慢雾分析Poly Network被黑:事件原因并非keeper私钥泄露,而是跨链合约keeper可被修改
Favorite
Share
Scan with WeChat
Share with Friends or Moments
巴比特讯,8月10日晚间,跨链互操作协议Poly Network遭到黑客攻击,共计超6.1亿美元转出至3个地址,受此影响导致O3 Swap跨链池大额资产被转出。对此,慢雾安全团队发布分析报告表示,这种攻击主要是因为EthCrossChainData合约的keeper可以被EthCrossChainManager合约修改,EthCrossChainManager合约的verifyHeaderAndExecuteTx函数可以通过_executeCrossChainTx函数来执行用户传入的数据。因此,攻击者利用该函数传入精心构造的数据来修改EthCrossChainData合约的keeper,并非由于keeper的私钥泄露而发生此事件。
Disclaimer: This article is copyrighted by the original author and does not represent MyToken’s views and positions. If you have any questions regarding content or copyright, please contact us.(www.mytokencap.com)contact
About MyToken:https://www.mytokencap.com/aboutusArticle Link:https://www.mytokencap.com/news/303529.html
Previous: 陈楚初:比特币日内回调进入盘整 以太坊上行减弱维持震荡
Next:MakerDAO 估值:如何搭建护城河?
Related Reading


Bitcoin Tops $100K Again! Changpeng “CZ” Zhao Urges Traders to ‘Stay Calm and Hold’
The post Bitcoin Tops $100K Again! Changpeng “CZ” Zhao Urges Traders to ‘Stay Calm and Hold’ appeare...
Ethereum Jumps To $2,000 Amid Market Surge – Analyst Says This Resistance Is Next
After soaring over 10% on Wednesday, Ethereum (ETH) has jumped past the $2,000 mark for the first ti...
Tether Accused of Using Borrowed Money to Back USDT
The post Tether Accused of Using Borrowed Money to Back USDT appeared first on Coinpedia Fintech Ne...