CertiK Alert Profile picture
#CertiKInsight Insights, crypto hacks, crypto scams, flashloans. Turn on notifications for automatic alerts 🕵🏼 @CertiK 🤝 @CertiKCommunity
Mar 22, 2023 4 tweets 2 min read
#CertiKSkynetAlert 🚨

Today the @SECGov charged Justin Sun & 3 of his companies for the unregistered offer and sale of crypto assets.

Additionally, 8 celebrities were charged for allegedly promoting crypto without disclosing the fact that they were being paid to do so.

See 👇 @SECGov 1/ Celebrities including Lindsay Lohan, Jake Paul and a group of rappers and R&B stars such as Soulja Boy, Akon and Lil Yachty are being charged for shilling Tronix (TRX) and BitTorrent (BTT) without disclosing the fact that they were being compensated for it.
Mar 22, 2023 7 tweets 3 min read
#CertiKSkynetAlert 🚨

Scammers will always try to take advantage of hype.

We have seen multiple phishing attempts mimicking the Arbitrum airdrop.

Here are some of the signs to look out for so you don’t lose your assets 🧵👇 1/ Scammers will often use Twitter bots to tag users in tweets pointing them to a fake Twitter profile displaying a drainer.

Many wallet drainers have a similar layout 👇

We have recorded 6 of these drainers in March alone, although it’s likely that there are more. Image
Feb 21, 2023 6 tweets 4 min read
#CertiKSkynetAlert 🚨

What we know so far regarding the @fRiENDSiES_Ai exit scam:

On 20 Feb, fRiENDSiES Ai posted on their twitter that they were pausing the project due to market volatility.

Let’s see what went down 🧵 👇 Image @fRiENDSiES_Ai 1/ In March 2022, the fRiENDSiES #NFT project conducted a Dutch-style auction which raised ~1,530.78 $ETH.
Dec 20, 2022 7 tweets 3 min read
#CertiKSkynetAlert 🚨

1/ Ice phishing is a considerable threat to the Web3 community

Instead of gaining accessing to your private key, scammers trick you into signing permissions to spend your assets.

We’ll outline below what to look out for, and how to protect yourself! 2/ The scam begins when a victim is tricked into approving the ice phishing address.

The scammers address will be presented to you when you are interacting with a malicious URL or Dapp

Below is an example of this type of transaction 👇
Dec 19, 2022 8 tweets 5 min read
#CertiKSkynetAlert 🚨

We are seeing multiple community reports that @BurstRoyale_NFT is a scam project that drains NFT wallets after downloading the game. Several individuals have reported that they fell victim to this phishing site over the past month.

Please stay safe! @BurstRoyale_NFT 1/ Burst Royale appears to have a consistent modus operandi where a “team member” contacts their targets on Twitter offering them a job for the project and asking them to download their game, which is a proxy malware that drains wallets.
Dec 19, 2022 4 tweets 3 min read
#CertiKSkynetAlert 🚨

1/ We are seeing a fake @Coinbase email scam. Here’s how it works 👇👀

The scammer targets individuals who are selling items online and promise to pay a large sum of BTC through Coinbase. @coinbase 2/ They’ll then ask for the email address associated with the victim's Coinbase account.

Coinbase allows users to send crypto to an email address.

They then pretend to send you BTC and provide a fake screenshot of the confirmation.
Nov 21, 2022 6 tweets 2 min read
#CertiKSkynetAlert 🚨

1/ Let's break down the recent FTX Wallet Drainer activity.

The BSC wallet holds ~$1.6m DAI after converting ~44,232 BNB to ~$4m USDC, ~$3.5m USDT and $3.4m Binance Peg ETH.

The assets were then bridged over to ETH and sent back to FTX Accounts Drainer. Image 2/ Once the FTX Wallet Drainer amassed ~250k ETH, they began bridging funds to the Bitcoin Blockchain

On 20 Nov, 50k ETH was transferred to 0x866E which swapped ETH for renBTC.

