2024年7月18日,印度交易所WazirX遭黑客攻击,其多签钱包被黑客控制转出总价值超过2.35亿美元的虚拟货币。

黑客通过0x6eedf92fb92dd68a270c3205e96dccc527728066地址发起攻击,将交易所热钱包0x27fd43babfbe83a81d14665b1a6fb8030a60c9b4中的资产转移到黑客地址0x04b21735e93fa3f8df70e2da89e6922616891a88中,然后又通过0x90ca792206ed7ee9bc9da0d0df981fc5619f91fd和0x35febc10112302e0d69f35f42cce85816f8745ca两个地址将不同的虚拟货币在去中心化交易所交易为ETH,转到地址0x361384e2761150170d349924a28d965f0dd3f092中。

WazirX黑客盗取代币中尚有150种未进一步转移

图一:WazirX黑客攻击及转移资金流出,来源:search.ichainfo.com

search.ichainfo.com统计,在此次攻击中涉及的虚拟货币达200种,截止到7月19日,其中有50种已经被黑客陆续转移并在去中心化交易所中兑换为ETH,包括:

Tether USD

Pepe

Gala

USDC

DENT

Render Token

OriginToken

Request

Contentos

Alchemy

SHIBA INU

Matic Token

FLOKI

Fantom Token

ChainLink Token

Fetch

Decentraland

SAND

HoloToken

1INCH Token

Uniswap

FTT

LoopringCoin V2

yearn.finance

Graph Token

UniLend Finance Token

Phala

BAT

JasmyCoin

ALICE

UMA Voting Token v1

Arbitrum

Spell Token

Reserve Rights

ApeCoin

Cream

Memecoin

Aave Token

Amp

Curve DAO Token

Immutable X

Beam

ZRX

COTI Token

Bluzelle

chiliZ

Axie Infinity Shard

Ankr Network

Biconomy Token

Quant

以Loopring(LRC)为例,黑客从交易所中获取的5640009代币全部被转移到0x90ca792206ed7ee9bc9da0d0df981fc5619f91fd地址中,进而通过该地址在Uniswap全部抛售。这也对市场造成了较大冲击。

WazirX黑客盗取代币中尚有150种未进一步转移

图二:WazirX抛售LRC造成的市场波动,来源:tradingview

对于投资者来说,需要关注黑客地址中其他未转移的虚拟货币动向,其都有可能对市场造成较大影响,具体代币包括:

Gnosis

Chroma

CelerToken

Ooki Token

Frontier Token

Ethereum Push Notification Service

Cartesi Token

Reef.finance

OMG Network

Republic

Streamr

NKN

Civic

Alien Worlds Trilium

Loom Token

district0x

FunFair

IOSToken

Livepeer Token

Compound

VIB

Threshold Network Token

dYdX

SushiToken

WOO

Illuvium

TokenFi

AlphaToken

Dusk Network

Hifi Finance

Lever

Ethereum Name Service

RLC

SKALE

Storj

Maker

Worldcoin

Audius

QuarkChain Token

Blur

PYR Token

Synthetix Network Token

BandToken

StormX

SuperFarm

YFII.finance

TomoChain

Golem Network Token

SelfKey

Pundi X Token

Dexe

Kyber Network Crystal v2

DODO bird

STPT

Clover

Tellor Tributes

Bounce Token

AdEx

Lido DAO Token

IDEX Token

AVA

Beta Token

NucleusVision

WAXP Token

Omni Network

Orchid

QuickSwap

Ondo

Boba Token

BUSD

Perpetual

Pendle

StatusNetwork

Wrapped MIR Token

Radicle

PIXEL

Flux

Ethena

Mask Network

pNetwork Token

Automata

Origin Dollar Governance

bitsCrunch Token

SuperRare

Alchemix

Numeraire

Dalarnia

Aragon Network Token

Adventure Gold

API3

Paxos Gold

Chickencoin

EASY V2

BarnBridge Governance Token

Highstreet token

Balancer

PlayDapp

Measurable Data Token

Melon Token

PowerLedger

Aavegotchi GHST Token

ComboToken

ether.fi governance token

Bread

League of Kingdoms Arena

Open Custody Protocol

LQTY

Bancor

EnjinCoin

Voyager Token

Yield Guild Games Token

IoTeX Network

The Force Token

FARM Reward Token

Linear Token

Metis Token

Marlin POND

eesee

LayerZero

Mettalex

dego.finance

Big Time

Rupiah Token

Walton

Swipe

OnX.finance

ARPA Token

Mantle

Galxe

PLANET

Pepe 2.0

MultiVAC

XDoge

SAITABIT

Metal

Switch

GreenMetaverseToken

BABYTRUMP

Tokenize Emblem

Dejitaru Tsuka

SPACE ID

Injective Token

Wrapped Pepe

CocosTokenV2

CarryToken

Ocean Token

BOB

Smooth Love Potion

Lisk

ETH

文:Auguste

来源:WazirX hacker still holds 150 tokens that have not been further transferred