Polymarket's $7M Prize Pool Misallocated Due to "Attack," Correct Bettors Face Loss
原文标题:《Polymarket 遭遇预言机操控攻击,大户竟可利用票权「颠倒黑白」?》
原文作者:Azuma, Odaily 星球日报
昨日晚间,曾在美国大选期间爆火的预测市场 Polymarket 遭遇了项目创立以来最严重的一次预言机操控攻击,导致一个押注规模超 700 万美元的预测池给出了错误的结果判定,最终押注了正确结果的用户们损失惨重,反而是押注了错误结果的用户们拿走了奖池内的所有资金。
涉事预测池为「乌克兰是否会在四月之前与特朗普达成稀土交易协议」,在现实世界中,美乌双方尚未就该交易达成协定,所以该预测池的判定结果理应为「否」。然而如下图所示,该预测池的判定结果在结算之前意外地转向了「是」,最终造成了这一是非颠倒的局面。

为什么会出现这种情况呢?答案在于 Polymarket 的判定机制上。Polymarket 依赖于预言机 UMA 来进行事件的结果判定,其判定流程如下:
· 结果报告:事件发生后,任何人都可以向 UMA 报告结果。
· 争议窗口:报告提交后会有一个争议期,任何人若认为报告有误均可提出争议。若无人争议,报告结果将被接受;若有争议,UMA 的争议解决机制会决定最终结果。
· 争议解决:UMA 代币持有者需投票决定正确结果,UMA 会对诚实行为进行激励,并对作恶行为进行惩罚。
根据 Polymarket 方面的流程记录,该预测池最终走到了第三步流程,这意味着有人对原始报告的结果提出了争议,所以需要通过 UMA 投票来决定最终结果。

而根据 UMA 方面的最终投票结果,54.6% 的选票无视事实地选择了「是」,强行推动该预测池将最终结果判定为「是」。

而根据 Reddit 用户 @iamtheone 的记录,UMA 投票初期另一个选项「现在下结论还太早」一度占优,但最终阶段有神秘力量向「是」的选项投入了数百万枚 UMA,强行改变了投票结果。
与此同时,UMA 的价格也曾在 3 月 22 日无故暴涨 24% ,随后逐渐回落,或意味着该神秘力量早在数日前便已筹备好了计划。

该 Reddit 用户补充表示,这并不是 Polymarket 之上的首例预言机操控事件,该平台此前已发生多起小额市场操纵(比如将委内瑞拉总统判定为 Edmundo González,声称特朗普对诺克斯堡进行了审计),但本次涉案金额最大,涉事预测池的押注总金额超 700 万美元。
而造成该事件的关键原因在于,Polymarket 赖以做出最终决策的 UMA 投票机制仅对错误投票设置了 0.05% 的惩罚,这使得作恶成本极低,在扭转事实的巨额潜在利润面前,诈骗者有充足的动机去实施预言机操控。
更令人震惊的是,Polymarket 官方人员今晨在 Discord 内发布公告表示,已获悉该意外情况,但无法对用户进行退款。
我们已获悉乌克兰稀土协定预测市场的异常情况。该市场的结算结果与用户预期及我方此前的澄清相悖。由于此次事件不构成系统故障,我们无法进行退款操作。当前情况实属前所未有。我们已与 UMA 团队展开全天候紧急会议,确保此类事件不再发生。这绝非我们想要构建的未来——我们将建立更完善的系统监控机制,制定更明确的规则框架,并优化时效性更强的澄清流程。具体措施将在全面评估后陆续公布。
不难想象,Polymarket 的这一回应很快便遭到了社区的口诛笔伐,原始预测池的下方评论区现已累积了 5554 条评论,大量用户都在抨击 Polymarket 的机制与回应。
作为去年整个加密货币市场最惊艳的项目之一,Polymarket 显然并不缺钱去足额赔付,如此回应势必会损害其市场信誉及社区情感。考虑到当前沸沸扬扬的社区情绪,后续事态能否有转圜余地,Odaily 星球日报将继续实时跟进。
You may also like

Consumer-grade Crypto Global Survey: Users, Revenue, and Track Distribution

Prediction Markets Under Bias

Stolen: $290 million, Three Parties Refusing to Acknowledge, Who Should Foot the Bill for the KelpDAO Incident Resolution?

ASTEROID Pumped 10,000x in Three Days, Is Meme Season Back on Ethereum?

ChainCatcher Hong Kong Themed Forum Highlights: Decoding the Growth Engine Under the Integration of Crypto Assets and Smart Economy

Why can this institution still grow by 150% when the scale of leading crypto VCs has shrunk significantly?

