我们的 @MistTrack_io TrackAgent 发现朝鲜黑客采用 Cow Protocol + Chainflip 组合跨链操作:Bitget 被盗资金,朝鲜黑客自动化脚本通过 Cow Protocol 创建订单,订单收款地址设置为预先准备好的 Chainflip Deposit 相关合约地址,订单成功后即可完成在 Chainflip 的资产跨链操作,换成 BTC。 如这笔: 在 CoW Protocol 上创建订单: https://etherscan.io/tx/0xae6b1153446a05db7123e94ed5e2de828a2f9f5dc4802429a77ba88fc2497b0a 订单成交: https://etherscan.io/tx/0xfcb591c1c6aa0d0a6937b1ab3b834c27b9f6c096859b7a44b6df018187a80409 收款地址(即 Chainflip Deposit Contract): 0xcEAE932A8bEE3a81a681A59890cb26d3110FDb65 对应 Chainflip 记录: https://scan.chainflip.io/swaps/1861124 跨链资产到 BTC 地址: bc1qa0rjjhyu9pg3adgpel4v7dct6a8606az863jyh @MistTrack_io @SlowMist_Team



