注册并分享邀请链接,可获得视频播放与邀请奖励。

galenyuan.eth 的个人资料封面
galenyuan.eth 的头像

galenyuan.eth (@galenyuan)

@galenyuan
0 正在关注    0 粉丝
说句公道话:我不清楚 bitget 的资金是否允许放开提现,但 bitget 现在其实是没法开提现的,bitget 被黑跟 bybit 被黑的本质区别是 bybit 是外部原因导致在冷钱包划转到热钱包的过程里被黑,自身系统没出问题,而 bitget 是自身资金系统被入侵导致的热钱包被黑,这种情况 bitget 首先得搞清楚黑客怎么进去的、是不是还在里面潜伏着、热钱包要不要换,在搞清楚这些问题之前贸然开提现基本上就相当于再给黑客送一笔钱
显示更多
0
11
66
5
转发到社区
锁依赖版本!锁依赖版本!锁依赖版本!
🚨 SlowMist TI Alert 🚨 A new Shai-Hulud / Miasma / Hades npm malware variant linked to the compromised npm developer account czirker, affecting the npm ecosystem. The campaign uses a preconfigured binding.gyp file to execute during npm install; reported scope includes 23 affected packages, with leo-logger noted at 3,140 weekly npm downloads. As of the tweet publication time, 408 infected GitHub repositories containing stolen credentials had already been observed. Potential attacker actions include GitHub token theft, npm token theft, AWS / GCP / Azure credential theft, local environment data exfiltration, malicious GitHub workflow abuse, and further npm supply-chain propagation. Security teams should immediately check lockfiles and package histories for affected versions, downgrade or remove impacted packages, rotate npm, GitHub, cloud, CI/CD, and application secrets, enforce 2FA. Thanks to @OX__Security for the excellent analysis. As always, stay vigilant! The following URL can be used to track the latest situation:
显示更多