Joined July 2023
Photos and videos
Whitehat retweeted
Replying to @PrismaFi
@PrismaFi faced an $11.6M exploit, but white hat hackers returned the funds after negotiating a bounty through a rescue operation. Understanding the hack's root causes is crucial to prevent future incidents. Read more about the $11M hack breakdown techfund.jp/media/Prisma-Fin…
1
4
22
3,609
3 Apr 2024
Really learn alot from this breakdown
Replying to @PrismaFi
@PrismaFi faced an $11.6M exploit, but white hat hackers returned the funds after negotiating a bounty through a rescue operation. Understanding the hack's root causes is crucial to prevent future incidents. Read more about the $11M hack breakdown techfund.jp/media/Prisma-Fin…
193
Whitehat retweeted
Startup idea: Establish a CISO-as-a-Service company. With companies increasingly seeking to hire full-time security specialists, offering expert CISOs to their teams would definitely make this idea successful.
1
5
436
#Security Alert: Understanding the $8.5 Million WOOFi Exploit On Mar 5th, WOOFi encountered a devastating flash loan attack on the Arbitrum network, resulting in loss of $8.5 million. Here's a breakdown of what happened & how you can prevent it : techfund.jp/media/WOOFi-Hack…
3
5
2,216
Whitehat retweeted
Here is a brief explanation of the recent $8.5 million #Woofi hack. Learn from it and avoid making the same mistake in your contracts
#Security Alert: Understanding the $8.5 Million WOOFi Exploit On Mar 5th, WOOFi encountered a devastating flash loan attack on the Arbitrum network, resulting in loss of $8.5 million. Here's a breakdown of what happened & how you can prevent it : techfund.jp/media/WOOFi-Hack…
1
5
1,369
15 Feb 2024
🫡
A few hours ago, a @minerercx exploited a vulnerability resulting in a loss of $456k. The vulnerability lies in the `_update` function. If a user transfers tokens to themselves within the same transaction, there is indeed a potential for their balance to double. This scenario arises because the `_update` function utilizes cached balance values for the sender (`from`) and recipient (`to`). When a user transfers tokens to themselves, the balance update process might not accurately reflect the change. Here's how this scenario unfolds: 1. The `_update` function is called with `from` and `to` being the same address. 2. It retrieves the cached balance for that address before the transfer. 3. It subtracts the `value` from the cached balance for the sender (`from`) and adds the `value` to the cached balance for the recipient (`to`), which is the same address. 4. The balances are updated using the cached values, potentially resulting in a doubled balance for that address. The total fund loss for the miner is almost $456k. etherscan.io/tx/0x5cc93e9d5a… is the breakdown of the transaction.
185
13 Feb 2024
wohhh🎉
🌟 Exciting Announcement from PrismBlocks Community! 🌟 We're thrilled to share that we participated in the Future Crime Summit 2024 held in Delhi, India! ✨ It was an incredible opportunity to connect with the brightest minds from the Indian government, authorities, and leading blockchain companies. At PrismBlocks, we're dedicated to shaping a secure blockchain future. Our next-gen fraud detection engine is set to redefine blockchain security. The response we received was beyond amazing! Stay tuned with us as we embark on a journey to revolutionize blockchain security worldwide. Together, we're paving the way for a safer digital landscape. 💡 #PrismBlocks #BlockchainSecurity #FutureOfTech 🚀
57
Whitehat retweeted
In the recent Future Crime Summit 2024, I had the opportunity to meet some of the biggest minds of the Indian government, which was really insightful for me. I learned a lot from them. However, I noticed that many professors from institutes were also attending to explore new ideas to teach their students. I had great conversations with them, and they expressed interest in collaborating on blockchain initiatives wth us . The point is, we need these professors in all Indian institutes who are making efforts to guide their students about trending and future technologies #futurecrime2024
1
6
603
3 Feb 2024
#Caution: Recently, many malicious links have been circulating, claiming to be associated with @alt_layer token distribution. These links are fully malicious; never click on them. The sender's email address is hijabi.pk1@gmail.com.
102
2 Feb 2024
indeed
Audit firms frequently impose high charges, encompassing branding expenses. If your budget is limited, solo auditors offer a cost-effective solution, charging solely for the audit without additional branding costs. Nowadays, solo auditors often provide impressive audit quality.
163
Whitehat retweeted
Cloud security is as crucial as the security of your smart contracts. Always prioritize securing both Web 2 and Web 3 components. Recently, Ukrainian hackers executed 1500 different brute force attacks to compromise a cloud server, resulting in the theft of millions in crypto
1
3
288
29 Jan 2024
fact🎉
In a single round, you can't cover all potential vulnerabilities. Single-round audits are only 30% as secure as multi-round audits. It's crucial to perform 2-3 rounds to mitigate risks effectively
156
28 Jan 2024
solid thread🫡
Key Points and Updates in Solidity 0.8.24 Version: 1/8 ⚙️ Prepared for the "Cancun" network upgrade, Solidity 0.8.24 anticipates Ethereum's scalability enhancements, supporting new opcodes and transaction types. #Ethereum #Solidity
34
26 Jan 2024
intersting
🚀 Solidity 0.8.24 Release Announcement 🚀 🎉 Solidity v0.8.24 is out and it comes with some interesting features 👀 1. Prepared for the "Cancun" network upgrade 2. Support for transient storage (EIP-1153) 3. Introduction of shard blob transactions (EIP-4844) 4. Integration of BLOBBASEFEE opcode (EIP-7516) 5. Introduction of MCOPY - Memory copying instruction (EIP-5656) 6. Revised SELFDESTRUCT behavior (EIP-6780) 7. Compatibility with Apple silicon chips 8. Various bug fixes and enhancements Upgrade now to leverage these advancements in your Solidity development journey! #Solidity #Blockchain #Ethereum #blockchainsecurity #hack #Crypto 🛠️💻 soliditylang.org/blog/2024/0…
140
Whitehat retweeted
🚨 Security Breach Update 🚨: Concentric.fi on Arbitrum recently suffered a $1.7M hit in a cunning social engineering attack. Here's a breakdown: The attacker slyly altered the CONE-1 proxy contract, swapping it from ConeCamelotVault to their controlled contract. AdminMint() privileges were manipulated, putting 0x105f52fcC329cEF4CBe25BC946f8a3738414E4A1 in control. Result? A substantial minting of LP tokens. 🕵️‍♂️ Stay informed, fellow #DeFi enthusiasts! #ConcentricSecurity #ArbitrumIncident #CryptoAlert 🛑🔒#prismblocks #blockchainsecurity #Web3
2
3
5
145
24 Jan 2024
it is a biggest hack of 2024 ??
