白帽黑客披露 Injective 协议严重漏洞,涉及 5 亿美元资产,奖金争议未解决

INJ2,95%

Gate News 消息,3 月 16 日,白帽黑客 f4lc0n 在 X 平台披露,其在 Injective 协议中发现一个严重级别的安全漏洞,该漏洞可导致链上超过 5 亿美元的资产被直接提取。f4lc0n 表示,该漏洞允许任何用户在无需特殊权限的情况下清空链上任意账户。他通过 Immunefi 提交报告后,Injective 团队次日即发起主网升级投票修复该漏洞。然而,项目方仅向其开出 5 万美元的奖金,远低于其漏洞赏金计划中严重级别 50 万美元的最高标准。f4lc0n 称,在提交报告后的三个月内,Injective 团队处于失联状态,且 5 万美元奖金至今尚未支付。目前 f4lc0n 已对奖金数额提出争议,并宣布将拿出未来漏洞赏金收入的 10% 用于持续公开此事,直至 Injective 按标准支付报酬。

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Articoli correlati

Luck.io, Solana's Non-Custodial Casino, Shuts Down; Users Urged to Withdraw Funds Immediately

Gate News message, April 24 — Luck.io, a non-custodial casino platform built on Solana, announced its closure on April 24, 2026, urging all users to withdraw their balances from Smart Vaults immediately. Withdrawals can be initiated through the luck.io website or via the Vault Withdrawal Tool at

GateNews1h fa

U.S. Sanctions Iran-Linked Crypto Wallets; Tether Freezes $344 Million USDT

Gate News message, April 24 — U.S. Treasury Secretary Scott Bessent announced sanctions against multiple wallets linked to Iran on Thursday, as part of President Donald Trump's efforts to increase economic pressure on the country amid an ongoing ceasefire. "We will follow the money that Tehran is de

GateNews3h fa

Project Eleven 頒發 Q-Day 1 BTC 懸賞:研究者用量子電腦破解 15 位元橢圓曲線金鑰

專注研究「Q-Day(量子電腦破解區塊鏈密碼學日)」的非營利組織 Project Eleven 於 4/24 宣布,將 1 枚比特幣懸賞頒發給獨立研究者 Giancarlo Lelli。Lelli 在公開可存取的雲端量子電腦硬體上,使用 Shor 演算法變體,成功破解 15 位元橢圓曲線金鑰,這是迄今為止規模最大的公開量子攻擊示範。 攻擊規模與意義 項目 內容 獲獎者 Giancarlo Lelli(獨立研究者) 攻擊目標 15 位元橢圓曲線金鑰,搜尋 32,767 種可能性 使用硬體 公開可存取的雲端量子電腦 演算法 Shor

ChainNewsAbmedia4h fa

Researcher Breaks 15-Bit Elliptic Curve Key, Wins 1 BTC Bounty

Independent researcher Giancarlo Lelli derived a 15-bit elliptic curve key using a publicly accessible quantum computer, marking what Project Eleven called the "largest quantum attack" on elliptic curve cryptography to date, according to the startup. Project Eleven awarded Lelli a 1 BTC bounty,

CryptoFrontier6h fa

Polymarket Adds Steam Login, Balancer Hacker Swaps 7,000 ETH for BTC, Aave Chan Proposes Deposit Vault

Gate News message, April 24 — Polymarket introduced a new Steam account login option, expanding access methods for users. Saturn increased its STRC holdings, with total positions valued at $33 million. A Balancer hacker converted 7,000 ETH into 204.7 BTC, equivalent to approximately $15.88 million,

GateNews8h fa

Balancer Attacker Converts 13,191 ETH to 386.52 BTC Worth $30.54M

Gate News message, April 24 — According to Onchain Lens, the Balancer attacker (0xa6d6...BDaA) converted 13,191 ETH into 386.52 BTC over the past 15 hours, valued at approximately $30.54 million. The attacker currently holds an additional 8,000 ETH, worth approximately $18.52 million.

GateNews9h fa
Commento
0/400
Nessun commento