又遇到一位玩家多個地址的 $WLFI 都被盜事件,看了下盜竊手法,又是 7702 delegate 惡意合約利用,前提也是私鑰洩露,黑客在目標錢包地址上提前埋伏好惡意的 7702 delegate 地址,之後將目標地址所有 ETH 及價值 token(比如這裡是 $WLFI)轉走,一點渣渣都不剩,如果用戶轉入 ETH 當 gas,會被繼續轉走… 這種利用手法已經很成熟,提醒各位多多注意。技術細節不再展開,我們 @SlowMist_Team 提過多次。
Cos(余弦)😶‍🌫️
Cos(余弦)😶‍🌫️9月1日 17:42
These past few days, I've helped some people follow up on the strange issues they encountered with $WLFI being "phished" and other odd problems, especially the private key leak that led to addresses being delegated to malicious contracts by 7702. When it's time to claim $WLFI, it's highly likely that these groups will conveniently snatch it away... We don't engage in running away; I only point out what the essence of the problem is. Also, I don't have a single $WLFI, wishing these friends a smooth rescue.
78.81K