GoPlus 年度安全报告:1200 起严重安全事件造成超 35 亿美元总损失,攻击者策略呈现“精准猎杀”、“广撒网”并行的趋势

ChainCatcher 消息,据 GoPlus RektDatabase 数据显示,2025 年 Web3 领域用户和项目方发生超 1200 起较严重的安全事件,造成总损失超过 35 亿美元。
私钥窃取(基于病毒木马和社工)、钓鱼攻击、Rug Token(欺诈 Token)是最高发的三种攻击与欺诈类型。其中,Bybit 被盗事件(2 月 21 日,15 亿美元)、Cetus 被盗事件(5 月 22 日,2.23 亿美元)、Balancer 被盗事件(11 月 2 日,1.28 亿美元)为 2025 年受损金额 Top3 事件。
安全态势上呈现出“超大额事件数量增加”、“用户小额欺诈成本显著降低”的明显特征,这标志着攻击者策略呈现“精准猎杀”、“广撒网”并行的趋势。值得注意的是,2025 年单体损失金额超 3000 万美元的攻击事件共 12 起,其中 CeFi 占了 7 起,管理员私钥被盗、热钱包私钥被盗是最主要的原因,暴露了显著的风险。
Disclaimer: OKX Orbit content is provided for informational purposes only. Learn more
Replies
Related Flash News
On Hyperliquid, HYPE spot TWAP orders shifted to selling pressure, with net selling pressure reaching $1.7 million in the next 24 hours
UAE giant IHC completed its first institutional-grade dirham stablecoin transaction, amounting to 30 million USD
10x Research: Most Bitcoin treasury companies have significantly compressed their NAV premiums and may enter an era of negative premiums
Slow Mist Cosine: The Squid security incident issue is not with the private key; the Safe wallet module has vulnerabilities as shown in the figure
Bitcoin has entered a high-risk range, and the continued withdrawal of institutional funds highlights concerns about selling pressure
Data: Whales opened $40.26 million in BTC short positions and held $33.3 million in ZEC long positions
The two whales have long DOGE and LINK positions totaling $6.33 million, with over $10 million in limit orders pending execution
The survey shows that 16% of Brazilian investors have allocated cryptocurrencies, while 56% of non-investors intend to enter the market
Arthur Hayes: Monetary privacy will be "very necessary," so Zcash is the second largest holding
Goldman Sachs CEO refutes AI's "employment doomsday theory": AI will boost productivity and create new jobs