🚨 Security Alert 🚨 @GAMEEToken has experienced a security breach! Unauthorized deployer key access led to an attack using the recoverERC721s() function, bypassing $GMEE recovery protection. Approximately 600m $GMEE has been drained from the contract. 🔗 Attack transactions: 1️⃣ polygonscan.com/tx/0x70f7e03… 2️⃣ polygonscan.com/tx/0x2340cfd… ⚠️ Important: The $GMEE's _transferFrom() implementation skips the allowance check, allowing the attacker to use transferFrom() without pre-approval. Exercise caution with OpenZeppelin's ERC20.transferFrom() function. Stay vigilant and follow @GAMEEToken and @prism_blocks for updates on the ongoing investigation and steps being taken to secure the platform. join our telegram community -t.me/ kyzfNY_dRN9hNGI8 #SecurityAlert #CryptoNews #GAMEEToken #BlockchainSecurity #prism_blocks
20
20 Jan 2024
👀
🚨 Ethereum Rug Pulls Research🚨 Over 1,300 rug pulls on the Ethereum Mainnet share a common pattern! 💸 $32M stolen (14,000 ETH) 🤯 42,000 victims 🕵️‍♂️ Scammers utilize sophisticated tactics, making tracking challenging. 📝 In-depth Analysis 📝 Revealing how scammers execute rug pulls with deceptive techniques. Notably, funds flowed into Binance Exchange hot wallets. 🔍 TL;DR 🔍 Scammers exploit FOMO by mimicking upcoming crypto projects. Token names like Wisealth, RabbitRun, DreamFi, and... Blockfence! They ride the memecoin trend with tokens such as AIPEPE, Purple Pepe, Pepe Chain, Pepe Race, and Baby Pepe. 👀 Scam Overview 👀 Thousands of tokens created with red flags: - Fake max supply - Token owner can burn holders' tokens - Infinite minting for admins - LP tokens lock - "Verified" contracts - Hidden contracts - Renouncing ownership - Automatic creation of tokens with trending memecoin names 🕵️‍♂️ Example 🕵️‍♂️ Unpacking the scam: The scammers used a prominent brand name as a trigger, illustrating their extensive operation plan. This is just one of many fraudulent tokens. 🚫 Protect Yourself 🚫 Stay vigilant! Verify project authenticity and report suspicious activity. We're actively working to combat these scams. #CryptoSecurity #RugPulls #ScamAlert #BlockchainSecurity #StaySafeCryptoFam
1
42
Whitehat retweeted
🚨 SECURITY ALERT 🚨 @samudaixyz has fallen victim to a significant security breach, resulting in the loss of $1.2M worth of ETH from both the founder's and multisig wallets. 🔍 Investigation is underway, and the community is urged to report any suspicious activity related to this incident. 💰 A 10% bounty has been announced for the safe return of the stolen funds. Your cooperation is vital in bringing justice to the affected party. 🔒 Stay vigilant and consider adopting prismblocks, the ultimate solution to eliminate the risk of crypto theft from enterprise wallets. #blockchainsecurity #CryptoSecurity #ETH #FailSafe #StaySafeCryptoCommunity #hack #exploit #prismblocks
1
3
5
144
19 Jan 2024
huge security breach
🚨 SECURITY ALERT 🚨 @samudaixyz has fallen victim to a significant security breach, resulting in the loss of $1.2M worth of ETH from both the founder's and multisig wallets. 🔍 Investigation is underway, and the community is urged to report any suspicious activity related to this incident. 💰 A 10% bounty has been announced for the safe return of the stolen funds. Your cooperation is vital in bringing justice to the affected party. 🔒 Stay vigilant and consider adopting FailSafe, the ultimate solution to eliminate the risk of crypto theft from enterprise wallets. #blockchainsecurity #CryptoSecurity #ETH #FailSafe #StaySafeCryptoCommunity #hack #exploit #prismblocks
15
Whitehat retweeted
🚨 #SocketProtocol Update 🚨 @SocketDotTech fell prey to a call injection attack, resulting in a staggering loss of $3.3M. The breach's epicenter lies in an insecure call within the performAction function. Overlooking scenarios with 0 WETH transfers allowed the attacker to specify alternative functions, bypassing the balance check. 🕵️‍♂️ The attacker's meticulous calldata manipulation executed transferfrom() on arbitrary tokens, transferring funds approved by other users to their address. 📉 Misappropriated funds currently held at: 0x50DF5a2217588772471B84aDBbe4194A2Ed39066. 📢 Join Our Community on Telegram! Be part of the excitement! Join our Telegram channel for amazing updates, discussions, and exclusive insights. Click here to join: t.me/ kyzfNY_dRN9hNGI8 #CyberSecurity #blockchainsecurity #prismblocks #hack #exploit
3
3
5
1,249