blockchain security/engineering @4d4m4n7 | @GoMaestroOrg @txpipe_tools @cr0wn @siginthq

Joined March 2009
1 Photos and videos
Pinned Tweet
13 Aug 2022
New post describing important security considerations for web-apps interacting with Cardano wallets, in particular projects utilising multi-sig transactions. Any feedback welcome!
13 Aug 2022
New write-up: Multi-Sig Concerns, Mangled Addresses, and the Dangers of Using Stake Keys in Your Cardano Project (Atomic Swap & TradingTent Bug) adamantsecurity.medium.com/m…
1
7
Harper retweeted
18 Feb 2025
🚀 Maestro is leveling up! We're thrilled to announce our $3M seed round, co-led by Wave Digital Assets and Draper Associates. This funding fuels our mission to revolutionize Bitcoin DeFi and bridge the gap between traditional and decentralized finance. 🟠 Why it matters Empowering builders: Our state-of-the-art UTXO indexing and developer tools are designed to help onboard millions to Bitcoin. Bridging finance worlds: We're breaking down barriers between traditional and decentralized finance with scalable, user-friendly solutions. Ecosystem synergy: Our partnerships with innovators like Arch Network and Saturn are pushing the boundaries of what's possible on Bitcoin. Trusted by industry leaders, Maestro is paving the way for a new era of innovation on Bitcoin. Join us as we unlock BTC's full potential. Click the link below to find out more ⬇️
31
9
136
11,946
Harper retweeted
🏆 Cardano Summit 2023 Awards 🎊 Congratulations to the winners in the category Developer or Developer Tools 👏 @txpipe_tools 👏 @StricaHQ #CardanoSummit2023 #CardanoCommunity
17
59
296
36,981
Harper retweeted
3 Nov 2023
👀 Early support for Conway primitives in Pallas: github.com/txpipe/pallas/pul… A big step in the path for #Rust tooling and libraries that integrate with #Cardano governance actions. ♥️ contributors: @hrpr, lisicky (github)
1
10
25
1,610
Harper retweeted
2 Nov 2023
Maestro placed 1st in the Battle of the Builders #cardanosummit2023 The competition was fierce. There were so many brilliant, innovative projects, and we were simply happy to take part. We are truly humbled by this experience and want to thank our fellow competitors.
21
32
179
10,892
Harper retweeted
17 Jul 2023
Dear #Cardano community! We've submitted several proposals for Project Catalyst Fund 10! 🥳 Our mission is to usher Cardano into the mainstream by offering the most advanced dApp developer platform and empower YOU the community to build better, faster, and easier. #Fund10 🧵👇
5
12
58
10,480
Harper retweeted
11 Sep 2022
Oura is an #OpenSource project built with the effort of several contributors from the #CardanoCommunity. This release includes contributions from: @skb64855314, 4TT1L4 (github), @rc_morano, @hrpr, @rvcas, @santicarmuega
1
5
17
31 Aug 2022
Join me and @CanonicalLLC next week to talk about smart contract and Cardano security, as well as topics such as MEV, the mempool, batchers, bug bounty, opensource, etc...
🗣️Join us Monday at 1pm PT/8pm UTC for another @CanonicalLLC Twitter Space. Our featured speaker with be @hrpr, a Cardano security auditor and discoverer of the "Mangled Address" attack. x.com/i/spaces/1ZkKzXMzawdJv
4
9
Harper retweeted
20 May 2022
Whitehat satya0x reported a critical vulnerability in @wormholecrypto on Feb 24 via Immunefi. The bug was quickly patched, no user funds were affected, and satya0x received a $10 million payout from Wormhole, the largest bounty payout on record. medium.com/immunefi/wormhole…
31
231
1,112
Harper retweeted
I'm proud to formally introduce @txpipe_tools, a small team committed to contribute to the #CardanoCommunity by building open source tools and infrastructure for developers. The new home for @Oura_project, Scrolls, Pallas and many more to come🤞 txpipe.io
12
42
184
Harper retweeted
It is a small coup that fairness is so associated with "fair ordering" / time based ordering There is no single notion of "fair." These protocols privilege a different set of actors and MEV extraction is a different "game" to play on them Disclaimer: personal views
4 Nov 2021
The main issue with MEV and fair ordering is fair ordering doesn’t exist.
7
25
114
20 Feb 2022
There's no such thing as a "closed-source decentralised exchange". Interested to hear your thoughts - am I missing something? Here's mine: hrpr.uk/2022/02/10/closed-so… #Cardano #ADA
4
16
Harper retweeted
18 Feb 2022
New write-up: Assuming Temporary Staking Control of Funds Sent from Cardano Validator Scripts (MuesliSwap, SpaceBudz Market, jpg(dot)store affected) medium.com/adamant-security/…
1
1
10
Harper retweeted
In reality SPOs have always full control over transaction ordering, not exposing the API of the tx management is just wishful thinking, in reality you can always patch the node, hook up debugger to it or find some other way, to order, prioritize, or exclude transactions in block.
Replying to @julienmatsuno
Tiered-fees was never meant to address scalability. It's purely an optional feature block producers could opt into as a way to enable a different order of transactions
1
3
18
Harper retweeted
8 Feb 2022
I would rather buy on an open-source marketplace than on any closed source one. Reason one I can verify what is going to happen, reason two I know the dApp is contributing to the ecosystem with the open-source code (especially important in the early days now).
1
1
23
Harper retweeted
NO FLAG left behind 😱 #HTB UNI #CTF Winners! 🏆 1,300 Players, 200 Universities, 18 made it to the Finals... 1 GRAND WINNER! 🎊 🥇SIGNIT from @EdinburghUni 🥈INSSec from @iceuniwa 🥉ITMO from @spbifmo_en Congrats to all participants! 👏
1
5
31
Harper retweeted
18 Feb 2021
We're hosting Union CTF this weekend; our first CTF! It will run from 19:00 UTC 19th Feb until 19:00 UTC 21st Feb. We hope to see you there! More info at ctf.cr0wn.uk 👑
11
39
Harper retweeted
10 Dec 2020
Our team came first out of 200 teams in the @hackthebox_eu University CTF Qualifiers! On to the finals 🏆 @InfAtEd @UoEInfoSec
#HTB x UNI #CTF 2020 Finalists 🥁 Congrats to the teams that made it to the FINALS! 🏆 Extra kudos for... 🏅 Best Write-Up by @DakotaState 🏅 Master Exploiter by @UniperugiaNews Prizes by #HackTheBox & @ParrotSec ! Stay tuned for the Finals Dates 🏁 #CyberSecurity #CaptureTheFlag
1
5
18
Harper retweeted
23 Nov 2020
SIGINT is running the second iteration of their pwnEd CTF competition in Feb 2021. This time it's online, so we're welcoming teams from all UK universities to compete! Register your interest now: forms.gle/eQDogWuq9F8Wsgyg8 More info: pwned.sigint.mx/
5
6
Harper retweeted
18 May 2020
This weekend we placed 18th in the @defcon 28 CTF qualifiers with @the_secret_club and @excusemewtf_ctf! Was it enough? Stay safe out there... 👑 #ctf #defcon28
7
19