Back to Blog

Solana 最佳加密货币追踪与调查平台

MetaSleuth
March 26, 2024

我们很高兴地宣布,MetaSleuth,我们全面的追踪和调查平台,现已集成 Solana!

随着 Solana 生态系统的不断发展,我们认识到需要强大的工具来导航和分析其区块链。现在 Solana 已上线 MetaSleuth,用户可以轻松探索 Solana,追踪资金并进行尽职调查 (DYOR),以及与他人分享有价值的见解。

Solana 在 MetaSleuth 上的集成

Solana 以其创新的数据存储和管理方法,在以太坊等其他区块链中独树一帜。值得注意的是,Solana 的代币账户设计提供了独特的优势。为了在 MetaSleuth 上为用户提供对代币资金的清晰分析和见解,我们实施了特殊的设计元素:

  • Solana 账户的所有者账户信息现已包含在内,可在地址面板中访问。
图 1:地址面板
图 1:地址面板
  • 为了保持清晰度,避免让用户被单个代币账户的详细信息淹没,我们选择不在 MetaSleuth 画布上显示代币账户。

  • 相反,当用户输入代币账户进行分析时,我们提供一种集中的方法。例如,在分析账户 '2bx7rHMpDUthvur8qnUJN9dNUsjKVE9S6tN16B78FoRG'(这是 'Solend main Pool Vault' 所拥有的 USDC 代币账户)时,我们可以清晰地看到该金库的 USDC 资金流。这种定制化的分析使得对 Solana 生态系统内的资金流动有了更深入的了解。

图 2:金库 USDC 资金流视图
图 2:金库 USDC 资金流视图

这些优化的设计增强了清晰度,并为用户提供了 MetaSleuth 平台上 Solana 代币资金的精确分析。您可以亲自尝试: https://metasleuth.io/result/solana/2bx7rHMpDUthvur8qnUJN9dNUsjKVE9S6tN16B78FoRG

案例研究:Slope 钱包黑客事件

2022 年 8 月,发生了一起重大 事件,超过 8,000 个 Solana 钱包被盗,造成约 520 万美元的损失。攻击者的利润分布在四个不同的账户中:

GeEccGJ9BEzVbVor1njkBCCiqXJbXVeDHaXDCrBDbmuy

5WwBYgQG6BdErM2nNNyUmQXfcUnB68b6kesxBywh1J3n

CEzN7mqP9xoxn2HdyW6fjEJ73t7qaX9Rp2zyS6hb3iEu

Htp9MGP8Tig923ZFY7Qf2zzbMUmYneFRAhSp7vSg4wxV

要启动调查,请在“已保存的图表/共享链接”面板中打开一个具有空白画布的新图表。将这四个攻击者账户添加到画布上,然后对于每个账户,单击“展开传出”以追踪被盗资金的去向。攻击者似乎持有资金数月,然后在 2023 年 3 月开始转移和洗钱活动。

图 3:资金流展开图
图 3:资金流展开图

绝大部分资金来自账户 [4JfXWXd2aenLncrdpJcryX8kZVJUSHyGPnc6HSyhA2Es],随后被兑换和进一步转移。截至今日,该账户仍有大量资金未转移。

图 4:资金仍留在账户 4JfXWX 中 https://solana.fm/address/4JfXWXd2aenLncrdpJcryX8kZVJUSHyGPnc6HSyhA2Es/transactions

所有 USDT 代币已从该账户转出,我们的首要任务是追踪 USDT 的后续转移,因为它们可能提供关键线索。进一步调查发现,资金已发送到 Binance。经过进一步分析,发现攻击者利用了一个依赖 Binance 的即时加密货币兑换服务,将资金转移到另一个区块链。对于持续的调查,您可以根据从即时加密货币兑换服务获得的信息匹配相应的交易。有关更多详细信息,请参阅此推文: https://twitter.com/zachxbt/status/1711748033954590900 图 5:USDT 的后续转移 https://metasleuth.io/result/solana/GeEccGJ9BEzVbVor1njkBCCiqXJbXVeDHaXDCrBDbmuy?source=ff950aab-a7a2-4bd0-a3b0-efb4c60a5a63

不要犹豫,立即前来尝试

关于 MetaSleuth

MetaSleuth 是 BlockSec 开发的一个综合平台,旨在协助用户有效追踪和调查所有加密活动。借助 MetaSleuth,用户可以轻松追踪资金,可视化资金流动,监控实时资金动向,保存重要信息,并通过与他人分享他们的发现来协作。目前,我们支持包括比特币 (BTC)、以太坊 (ETH)、波场 (TRX)、Polygon (MATIC) 等在内的 13 种不同的区块链。

网站: https://metasleuth.io/

Twitter: @MetaSleuth

电报: https://t.me/MetaSleuthTeam

Sign up for the latest updates
Drift Protocol Incident: Multisig Governance Compromise via Durable Nonce Exploitation
Security Insights

Drift Protocol Incident: Multisig Governance Compromise via Durable Nonce Exploitation

On April 1, 2026 (UTC), Drift Protocol on Solana suffered a $285.3M loss after an attacker exploited Solana's durable nonce mechanism to delay the execution of phished multisig approvals, ultimately transferring administrative control of the protocol's 2-of-5 Squads governance with zero timelock. With full admin privileges, the attacker created a malicious collateral market (CVT), inflated its oracle price, relaxed withdrawal protections, and drained USDC, JLP, SOL, cbBTC, and other assets through 31 rapid withdrawals in approximately 12 minutes. This incident highlights how durable nonce-based delayed execution can decouple signer intent from on-chain execution, bypassing the temporal assumptions that multisig security implicitly relies on.

Weekly Web3 Security Incident Roundup | Mar 23 – Mar 29, 2026
Security Insights

Weekly Web3 Security Incident Roundup | Mar 23 – Mar 29, 2026

This BlockSec weekly security report covers eight DeFi attack incidents detected between March 23 and March 29, 2026, across Ethereum and BNB Chain, with total estimated losses of approximately $1.53M. Incidents include a $679K flawed burn mechanism exploit on the BCE token, a $512K spot-price manipulation attack on Cyrus Finance's PancakeSwap V3 liquidity withdrawal, a $133.5K flash-loan-driven referral reward manipulation on a TUR staking contract, and multiple integer overflow, reentrancy, and accounting error vulnerabilities in DeFi protocols. The report provides detailed vulnerability analysis and attack transaction breakdowns for each incident.

Newsletter -  March 2026
Security Insights

Newsletter - March 2026

In March 2026, the DeFi ecosystem experienced three major security incidents. Resolv Protocol lost ~$80M due to compromised privileged infrastructure keys, BitcoinReserveOffering suffered ~$2.7M from a double-minting logic flaw, and Venus Protocol incurred ~$2.15M following a donation attack combined with market manipulation.

Go Deeper with MetaSleuth Investigation

Extend your crypto compliance capabilities with Blocksec's MetaSleuth Investigation, the first platform for tracing funds, mapping transaction networks and revealing hidden on-chain relationships.

Move from detection to resolution faster with clear visual insights and evidence-ready workflows across the digital assets ecosystem.

MetaSleuth Investigation