Threat Hunting and Investigation Ai Agent, Scan Links, Codebase, Files and DApps for threats before interacting with them, Builder @Zets__u

Joined July 2025
55 Photos and videos
Most attacks don’t start with malware. They start with trust. Sentrii started as a transaction-level threat detection tool, catching risky instructions and malicious wallet drainer programs. A strong last line of defence. But the deeper we went into the security landscape,
13
5
23
394
Sentrii | Live on Solana retweeted
Replying to @Zets__u
@Zets__u, building a security tool feels unreal. We tried it out and I must say, it’s impressive. Worth checking out @Sentrii_io
1
2
3
96
Sentrii | Live on Solana retweeted
Did you know malicious PDFs capable of stealing passwords, seed phrases, and other sensitive data circulated the internet undetected for 4 months before Adobe patched them? It’s been classified as CVE-2026-34621 in the National Vulnerability and was patched on April 11, 2026
2
6
11
288
Thank you very much for the spotlight sailor We highly appreciate it and are dedicated to keeping solana users safe from social engineering attacks, phishing and wallet drainers
Next Frontier categories I looked at: Payments/Fintech Security/Privacy 👇 Smaller than the previous macro areas, but closely connected → moving money better, protecting users and making privacy usable Payments/Fintech seems to be forming around: • Simple private payments Example: @looftapay, payments by username, email or X handle • Internet-native merchant payments Example: @paymento_io, a non-custodial x402 gateway for real commerce • Machine and agentic settlement Example: @ryvonetwork, a clearing layer for machine payments on Solana Security/Privacy seems to be forming around: • Private transfers Example: @darkdrop_sol, unlinkable private transfers on Solana • Continuous security checks Example: @JelleoLabs, continuous Solana program audits • Inheritance and recovery paths Example: @Heresprotocol, an autonomous death insurance protocol on Solana • Reputation and trust layers Example: @KRED_info, a reputation layer for crypto KOLs • Threat detection before users interact Example: @Sentrii_io, security analysis for links, repos and wallet interactions As more value moves onchain, payments, privacy and security stop being optional. What interesting projects did you find in these categories?
4
6
559
Sentrii | Live on Solana retweeted
Next Frontier categories I looked at: Payments/Fintech Security/Privacy 👇 Smaller than the previous macro areas, but closely connected → moving money better, protecting users and making privacy usable Payments/Fintech seems to be forming around: • Simple private payments Example: @looftapay, payments by username, email or X handle • Internet-native merchant payments Example: @paymento_io, a non-custodial x402 gateway for real commerce • Machine and agentic settlement Example: @ryvonetwork, a clearing layer for machine payments on Solana Security/Privacy seems to be forming around: • Private transfers Example: @darkdrop_sol, unlinkable private transfers on Solana • Continuous security checks Example: @JelleoLabs, continuous Solana program audits • Inheritance and recovery paths Example: @Heresprotocol, an autonomous death insurance protocol on Solana • Reputation and trust layers Example: @KRED_info, a reputation layer for crypto KOLs • Threat detection before users interact Example: @Sentrii_io, security analysis for links, repos and wallet interactions As more value moves onchain, payments, privacy and security stop being optional. What interesting projects did you find in these categories?
Next Frontier category I looked at: Infra 👇 279 projects entered this macro area across Developer Infrastructure, DePIN, Interoperability & Bridges, Validator/Staking Infra and ZK/Crypto Research After scrolling through the projects, this side of Frontier seems to be forming around a few clear infrastructure layers: • Prediction markets need deeper infrastructure Example: @predikt_gg, building infrastructure for prediction market data, liquidity and execution • Builders need Solana-native workbenches Example: @DaemonTerminal, an AI-native terminal and operator console for Solana • DePIN needs real-world data networks Example: @captur_go, a people-powered network for geospatial and location intelligence • Privacy needs encrypted execution Example: @encrypt_xyz, privacy infrastructure for Solana apps • DePIN needs more ways to connect real-world assets to onchain ownership Example: @hivebits_io, turning real bee farms into co-owned digital assets • Agent apps need payment and execution infrastructure Example: @agenttech, infrastructure for agent payments and execution • Onchain apps need notifications that do not leak user identity Example: @useheraldmail, privacy-preserving alerts for Solana apps Infra is usually less visible than apps, but a lot is clearly moving underneath And sooner or later, every great app needs strong infrastructure What Frontier infra project are you watching most closely?
35
22
110
15,109
Sentrii | Live on Solana retweeted
Awesome to see Don’t to checkout @Sentrii_io We’ve seen how much damage social engineering attacks and wallet drainers can do to the ecosystem Sentrii as an Ai Threat Hunting and Investigation agent is being poised to help protect people from this Verify before you trust
1
1
186
Sentrii | Live on Solana retweeted
Your wallet showed you one thing. The blockchain executed something else. And by the time you realize it, your assets are already gone. This is called transaction simulation spoofing and it's one of the more dangerous phishing techniques targeting crypto users today. 🧵
11
3
11
872
Your wallet showed you one thing. The blockchain executed something else. And by the time you realize it, your assets are already gone. This is called transaction simulation spoofing and it's one of the more dangerous phishing techniques targeting crypto users today. 🧵
11
3
11
872
Investigate first. Trust later. sentrii.io
2
4
150
or other attack vectors. Sentrii investigates the dApp and interaction flow in isolation before you touch it, helping you understand what it's actually doing behind the interface. The biggest mistake people make is assuming that if a website looks professional, it must be safe
1
34
Attackers know this. That's why modern phishing campaigns invest heavily in branding, design, credibility, and trust.
19
3/ The consequences can be devastating. → SOL drained → Tokens transferred All within seconds. And because you signed the transaction yourself, there is usually no recovery.
1
1
40
But attackers can still set delegates, approvals, or permissions and lie in wait for activity to build over time. And sometimes the real danger isn't the transaction at all. The website itself may be trying to compromise you through malicious scripts, phishing flows, redirects,
1
29
2. Treat every "free claim", airdrop, reward, or surprise opportunity as guilty until proven innocent. These are some of the most common lures attackers use. 3. Use @Sentrii_io before connecting to unfamiliar dApps. A burner wallet helps limit damage.
1
26
4/ How to mitigate the risk. 1. Use a burner wallet for every new dApp interaction. @solflare makes this easy. You can spin up a burner wallet in seconds and fund it with only what you need for that interaction. If something goes wrong, your primary wallet stays isolated.
1
1
26
2/ The problem is that a simulation is only a prediction. It shows what your wallet expects will happen based on the information available at that moment. In some attacks, what ultimately executes may not match what the user believed they were approving.
1
29
1/ You land on what looks like a legitimate website. The branding looks right. The UI looks right. You connect your wallet. A transaction prompt appears. The simulation looks clean. Small fee. Expected outcome. Nothing suspicious. So you approve it.
1
29
Today let's talk about the risks, consequences and ripple effects of getting hit by a social engineering attack as a founder or builder. Because the damage doesn't just stop with you personally.
6
3
10
108
Modern attackers don’t always need to break your code. Sometimes they just need you to trust them once. Investigate first. Trust later, use sentrii sentrii.io
3
4
88
Legal: Users lose funds. Liability and investigations follow. Psychological: Self-blame, stress, and loss of confidence in your own judgment. Long-term → Trust takes months or years to rebuild.
1
24
The @DriftProtocol attack showed just how far this can go. The loss wasn't caused by a traditional code exploit. It was the result of months of manufactured trust, and social engineering. The drain was the final step. The attack started long before anyone clicked anything.
37