2phi がリツイート
2phi
154 posts

2phi がリツイート

BREAKING: BYBIT $1 BILLION HACK BOUNTY SOLVED BY ZACHXBT
At 19:09 UTC today, @zachxbt submitted definitive proof that this attack on Bybit was performed by the LAZARUS GROUP.
His submission included a detailed analysis of test transactions and connected wallets used ahead of the exploit, as well as multiple forensics graphs and timing analyses.
The submission has been shared with the Bybit team in support of their investigation. We wish them all the best.


Arkham@arkham
NEW ARKHAM INTEL BOUNTY: BYBIT HACK We’ve created & funded a bounty to help identify the person or organization behind today’s >$1B Bybit hack. Submissions to this bounty will be shared with the Bybit team to support their investigation. Reward: 50K ARKM Bounty: intel.arkm.com/exchange/bount…
English
2phi がリツイート

1 Bug, $50K+ in bounties: how Zendesk left a backdoor in hundreds of companies #bugbountytips
gist.github.com/hackermondev/6…
English
2phi がリツイート
2phi がリツイート
2phi がリツイート

1/ How Lazarus Group laundered $200M from 25+ crypto hacks to fiat from 2020 - 2023
zachxbt.mirror.xyz/B0-UJtxN41cJhp…
English
2phi がリツイート

There's still a load of potential for further research and discoveries in HTTP request smuggling. This massive-impact finding from @deadvolvo exploiting Akamai/F5 is a great example:
blog.malicious.group/from-akamai-to…
English
2phi がリツイート
2phi がリツイート

Discover how we compromise systems through misconfigured WSUS (Windows Updates) - Remote Command Execution as #SYSTEM
immunit.ch/en/blog/2023/0…
#pentest #windows #wsus #injection #rce

English
2phi がリツイート

Did you enjoy the latest blogpost on PHP filter chains? Well, our ninja @_remsio_ strikes again with a new article detailing how you can abuse them to leak files from the targeted system, as well as a freshly developed tool to exploit it! synacktiv.com/publications/p…
English
2phi がリツイート

Loyalist: $4m stolen from over 400 victims
zachxbt.mirror.xyz/chj355oHn5PcRI…
English
2phi がリツイート

Was a lot of fun to collab with you on this one.
Coffeezilla@coffeebreak_YT
VIDEO IS LIVE ON YOUTUBE 🔥
English
2phi がリツイート

Very nice little article. Bug hunting is more accessible than you might think; although it does obviously require some technical skills you don't have to be a seasoned veteran to find issues. blog.chain.link/smart-contract…
English
2phi がリツイート
2phi がリツイート
2phi がリツイート

📑 Root cause analysis from past DeFi incidents.
Hope this stuff can help devs to avoid the same mistakes as much as possible.
Now covered 95 incidents.
wooded-meter-1d8.notion.site/0e85e02c5ed34d…
#DeFi #Web3

English
2phi がリツイート
2phi がリツイート
2phi がリツイート

Wrote down my experience with MEV research, and the people who drove it to maturity
@Prestwich/mev-c417d9a5eb3d" target="_blank" rel="nofollow noopener">medium.com/@Prestwich/mev…
English

@nobock_fr @SNCF Cher monsieur, vous m'ôtez les mots de la bouche. Merci d'avoir été assez vulgaire pour deux :)
Français















