Cronos 網路在遭遇 Tectonic 7400 萬美元漏洞利用後重啟
重點速覽
- •Cronos Network 為應對 Tectonic 借貸協議上的活躍漏洞攻擊而暫停區塊生產。
- •鏈已從區塊 90,896,189 重新上線,並回滾至攻擊前的狀態。
- •調查人員表示,攻擊者操縱了 TONIC 價格,並將膨脹後的代幣作為抵押品,再從 Tectonic 資金池借出資產。
- •損失估算不一,鏈上研究員 Weilin Li 將數字從約 6600 萬美元修正為約 7500 萬美元。
- •Crypto.com 表示其交易所與應用程式未受影響,客戶資金保持安全。

Cronos Network 在驗證者暫停區塊鏈以阻止對其最大借貸協議 Tectonic 的攻擊後,於週日恢復區塊生產。該網路在 X 發文表示,此次關停旨在阻止攻擊者從生態系統中移走更多資金。
鏈在 8 月 30 日 23:49 UTC 自區塊 90,896,189 恢復運行。其狀態已回復至攻擊發生前所記錄的時間點。
Cronos Network 表示,驗證者協調了這項緊急行動,以在攻擊進行中保護用戶。節點營運者被告知使用 Cronos v1.7.8,並套用當天早上發布的快照重新啟動系統。
The Cronos Network is producing blocks again and is fully back online. The Cronos Network halted earlier today. This was a validator-consensus emergency action to protect users from an exploit on the Tectonic protocol. The chain state was restored to before the Tectonic exploit… — Cronos Network (@CronosNetwork) August 31, 2026
The Cronos Network is producing blocks again and is fully back online. The Cronos Network halted earlier today. This was a validator-consensus emergency action to protect users from an exploit on the Tectonic protocol. The chain state was restored to before the Tectonic exploit…
Cronos 在 8 月 30 日 Tectonic 漏洞利用後持續監控網路
區塊鏈仍在持續監控中,團隊正確保其穩定性。部分協議、跨鏈橋、瀏覽器與遠端程序呼叫供應商可能需要更長時間才能恢復服務。
技術事後報告尚未發布。根據 Cronos Network,該報告將包含關於漏洞利用與復原過程的細節。
據報導,攻擊者鎖定的是 TONIC 的價格,TONIC 是 Tectonic 的治理代幣。儘管流動性約為 134 萬美元,該代幣的價值據稱在短短 20 分鐘內暴增 100 倍。
攻擊者隨後得以將被拉抬後的 TONIC 代幣作為抵押品存入。這使其能夠從 Tectonic 借貸池中借出其他資產,進而造成大量資金外流。
損失估算因納入的錢包不同而有所差異。鏈上研究員 Weilin Li 最初估計,攻擊者大約盜走了 6600 萬美元。
之後,Li 在發現另一個與攻擊者相關的錢包後,將損失估算修正為約 7500 萬美元。調查尚未得出最終損失數字。
It seems @TectonicFi has been exploited for around $66M! The root cause is simple: TONIC, it's own governance token has a 20% collateral factor, with very thin liquidity. The attacker performed a Mango-market style pump-and-borrow price manipulation attack. TONIC's price surged… pic.twitter.com/cZ2QQNC9C6 — Weilin (William) Li (@hklst4r) August 30, 2026
It seems @TectonicFi has been exploited for around $66M! The root cause is simple: TONIC, it's own governance token has a 20% collateral factor, with very thin liquidity. The attacker performed a Mango-market style pump-and-borrow price manipulation attack. TONIC's price surged… pic.twitter.com/cZ2QQNC9C6
Crypto.com 平台未受影響
週日,Crypto.com 執行長 Kris Marszalek 表示,公司的交易所與應用程式未受影響。他還指出,這些平台上的客戶資金仍然安全。
There has been a security breach on a Cronos lending protocol Tectonic. Cronos team is investigating, with assistance from security team. app and exchange were not affected and are operating as usual. All funds are safe. I will… — Kris (@kris) August 30, 2026
There has been a security breach on a Cronos lending protocol Tectonic. Cronos team is investigating, with assistance from security team. app and exchange were not affected and are operating as usual. All funds are safe. I will…
同時,Crypto.com 與 Cronos Network 的安全團隊持續調查中。此次調查將檢視攻擊者如何利用 TONIC 協議,並取得借貸池中的資產。
在另一則更新中,Cronos Network 表示其測試版應用已重新上線供測試。預計未來幾天將增加更多功能,並再次強調用戶資金是安全的。
Cronos Network 已恢復的內容
作為安全措施而關停整條區塊鏈,是一種極端手段,通常僅用於正在進行且持續造成損失的攻擊。據報導,在被竊走的 7400 萬美元中,只有 600 萬美元逃離了區塊鏈。
這顯示此次關停阻止了攻擊者移走大部分資金。不過,後續的事後報告應可釐清這起駭客事件,以及不同的損失數字。
Cronos Network 目前已讓基礎層重新上線,但跨整合平台的完整功能恢復仍在進行中。隨著基礎設施逐步恢復,開發者將持續監控整個過程。