风险雷达

/ high

SecondFi NIGHT Claim Risk:永久 Compromised Wallet 无法 Redirect 到安全地址

SecondFi 提醒 6 月 security incident affected users 不要使用 compromised wallet claim NIGHT。Midnight 当前只允许 original wallet redemption,无法提前 redirect 到 safe address。6 月事件影响 374 wallets,约 16.1M ADA 被盗。

2026年9月22日最后更新 10:30 UTC约 2 分钟

SecondFi 今天给 affected users 的建议很反常,但从 security 角度是正确的:

不要用受影响钱包领取 NIGHT。

部分用户在 9 月 22 日进入 Midnight Glacier Drop 的 NIGHT claim window。

问题是 NIGHT allocation 被绑定到 original eligible wallet,而这些 wallet 的 private-key security 在 6 月 incident 中已经永久失效。

6 月 SecondFi Incident

SecondFi 在 6 月 21–23 日发生 security incident。

公司后续披露:

  • 16.1M ADA 被盗
  • 374 wallets affected

Independent forensic investigation 将问题指向 transaction-signing cryptography flaw。

~129M ADA 是什么?

SecondFi 同时表示 emergency response 中约 129M ADA 被及时 secured,并转入 independent third-party custodian。

正确 accounting 是:

  • 16.1M ADA:reported stolen;
  • ~129M ADA:emergency action rescued/secured。

NIGHT 为什么让旧问题重新爆发?

NIGHT 是 Midnight token。

Glacier Drop allocation 与 eligible address 绑定。

SecondFi 和 Midnight Foundation 沟通后的 current result 是:

  • NIGHT 只能从 original wallet claim;
  • 不能提前 change destination;
  • 不能 redirect 到 clean wallet。

正常 wallet 这是 anti-abuse design,但 compromised address 会因此陷入安全冲突。

为什么 Claim 本身有风险?

如果 attacker 已能 reconstruct / control private key,old wallet 未来收到任何 asset,attacker 都有同样 spending capability。

所以:

Claim NIGHT ≠ Repair Wallet

反而可能把新 token 主动放回 attacker 能控制的 address。

SecondFi 为什么不能自己换 Claim Address?

因为 NIGHT redemption rules 不由 SecondFi 管理。

SecondFi 表示:

  • Midnight Foundation 管理 claim mechanism;
  • SecondFi wallet migration tool 无法改;
  • SecondFi asset recovery tool 也无法覆盖 NIGHT claim。

Recovery Portal 仍没有完全完成

6 月 incident 后,SecondFi 曾预期较快启动 asset return。

但当前 reporting 仍显示 recovery portal / process 未完全结束。

用户因此必须同时做到:

  • 保留 recovery 所需 evidence;
  • 不把 old wallet 当作安全 wallet 继续收新资产。

最大 Secondary Risk:Phishing

任何主动 DM 声称能:

  • “迁移 NIGHT allocation”;
  • “修复 seed”;
  • “恢复 wallet”;

但要求 seed phrase / private key / unknown signature,都只能标:

Community / Unverified / High Risk

Entity Boundary

原 6 月 flaw 属于 SecondFi wallet/signing。

今天 claim limitation 属于 Midnight address-bound distribution design。

这并不代表 Cardano network、NIGHT token 或 Midnight blockchain 被 hack。

Evidence Status

Project-Reported / Current Warning

Sep. 22 claim、original-wallet only、no redirect、permanently compromised wallets、do-not-claim warning、SecondFi tools cannot override NIGHT。

Established June Facts

Jun. 21–23、16.1M ADA stolen、374 wallets、~129M ADA emergency secured。

Developing

Alternative NIGHT route、Midnight response、SecondFi recovery portal、final restitution、already-lost NIGHT。

Risk Assessment

High wallet / recovery-process risk。

新风险不是又偷了 16M ADA,而是 compromised address 可能继续吃掉任何新进入的 asset。

What to Watch Next

Midnight claim changes、alternative address support、SecondFi recovery portal、129M ADA custody accounting、additional NIGHT loss、phishing。

FAQ

Affected user 今天应该 claim NIGHT 吗?

SecondFi 当前建议不要通过 compromised wallet claim。

为什么不能直接换新地址?

Midnight current system 只支持 original eligible wallet。

6 月被盗多少 ADA?

约 16.1M ADA,374 wallets。

129M ADA 又是什么?

Emergency response secured funds,不是额外 loss。

NIGHT 本身被 Hack 了吗?

没有证据支持。

Compromised Seed 会自己变安全吗?

不会。