We built a tool that detects web3 frontend attacks.
It would have caught the Frax, Balancer, Galxe, Velodrome, and Aerodrome frontend hacks.
These hacks all happened the same way. A hacker pretended to be the team and tricked the team’s DNS registrar into changing the nameservers to something malicious (hint - use a good registrar like
@3dns_inc or something like
@ensdomains)
So, we built a tool that:
* Monitors the top 3000 web3 domains for nameserver changes
* Sends notifications alerts the team if there are unexpected changes
If your a web3 user and don't want to get hacked you should subscribe to notifications for the protocols you use.
If you're running a web3 frontend you should make sure it's on this list.
Sites hosted on
@dApplingNetwork get added to this monitor automatically some other security features.
Thanks
@eth_limo,
@lumeweb3,
@3dns_inc for the help thoughts building this.