Web3 Security Auditor • We make #Web3 a safer place by protecting projects from getting hacked 🛡 $HAI → @hackenai | Bug Bounty → @hackenproof
May 19, 2023 • 7 tweets • 3 min read
🚨 Swaprum (@Swaprum) on Arbitrum rugged by its founders for ~$3M
Here's what happened:
🧵…
🕵️ The deployer of Swaprum utilized a backdoor function, add(), to steal LP tokens staked by users
Following the theft, liquidity was swiftly stolen from the pool by the deployer
May 17, 2023 • 13 tweets • 2 min read
🔖 After the recent controversial Ledger update to restore your wallet with ID, it's time to discuss potential, more secure methods for wallet restoration
Let's dive into Account Abstraction (ERC-4337) ⬇️
🧵
📰 Crypto wallet maker Ledger has been recently criticized for its “Ledger Recover” feature, which stores encrypted user seed phrases with third-party custodians
This has led to concerns about privacy and security
Apr 3, 2023 • 12 tweets • 4 min read
🚨 A Validator Attack on MEV Bots caused $25.2M loss for MEV bots
Thread below with comprehensive explanation ⬇️
🧵...
💸 MEV bots lost $25.2M today due to a planned validator action
The validator was previously funded through the anonymous #Aztec protocol, suggesting that the theft from MEV bots was premeditated
The validator's confidential top-up occurred 18 days ago
Apr 2, 2023 • 11 tweets • 4 min read
🚨 All Bridge (@Allbridge_io) has experienced a security breach, leading to a loss of approximately $570K
More details in the thread below ⬇️
🧵...
⚙️ The issue seems to stem from the manipulation of the pool's swap price, with the attacker taking on dual roles as LP and swapper to control the price and drain funds from the pool
Apr 1, 2023 • 8 tweets • 4 min read
🧑💻 Creating a Smart Contract: A Beginner's Guide
Explore the essential steps in the thread below ⬇️
🧵...
⏲️ First of all, we need to prepare for creating the smart contract
We need to clarify what is transaction on a code level, that is #solidity, IDE & External Tools
Dec 22, 2022 • 7 tweets • 1 min read
❗️Why Proof of Reserves audit should be performed not only for centralized exchanges, but also for stablecoins and synthetic assets issuers
🧵...
1. Proof of Reserves audit can help to demonstrate that the stablecoin is backed by a stable asset, such as a fiat currency, and that the issuer has the reserves necessary to honor all outstanding stablecoin liabilities
Oct 11, 2022 • 7 tweets • 2 min read
🚨 Mango Markets (@mangomarkets) has been hacked for over $100M
We are closely monitoring the situation and will keep you updated as soon as we verify details of the attack