Back to Blog

导语:Solana 简化

July 1, 2024

Solana 以其高速度、低成本、高交易吞吐量和低延迟而闻名。这些特性使其成为用户和开发人员日益青睐的平台,适用于各种去中心化应用程序。

为了帮助读者和开发人员更好地了解这个强大的生态系统,BlockSec 特别策划了“Solana 简化”系列。本系列涵盖了 Solana 的基本概念、分析 Solana 交易的实用指南以及编写 Solana 智能合约的综合教程。让我们开始吧。🙌

深入解析:全面概述

在本系列的第一部分,让我们深入了解 Solana 网络的核心概念,包括其运行机制、账户模型和交易。这将为在 Solana 上编写正确且高效的智能合约奠定基础。

在本文中,我们将指导您编写一个用于发布和显示文章的 Solana 程序(即 Solana 智能合约)。我们将涵盖从环境设置、合约逻辑到程序测试的所有内容。

在最后一篇中,我们将介绍 Solana 的特殊代币机制,并教用户如何使用 Phalcon Explorer 分析简单的 Solana 交易。


关于 BlockSec

BlockSec 是一家全栈 Web3 安全服务提供商。公司致力于提升新兴 Web3 世界的安全性和可用性,以促进其大规模采用。为此,BlockSec 提供智能合约和 EVM 链安全审计服务、用于安全开发和主动威胁拦截的 Phalcon 平台、用于资金追踪和调查的 MetaSleuth 平台,以及供 Web3 构建者在加密世界高效冲浪的 MetaSuites 扩展。

迄今为止,公司已服务超过 300 家客户,包括 Uniswap Foundation、Compound、Forta 和 PancakeSwap,并在两轮融资中从 Matrix Partners、Vitalbridge Capital 和 Fenbushi Capital 等知名投资者处获得了数千万美元的投资。

网站:https://blocksec.com/

邮箱:[email protected]

Twitter:https://twitter.com/BlockSecTeam

MetaSleuth:https://metasleuth.io/

MetaSuites:https://blocksec.com/metasuites

Sign up for the latest updates
Drift Protocol Incident: Multisig Governance Compromise via Durable Nonce Exploitation
Security Insights

Drift Protocol Incident: Multisig Governance Compromise via Durable Nonce Exploitation

On April 1, 2026 (UTC), Drift Protocol on Solana suffered a $285.3M loss after an attacker exploited Solana's durable nonce mechanism to delay the execution of phished multisig approvals, ultimately transferring administrative control of the protocol's 2-of-5 Squads governance with zero timelock. With full admin privileges, the attacker created a malicious collateral market (CVT), inflated its oracle price, relaxed withdrawal protections, and drained USDC, JLP, SOL, cbBTC, and other assets through 31 rapid withdrawals in approximately 12 minutes. This incident highlights how durable nonce-based delayed execution can decouple signer intent from on-chain execution, bypassing the temporal assumptions that multisig security implicitly relies on.

Weekly Web3 Security Incident Roundup | Mar 23 – Mar 29, 2026
Security Insights

Weekly Web3 Security Incident Roundup | Mar 23 – Mar 29, 2026

This BlockSec weekly security report covers eight DeFi attack incidents detected between March 23 and March 29, 2026, across Ethereum and BNB Chain, with total estimated losses of approximately $1.53M. Incidents include a $679K flawed burn mechanism exploit on the BCE token, a $512K spot-price manipulation attack on Cyrus Finance's PancakeSwap V3 liquidity withdrawal, a $133.5K flash-loan-driven referral reward manipulation on a TUR staking contract, and multiple integer overflow, reentrancy, and accounting error vulnerabilities in DeFi protocols. The report provides detailed vulnerability analysis and attack transaction breakdowns for each incident.

Newsletter -  March 2026
Security Insights

Newsletter - March 2026

In March 2026, the DeFi ecosystem experienced three major security incidents. Resolv Protocol lost ~$80M due to compromised privileged infrastructure keys, BitcoinReserveOffering suffered ~$2.7M from a double-minting logic flaw, and Venus Protocol incurred ~$2.15M following a donation attack combined with market manipulation.