Anthropic's $1 trillion, compared to DeepSeek's $100 billion

Geopolitical Risk Persists, Is Bitcoin Becoming a Key Barometer?

Annualized 11.5%, Wall Street Buzzing: Is MicroStrategy's STRC Bitcoin's Savior or Destroyer?

An Obscure Open Source AI Tool Alerted on Kelp DAO's $292 million Bug 12 Days Ago

Mixin has launched USTD-margined perpetual contracts, bringing derivative trading into the chat scene.
The privacy-focused crypto wallet Mixin announced today the launch of its U-based perpetual contract (a derivative priced in USDT). Unlike traditional exchanges, Mixin has taken a new approach by "liberating" derivative trading from isolated matching engines and embedding it into the instant messaging environment.
Users can directly open positions within the app with leverage of up to 200x, while sharing positions, discussing strategies, and copy trading within private communities. Trading, social interaction, and asset management are integrated into the same interface.
Based on its non-custodial architecture, Mixin has eliminated friction from the traditional onboarding process, allowing users to participate in perpetual contract trading without identity verification.
The trading process has been streamlined into five steps:
· Choose the trading asset
· Select long or short
· Input position size and leverage
· Confirm order details
· Confirm and open the position
The interface provides real-time visualization of price, position, and profit and loss (PnL), allowing users to complete trades without switching between multiple modules.
Mixin has directly integrated social features into the derivative trading environment. Users can create private trading communities and interact around real-time positions:
· End-to-end encrypted private groups supporting up to 1024 members
· End-to-end encrypted voice communication
· One-click position sharing
· One-click trade copying
On the execution side, Mixin aggregates liquidity from multiple sources and accesses decentralized protocol and external market liquidity through a unified trading interface.
By combining social interaction with trade execution, Mixin enables users to collaborate, share, and execute trading strategies instantly within the same environment.
Mixin has also introduced a referral incentive system based on trading behavior:
· Users can join with an invite code
· Up to 60% of trading fees as referral rewards
· Incentive mechanism designed for long-term, sustainable earnings
This model aims to drive user-driven network expansion and organic growth.
Mixin's derivative transactions are built on top of its existing self-custody wallet infrastructure, with core features including:
· Separation of transaction account and asset storage
· User full control over assets
· Platform does not custody user funds
· Built-in privacy mechanisms to reduce data exposure
The system aims to strike a balance between transaction efficiency, asset security, and privacy protection.
Against the background of perpetual contracts becoming a mainstream trading tool, Mixin is exploring a different development direction by lowering barriers, enhancing social and privacy attributes.
The platform does not only view transactions as execution actions but positions them as a networked activity: transactions have social attributes, strategies can be shared, and relationships between individuals also become part of the financial system.
Mixin's design is based on a user-initiated, user-controlled model. The platform neither custodies assets nor executes transactions on behalf of users.
This model aligns with a statement issued by the U.S. Securities and Exchange Commission (SEC) on April 13, 2026, titled "Staff Statement on Whether Partial User Interface Used in Preparing Cryptocurrency Securities Transactions May Require Broker-Dealer Registration."
The statement indicates that, under the premise where transactions are entirely initiated and controlled by users, non-custodial service providers that offer neutral interfaces may not need to register as broker-dealers or exchanges.
Mixin is a decentralized, self-custodial privacy wallet designed to provide secure and efficient digital asset management services.
Its core capabilities include:
· Aggregation: integrating multi-chain assets and routing between different transaction paths to simplify user operations
· High liquidity access: connecting to various liquidity sources, including decentralized protocols and external markets
· Decentralization: achieving full user control over assets without relying on custodial intermediaries
· Privacy protection: safeguarding assets and data through MPC, CryptoNote, and end-to-end encrypted communication
Mixin has been in operation for over 8 years, supporting over 40 blockchains and more than 10,000 assets, with a global user base exceeding 10 million and an on-chain self-custodied asset scale of over $1 billion.

$600 million stolen in 20 days, ushering in the era of AI hackers in the crypto world

Vitalik's 2026 Hong Kong Web3 Summit Speech: Ethereum's Ultimate Vision as the "World Computer" and Future Roadmap

On the same day Aave introduced rsETH, why did Spark decide to exit?

Full Post-Mortem of the KelpDAO Incident: Why Did Aave, Which Was Not Compromised, End Up in Crisis Situation?

After a $290 million DeFi liquidation, is the security promise still there?

ZachXBT's post ignites RAVE nearing zero, what is the truth behind the insider control?


