《SlowMist慢雾:2025年区块链安全与反洗钱年度报告(英文版)(126页).pdf》由会员分享,可在线阅读,更多相关《SlowMist慢雾:2025年区块链安全与反洗钱年度报告(英文版)(126页).pdf(126页珍藏版)》请在三个皮匠报告上搜索。
1、 Table of contents I.Introduction 3 II.Blockchain Security Trends 4 2.1 Overview of Blockchain Security Incidents 4 2.2 Top 10 Security Incidents of 2025 7 2.2.1 Bybit 7 2.2.2 Cetus Protocol 8 2.2.3 Balancer V2 8 2.2.4 Nobitex 9 2.2.5 Phemex 9 2.2.6 UPCX 10 2.2.7 BtcTurk 10 2.2.8 Infini 10 2.2.9 Coi
2、nDCX 11 2.2.10 GMX 11 2.3 Scam Techniques 12 2.3.1 Phishing Attack 12 2.3.2 Social Engineering Attack 22 2.3.3 Supply Chain and Open Source Ecosystem Poisoning 31 2.3.4 Malicious Browser Extensions and Extension Ecosystem Risks 38 2.3.5 Attacks Using AI Technology 44 2.3.6 Ponzi Scheme Fraud 51 III.
3、Anti-Money Laundering Trends 58 3.1 AML and Regulatory Dynamics 58 3.1.1 LE and Sanctions Actions 58 3.1.2 Regulatory Policies 63 3.1.2.1 Asia 63 1 3.1.2.2 Europe 68 3.1.2.3 North America 70 3.1.2.4 Latin America 72 3.1.2.5 Middle East 73 3.1.2.6 Africa 73 3.1.2.7 Oceania 74 3.2 Freeze/Recover Funds
4、 Data 75 3.3 Cybercrime Organizations and the Underground Cyber Ecosystem 78 3.3.1 DPRK Hackers 78 3.3.2 Drainer 95 3.3.3 Huione Group 103 3.3.4 Ransomware/Malware 108 3.3.5 Privacy/Coin Mixing Tools 114 IV.Conclusion 118 V.Disclaimer 120 VI.About SlowMist 121 2 I.Introduction In 2025,the blockchain
5、 industry continued its rapid evolution,with the interplay of macro-financial conditions,regulatory uncertainties,and intensified attacks making the overall security landscape significantly more complex.On one hand,hacker groups and underground cybercrime networks exhibited stronger organization and
6、 professionalization.North Korealinked hackers remained highly active,with information-stealing trojans,private key hijacking,and social engineering phishing being the main attack vectors throughout the year.Risks in the DeFi ecosystem continued to surface,with Meme token launches,permission managem