2025-04-15 13:16:18
4

KiloEx 永久 DEX 因价格预言机漏洞损失 740 万美元

KiloEx 永久 DEX 因价格预言机漏洞损失 740 万美元

KiloEx, a decentralized perpetuals trading platform backed by YZi Labs, was exploited for approximately $7.4 million in a cross-chain attack.

The attack was first flagged by blockchain security platform Cyvers Alerts on Apr. 14 at 7:30 PM UTC. The company reported that a wallet funded via Tornado Cash carried out a number of dubious transactions on Base, Taiko, and BNB Chain (BNB). A price oracle access control vulnerability was reported to be the root cause. The stolen funds include USD Coin (USDC), which may be blacklisted by issuers.

KiloEx 随后确认了该漏洞,并敦促相关协议和平台将攻击者的钱包列入黑名单,并宣布立即暂停平台活动。平台表示,正在采取措施,启动桥接协议,防止进一步损失。KiloEx 还宣布将启动赏金计划,并发布全面的事后分析报告。

在随后的更新中,该团队表示正在与区块链安全公司 Seal-911、SlowMist 和 Sherlock 以及 BNB Chain 和 Manta Network 等网络合作,调查并追回被盗资金。据报道,这些资产通过 zkBridge 和 Meson 进行桥接。

区块链安全公司 PeckShield 的进一步分析估计损失约为 750 万美元,其中 Base 损失 330 万美元,opBNB 损失 310 万美元,BSC 损失 100 万美元。

该公司证实,操纵的价格预言机允许攻击者以 100 的 ETH/USD 价格开仓,然后立即以 10,000 的虚高价值平仓,在一次交易中净赚数百万美元。

The KiloEx exploit adds to a growing trend of DeFi hacks. In Q1 2025, $1.64 billion was stolen, making it the worst quarter ever for cryptocurrency exploits, according to Immunefi’s Q1 2025 report. While centralized finance platforms lost $1.5 billion in two attacks, DeFi protocols lost $106.8 million in 38 incidents.

声明:文章不代表币特网观点及立场,不构成本平台的投资建议,转载联系作者并注明出处:然后加上这个内页的网址: https://m.bitcoin688.com/news/71860.html
回顶部