Hyperbridge确认Token Gateway遭漏洞利用,桥接服务已暂停

Odaily星球日报讯 Hyperbridge 在 X 平台发布安全更新称,其 Token Gateway 于 4 月 13 日遭漏洞利用,在以太坊造成约 23.7 万美元损失,目前已紧急暂停桥接操作。此次事件仅影响跨链至以太坊的 DOT 资产,原生 Polkadot 主网及平行链资产未受影响。官方表示,漏洞源于 Solidity 实现的 Merkle Mountain Range(MMR)证明验证逻辑缺陷,导致无效证明被错误接受。攻击者借此获取跨链 DOT 合约管理权限,铸造 10 亿枚虚假代币(远超约 35.6 万枚实际流通量),并在去中心化交易所抛售获利,但此次漏洞未破坏 Hyperbridge 基于加密证明的信任最小化。
Disclaimer: OKX Orbit content is provided for informational purposes only. Learn more
Replies
Related Flash News
Polkadot OpenGov plans to require validators to self-stake at least 10,000 DOT
21Shares launches the first ETF in the United States to track the native token of Canton Network
Binance will delist five margin trading pairs, including TRX/ETH, in May 2026
Binance Leverage will remove multiple trading pairs such as TRX/ETH, LINK/ETH, etc
Monad Lianchuang: If the collateral supply is set a rate limit, today's rsETH event can avoid a loss of about $200 million
Hyperbridge: Raised vulnerability losses to approximately $2.5 million, with some funds traced to Binance
Bridged Polkadot 漏洞攻击者将 26.9 万美元赃款转入 Tornado Cash
Data: The top 100 crypto tokens by market cap today are up and down
Hyperbridge: The vulnerability in this attack is due to a flaw in Merkle proof verification logic
A trader bought the bottom of DOT on the chain and made a profit of $150,000 at a cost of $600



