TechCrunch News 02月27日
Hacked crypto exchange Bybit offers $140 million bounty to trace stolen funds
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

加密货币交易所Bybit遭遇史上最大规模的加密货币盗窃案,损失约14亿美元的以太坊。Bybit悬赏高达1.4亿美元,寻求帮助追踪和冻结被盗资金。首席执行官周本宣布,成功追踪并冻结被盗资金者,可获得该笔资金的5%作为奖励,另有5%奖励给冻结资金的“实体”。目前,已有五名赏金猎人帮助Bybit追回部分资金,并获得423万美元的奖励。调查显示,此次攻击源于SafeWallet平台的恶意代码,黑客入侵了SafeWallet开发者的设备。

💰Bybit交易所遭遇重大安全事件,损失高达14亿美元的以太坊加密货币,成为加密货币历史上最大的盗窃案之一。

📢Bybit提供高达1.4亿美元的悬赏,鼓励安全研究人员和社区成员协助追踪和冻结被盗资金,成功者将获得被追回资金的10%作为奖励。

🕵️初步调查显示,攻击的根源在于SafeWallet平台的恶意代码,黑客通过入侵SafeWallet开发者的设备,替换了原本良性的Javascript文件,专门针对Bybit的以太坊多重签名冷钱包。

🇰🇵多方安全研究人员和加密货币安全公司认为,此次攻击背后与朝鲜政府支持的Lazarus集团有关,该组织长期以来以加密货币交易所和Web3公司为目标,仅2024年就盗取了6.5亿美元的加密货币。

Last week, hackers stole around $1.4 billion in Ethereum cryptocurrency from crypto exchange Bybit, believed to be the largest crypto heist in history. Now, the company is offering a total of $140 million in bounties for anyone who can help trace and freeze the stolen funds.

Bybit’s CEO and co-founder Ben Zhou announced the bounty in a post on X on Tuesday. 

On the official site of the bounty, Bybit explains that for every time someone traces and freezes some of the stolen funds, 5% of that amount goes to the person who found them, and 5% to the “entity” that froze said funds. 

At the time of writing, thanks to five bounty hunters, Bybit has already awarded $4.23 million in bounties, according to the site, whose logo is a knife appearing to be stabbing through the head of North Korean leader Kim Jong-un.

Do you have more information about the Bybit hack, or other crypto heists? From a non-work device and network, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or email. You also can contact TechCrunch via SecureDrop.

“We will not stop until Lazarus or bad actors in the industry is eliminated. In the future we will open it up to other victims of Lazarus as well,” Zhou wrote, referring to Lazarus Group, the name that the cybersecurity industry has assigned to a broad group of North Korean-backed hackers focused largely on cryptocurrency thefts.  

Multiple security researchers and crypto security and monitoring firms believe the hackers behind the massive Bybit heist work for the North Korean government, which over the years has become very effective at targeting crypto exchanges and web3 companies, stealing $650 million in crypto in 2024 alone, according to the governments of the United States, Japan, and South Korea.

On Wednesday, Bybit’s Zhou published the preliminary results of the forensic investigation into the hack, led by two companies, Sygnia Labs and Verichains. Sygnia concluded that the “root cause” of the attack was malicious code coming from the infrastructure of SafeWallet, a crypto wallet platform. Verichains said a benign Javascript file was replaced with a malicious version “specifically targeting Ethereum Multisig Cold Wallet of Bybit.” 

The two investigating security companies concluded that hackers breached a developer’s device at SafeWallet, as the company itself confirmed.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Bybit 加密货币盗窃 赏金 SafeWallet Lazarus集团
相关文章