It's been two days, and the situation regarding the theft on Bybit is still unclear.
Let me share my thoughts, as I have encountered a multi-signature theft before and requested help (which was eventually resolved):
Right now, do not doubt the security of the safe, nor should you question the security of the Ethereum underlying layer or smart contracts, and do not investigate how the signature content was replaced.
In fact, this transaction was initially an upgrade of the contract, not a transfer. The issue lies with the person who created this transaction. The subsequent participants trusted the first person too much and did not check carefully, or the first person who created the transaction employed a "man-in-the-middle" attack. The UI presented to the other two participants for signing was correct, but what was on-chain was not.
So, either the first person did this intentionally, or their device was indeed compromised.
This is the only possibility for the theft on Bybit.
免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。