миллионов злонамеренных запросов, идентифицировала более 13 тысяч высокорисковых злонамеренных IP-адресов и помогла пользователям вернуть около 32,3 миллиона долларов, связанных с инцидентами безопасности и мошеннической деятельностью.Генеральный директор Bitget Грейси Чен заявила, что в этом году проходит третья акция «Месяц борьбы с мошенничеством», и Bitget продолжит выпускать материалы по безопасности, руководства по распознаванию рисков и мероприятия по сотрудничеству в отрасли, чтобы помочь пользователям повысить свои способности к распознаванию и защите от мошенничества с ИИ, фишинговых атак и мошенничества в многосетевых сценариях.

Slow Fog: Red Hat cloud service npm package suffers from active supply chain attacks, with stolen credentials found in over 300 GitHub repositories

SlowMist has issued a security alert, detecting an active npm supply chain attack targeting @redhat-cloud-services related packages. Currently, over 31 packages have been confirmed affected, with a weekly download volume of approximately 116,000 times, and stolen credentials exist in more than 300 GitHub repositories. This attack method is highly similar to the previous "Shai-Hulud" npm attack, including credential theft, creation of malicious repositories, and automated secret leakage. New suspicious repositories continue to emerge, indicating that the attack is still ongoing, and developers are still being continuously infected.Potential harms include: theft of GitHub/npm tokens, leakage of AWS/GCP/Azure cloud credentials, collection of SSH keys and Kubernetes secrets, leakage of local environment and wallet data, creation of malicious repositories and persistence operations, and even potentially destructive actions after tokens are revoked. It is recommended to immediately remove or downgrade affected @redhat-cloud-services package versions, conduct a comprehensive audit of CI/CD workflows and dependency installations, rotate all GitHub, npm, cloud service, SSH, and wallet-related keys, retain logs, and rebuild exposed developer machines or Runners from clean images while maintaining a high level of vigilance.

Slow Fog: TRON users should be vigilant against phishing activities involving counterfeit TronLink Chrome extensions

SlowMist has issued a security warning stating that a high-risk phishing activity targeting TRON wallet users has been discovered. Attackers created a fake Chrome extension for the TronLink wallet, using Unicode bidirectional control characters and Cyrillic homographs to disguise the brand name. After installation, the extension loads a complete phishing page through a remote iframe, forming a "shell-core separation" credential theft chain.The malicious extension name uses homographs for disguise, and its Chrome Store page inherits the high user count and positive reviews of the real extension, lowering the review threshold. There is very little local code, only loading remote pages, making static analysis nearly impossible to detect malicious behavior. The remote phishing page perfectly replicates the official TronLink web wallet interface, stealing mnemonic phrases, private keys, Keystore files, and passwords, and relaying them in real-time via a Telegram Bot.Built-in anti-analysis features disable right-click, developer tools, drag-and-drop, and printing, and redirect based on the geographic and language settings of Russian users to evade detection. SlowMist recommends immediately uninstalling suspicious extensions, clearing local storage, checking for abnormal traffic, and if credentials have been entered, creating a new wallet and transferring assets immediately.

ETF capital is driving a slow bull market with positive gamma, and the options rising star trader support program is now open

BTC IV 39%, ETH IV 55%; ETH Skew is at a critical turning point------the mid to long term stabilizes at +2 to +5, while the short term has repeatedly dropped to -10 but quickly returned to zero. If ETH stabilizes above $2,400, the short term turning positive will resonate with the mid to long term, confirming a shift from event hedging to upward chasing. The BTC/ETH GEX Term Structure shows that the near-month Gamma has clearly turned positive, with ETF inflows and Call accumulation driving a positive Gamma slow bull structure------under a Long Gamma environment for market makers, the short term is inclined towards high-level fluctuations and slow increases, with IV retreating. Bull Call Spread and selling Put strategies are dominant, but the far month retains negative Gamma reflecting ongoing tail hedging demand. In terms of block trades, 1,001.8 BTC 5/8 expiration $88K Calls were traded, and 14,288 ETH 5/15 expiration $2,600 Calls were traded, indicating clear bullish signals from institutions.Gate has launched the "Rising Star Trader Support Program" for options, with a total prize pool of $25,000 USDT. During the event, users can earn multiple rewards through options trading, inviting friends, and participating in KOL incubation camps: the highest reward for meeting trading volume standards can reach $3,000, and the highest commission for inviting can reach $2,000. Meanwhile, the platform also provides high-quality traders with 1-on-1 options hedging training, exclusive rate discounts, and traffic support, helping traders enhance their strategy capabilities and market influence, and providing a more competitive trading environment and growth opportunities for professional options users.

Blockstream CEO: The inflow of institutional funds into Bitcoin is slower than expected, and building positions may take 12 to 18 months

Some observers view Morgan Stanley's entry into the U.S. spot Bitcoin ETF earlier this month as a catalyst to end the current crypto bear market, citing the large distribution capability of the Wall Street giant's $8 trillion wealth advisory network. However, Blockstream CEO and early Bitcoin community contributor Adam Back stated that "it won't happen that quickly."Back was recently speculated by The New York Times to be the anonymous Bitcoin creator Satoshi Nakamoto, which he denied. Back indicated that from a positive market signal perspective, the Bitcoin ETF could be the most significant development in recent times, even more important than a pro-crypto U.S. government, but this process is slower than most people realize.Back stated, "I think one thing people might be miscalculating is that institutional adoption is very slow. So the ETF has been bought, but when BlackRock suggested allocating 2% to 4% in its general stock portfolio, fund managers had not done that yet. They will, but slower than people expect." He mentioned that investors will not rush in overnight, and the accumulation process could take a year or even 18 months.Regarding prices, Back noted that the cyclical nature of Bitcoin's four-year halving cycle needs to be considered. He pointed out that even if some commentators believe the four-year cycle is breaking down, "people expect it to happen, so they sell to make it actually happen," and a decline could still occur. This logic will only change when people see the market strengthen, which is currently manifesting in the form of institutional capital inflows.Back stated that regarding recent comments about the accelerated development of quantum computing hardware potentially threatening Bitcoin's cryptography, institutions are more systematic in risk management and will focus on tail risks, while retail investors view it as a distant future risk.
app_icon
ChainCatcher Building the Web3 world with innovations.