掃碼下載
BTC $62,538.94 +2.56%
ETH $1,633.28 +4.07%
BNB $593.04 +2.96%
XRP $1.13 +5.53%
SOL $65.01 +4.36%
TRX $0.3289 +2.97%
DOGE $0.0848 +4.97%
ADA $0.1651 +5.43%
BCH $226.66 +1.76%
LINK $7.77 +6.48%
HYPE $59.01 -0.08%
AAVE $63.67 +4.46%
SUI $0.7601 +8.08%
XLM $0.2053 +4.28%
ZEC $394.35 +7.87%
BTC $62,538.94 +2.56%
ETH $1,633.28 +4.07%
BNB $593.04 +2.96%
XRP $1.13 +5.53%
SOL $65.01 +4.36%
TRX $0.3289 +2.97%
DOGE $0.0848 +4.97%
ADA $0.1651 +5.43%
BCH $226.66 +1.76%
LINK $7.77 +6.48%
HYPE $59.01 -0.08%
AAVE $63.67 +4.46%
SUI $0.7601 +8.08%
XLM $0.2053 +4.28%
ZEC $394.35 +7.87%

Snap Store 出現安全漏洞,黑客可通過劫持過期域名盜取用戶加密資產

2026-01-21 12:06:35
收藏

ChainCatcher 消息,据慢霧科技首席信息安全官 23pds 披露,Linux 平台的 Snap Store 應用商店出現新型安全漏洞,黑客通過劫持過期域名接管應用發布者帳號,將惡意代碼植入加密錢包應用。

攻擊者監控並註冊 Snap Store 中關聯域名已過期的開發者帳號,利用這些域名郵箱觸發密碼重置,從而接管建立長期信譽的發布者身份。被篡改的應用偽裝成 Exodus、Ledger Live 或 Trust Wallet 等知名加密錢包,界面與正版幾乎無差別。

目前已確認 storewise[.]tech 和 vagueentertainment[.]com 兩個發布者域名被劫持。這些惡意應用會誘導用戶輸入"錢包恢復助記詞",一旦用戶提交,敏感信息將被傳至攻擊者伺服器,導致數字資產被盜。

app_icon
ChainCatcher 與創新者共建Web3世界