慢雾:Truebit 出现安全事件原因系合约中缺少溢出保护机制

TRU-8,37%
ETH1,91%

Foresight News 消息,慢雾 SlowMist 安全团队发布了 Truebit Protocol 安全事件分析报告。1 月 8 日,Truebit Protocol 因其 Purchase 合约中的整数溢出漏洞遭受攻击,攻击者能够以接近零成本铸造 TRU 代币并窃取 8,535 枚以太坊(约 2,644 万美元)。根本原因为合约中缺少溢出保护机制,导致价格计算错误。被盗资金随后被转移至 Tornado Cash。建议对使用 Solidity 0.8.0 之前版本编译的合约始终使用 SafeMath 保护所有算术操作,以防止溢出相关的逻辑缺陷。

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Articoli correlati

Arbitrum DAO Votes to Release 30,766 ETH to DeFi United Following Kelp DAO Attack

According to The Block, the Arbitrum DAO is voting to release approximately 30,766 ETH frozen by the Arbitrum Security Council to the DeFi United initiative, formed in response to the Kelp DAO attack earlier this month. In the first hour of voting on May 1, 16.9 million ARB tokens were cast in

GateNews11m fa

Arbitrum DAO Begins Voting on Releasing Frozen Ethereum, 100% Approval Rate as of May 8

According to Foresight News, Arbitrum DAO has begun voting on releasing frozen Ethereum seized during the Kelp DAO hack. The proposal establishes a multisig address signed by Aave Labs, KelpDAO, Certora, and EtherFi to oversee recovery efforts after the frozen funds are released. The proposal

GateNews18m fa

Ethereum Foundation Opens EPF7 Fellowship Applications, Deadline May 13

According to Cryptopolitan, Ethereum Foundation opened applications for EPF7 (Ethereum Protocol Fellowship 7) on May 1, with a deadline of May 13, 2026. The fellowship will prioritize depth of participation over breadth compared to previous cohorts. Selected developers will receive monthly

GateNews3h fa

Bitmine Stakes 162,088 ETH Worth $365.67M in Past 6 Hours

According to Onchain Lens, Bitmine staked 162,088 ETH (approximately $365.67 million) 6 hours ago. The entity now holds a total of 4,196,973 ETH under staking, valued at around $95 billion.

GateNews3h fa
Commento
0/400
Nessun commento