Those assets were then bridged to the following addresses

Bc1qv…gpedg
Bc1qa…n0702
Nov 20, 2022 5 tweets 2 min read
#CertiKSkynetAlert 🚨

FTX Wallet Drainer 1 has transferred 5k ETH to a new wallet 👀

etherscan.io/tx/0xe3f288d78… 0x866Ee has received another 10k ETH from FTX Wallet Drainer 1

They have also begun swapping ETH for renBTC.
Nov 19, 2022 4 tweets 3 min read
#CertiKSkynetAlert 🚨

The FTX Wallet Drainer 1 (0x59AB) has begun swapping BNB to ETH, BSC-USD, and USDC.

So far:

~14,558 WBNB swapped for 3,000 ETH across 2 txns

~13,663 WBNB swapped for 3.5M BSC-USD

~15,875 WBNB swapped for 4M USDC across 2 txns

Stay vigilant! ImageImageImageImage The address still holds ~190.5 BNB.

Fifth transaction 👇 Image
Nov 18, 2022 4 tweets 1 min read
#CertiKSkynetAlert 🚨

In a matter of days, FTX, a company valued at $32B at the beginning of this year, went from a leading cryptocurrency exchange to bankruptcy.

🧵👇 2/ In the aftermath of FTX filing for bankruptcy we have seen the devastating impact the situation is having on a number of companies who had dealings with FTX.
Oct 12, 2022 8 tweets 3 min read
#CertiKSkynetAlert 🚨

On October 11, 2022 at 11:19 PM UTC, Mango Market was attacked for a total loss of roughly ~$116M.

The attacker was able to manipulate the price of the MNGO token and exploitatively borrowed more assets than what they were supposed to be able to.

🧵… 1/ The attacker funded Account A with 4,999,998.95 USDC. Account A then sold 488,302,109 MNGO worth of perpetual swaps on Mango Markets, worth $18,653,140.

Account B bought 482,745,055 of the MNGO swaps.
Apr 26, 2022 5 tweets 4 min read
#CryptoSecNewsAlert🚨

The @FBI is raising awareness on BlackCat ransomware-as-a-service (RaaS), which it said has attacked around 60 entities worldwide from November 2021 to March 2022.

The FBI released Flash No: CU-000167-MW

Read it all here👇

ic3.gov/Media/News/202… Image @FBI Also called ALPHV and Noberus, the ransomware is notable for being the first-ever malware written in the #Rust programming language.

Rust is known to be memory safe and offer improved performance. rust-lang.org

Rust is also used by Solana docs.solana.com/developing/on-…
Apr 17, 2022 8 tweets 4 min read
We are seeing a possible exploit on @BeanstalkFarms - symbol $BEAN which has dropped 100%

#slippage

Address: 0xdc59ac4fefa32293a95889dc396682858d52e5db0x48f33863b1defc7b294717498c634ba9a5fb58a7

Be careful out there! Image Flashloan attack on Beanstalk has drained their fund of approx $100 Million

Attacker wallet: etherscan.io/txs?a=0x1c5dcd…

“Publius” the discord owner has stated the project has no money to carry on and ‘its dead’.
Apr 13, 2022 6 tweets 3 min read
#CommunityAlert 🚨

@ElephantStatus's Treasury contract experienced a #flashloan attack leading to a loss of around $11M. The Treasury contract is unverified and unaudited.

bscscan.com/address/0xd520… The attacker took advantage of the redeem mechanism of the $TRUNK token, manipulated the price oracle to empower the token return, and stole ELEPHANT from the unverified Treasury contract.

Attack Steps 👇
Mar 17, 2022 4 tweets 3 min read
#CommunityAlert 🚨

At 11:20:44 PM +UTC, around 379 #BNB (~$150K) was rugpulled by the $Elona deployer.

The deployer removed the liquidity and transferred 540 #BNB in total to Tornado Cash. Image Steps:

Elona Deployer minted 1 trillion $Elona tokens:
bscscan.com/tx/0x9c6ccc909…

Deployer burned 500 billion tokens and added the other 500 billion as liquidity, along with 196.5 BNB: bscscan.com/tx/0x7d33e841e…