慢雾分析Poly Network被黑:事件原因并非keeper私钥泄露,而是跨链合约keeper可被修改
Favorite
Share
Scan with WeChat
Share with Friends or Moments
巴比特讯,8月10日晚间,跨链互操作协议Poly Network遭到黑客攻击,共计超6.1亿美元转出至3个地址,受此影响导致O3 Swap跨链池大额资产被转出。对此,慢雾安全团队发布分析报告表示,这种攻击主要是因为EthCrossChainData合约的keeper可以被EthCrossChainManager合约修改,EthCrossChainManager合约的verifyHeaderAndExecuteTx函数可以通过_executeCrossChainTx函数来执行用户传入的数据。因此,攻击者利用该函数传入精心构造的数据来修改EthCrossChainData合约的keeper,并非由于keeper的私钥泄露而发生此事件。
Disclaimer: This article is copyrighted by the original author and does not represent MyToken’s views and positions. If you have any questions regarding content or copyright, please contact us.(www.mytokencap.com)contact
About MyToken:https://www.mytokencap.com/aboutusArticle Link:https://www.mytokencap.com/news/303529.html
Previous: 陈楚初:比特币日内回调进入盘整 以太坊上行减弱维持震荡
Next:MakerDAO 估值:如何搭建护城河?
Related Reading


Shiba Inu Could Erupt 500%—Analyst Sounds The Alarm
Shiba Inu (SHIB) might have its price increase more than fivefold from where it is now, based on rec...
KULR Technology Buys Additional 42 Bitcoin Worth $4M: Company’s BTC Trove Surges to 716.2 Coins
The post KULR Technology Buys Additional 42 Bitcoin Worth $4M: Company’s BTC Trove Surges to 716.2 C...
Tomarket Daily Combo Today
Discover today’s Tomarket daily combo and boost your rewards in the Tomarket Telegram game. Learn ho...