Security & risk advisory for centralized exchanges and Web3 infrastructure Focused on pre-listening readiness, operational controls, and trust-critical systems.

Joined November 2023
21 Photos and videos
Pinned Tweet
16 Jun 2025
Most Web3 Projects get serious about security after hack ⚠️ We flip that, Your AI powered defence is here πŸ§΅πŸ‘‡πŸ» (1/3)
6
7
17
6,589
Asked for security. They asked for Claude Max. Sent them to "@Decrypt0com's AGNI" instead πŸ’€
hired a dev instead of buying Claude subscription, now he wants Claude Max subscription
1
2
2
121
Hot take: Most crypto "audits" are expensive rubber stamps, not real security reviews. A real audit tells you what would happen if the best attacker in the world spent 2 weeks on your code. A rubber stamp tells you what the checklist says. Know the difference before you pay for one.
1
2
2
91
In 2025, $2.3B was lost to crypto exploits. I broke down every major incident. Here's what they had in common that no one is saying 🧡
1
2
2
84
What a real pre-launch security process looks like: Audit that includes integrations Critical findings fixed before deployment On-chain monitoring live on day 1 Incident response plan tested Bug bounty live before mainnet This is the bar.
1
1
1
68
I publish breakdowns like this every week. If you run a protocol or CEX and want to talk about your security posture β€” DMs are open. Follow for daily Web3 security intelligence πŸ”
1
1
51
Decrypt0 retweeted
Security isn't optional. It's infrastructure. πŸ—οΈπŸ” New partnership unlocked. πŸ” XPHERE has signed an MOU with @decrypt0com β€” a leading Web3 security firm dedicated to protecting the decentralized ecosystem. Together, we're building a more secure foundation for Web3. πŸ›‘οΈ #XPHERE #Decrypt0 #Web3Security #Web3
470
108
282
55,291
Honoured to join the @SimplicityWeb3 Accelerator with Decrypt0. We started Decrypt0 with a simple mission: help crypto exchanges and Web3 platforms identify security risks before attackers do. Over the past few months, we’ve been working on: β€’ Operational security audits for CeX infrastructure β€’ Proof-of-Reserves readiness and verification β€’ Red-team and penetration testing for financial platforms Now we’re building "AGNI", an AI-powered cybersecurity agent designed to help security teams detect vulnerabilities faster across Web3 systems. Grateful to the Simplicity team and excited to collaborate with builders in the cohort. If you're building an exchange, DeFi protocol, or Web3 infrastructure, let's make sure security scales with you. #Web3Security #CryptoSecurity #BlockchainSecurity #CyberSecurity #ProofOfReserves #Web3 #StartupAcceleratorN
Please welcome @decrypt0com to the cohort! Decrypt0 provides operational security audits, Proof-of-Reserves readiness, and risk monitoring for centralised crypto exchanges and web3 platforms. $100K in contracted security engagements, a red-team for a regulated bank, and recognition from Apple, Google, Meta, and GitHub. Active PoR discussions with centralised exchanges and a 65K audience via HackWithPratik, the technical depth and distribution are already there.
1
3
7
128
The 6-layer CEX security model most exchanges are missing. If you're reviewing the security of a centralized exchange, these are the layers you should check first. Save this thread: your security review starts here. 🧡
1
2
4
69
Layer 6: Bug Bounty Program Security researchers should be incentivized to report vulnerabilities. A well-structured bug bounty program strengthens the platform before attackers find weaknesses.
1
1
60
Security check: Which layer does your exchange need to strengthen? Reply with a number (1–6). We'll share resources for the most common answer.
1
36
We've reviewed 60 smart contract audits and 20 CEX security assessments. Here's the single most common vulnerability that almost no one is talking about β€” a thread 🧡
2
2
6
114
Price oracle manipulation has caused hundreds of millions in DeFi losses. The pattern is usually the same: β†’ Single-source oracle β†’ No TWAP (time-weighted average price) β†’ No circuit breaker for price deviations An attacker only needs one block and a flash loan.
1
2
61
If you're launching a protocol or running a CEX, reply with your oracle setup β€” I'll give you a quick public sanity check. Follow for daily Web3 security insights this month πŸ”
1
48