Lucifer Ξ

190 posts

Lucifer Ξ

Lucifer Ξ

@0xLuciferAlpha

DeFi Engineer | Aspiring Security Researcher | 4+ years onchain Real code • Real alpha • Zero memes • Maybe few memes

Katılım Kasım 2025
69 Takip Edilen20 Takipçiler
Sabitlenmiş Tweet
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
1/ Solidity `bytes` variables behave differently than you might expect—especially when mixing high-level code with assembly. This short snippet below shows a common gotcha
Lucifer Ξ tweet media
English
1
0
0
46
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
@0x3b33 Usually the solidity guys and solana guys are same or different for the audit?
English
1
0
0
23
Pyro
Pyro@0x3b33·
Our first Solana + Back End audit Really proud of the boys, they crushed it!
Pyro tweet media
English
5
2
39
1.8K
pashov
pashov@pashov·
🤯CODE4RENA SUNSETTING. THE END OF AN ERA Thank you for everything, code4rena, forever in our hearts <3
pashov tweet media
English
37
52
560
39.8K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
It’s time to get back in the game.
English
0
0
0
11
Arsen
Arsen@arsen_bt·
Attacker drained $209K from @renegade_fi. Then messaged claiming to be a whitehat. Unfortunately, that's bug bounty state in 2026.
Arsen tweet mediaArsen tweet media
English
29
27
277
23.6K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
Is it early to have Uniswap V4 swap integrations in your defi protocols. Should you stick with V3 only?
English
0
0
0
24
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
@Ehsan1579 What did I just read, such huge lapses in development. It almost is unbelievable.
English
0
0
1
179
CharlesWang
CharlesWang@0xCharlesWang·
Whenever you start a new audit, the first days are essential for laying the ground stone for advanced exploits. You will have an open mind and are creativ. The more you dive into the code, the more biases you will develop. Use the initial time wise.
English
2
0
16
705
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
@0xKaden that was insightful, gonna bookmark this asap
English
0
0
1
24
kaden.eth
kaden.eth@0xKaden·
✨Weekly bug writeup✨ #3: Insufficient slippage protection with price limit only In Uniswap v3/v4 swaps, the sqrtPriceLimitX96 parameter constrains how far the price can move during a single swap, but it does not guarantee a minimum output amount or maximum input amount While the sqrtPriceLimitX96 enforces an upper bound on the price paid for the swap, the actual price paid depends on the amount and placement of in range liquidity For example, a protocol that only uses sqrtPriceLimitX96 to handle slippage protection may have to set the sqrtPriceLimitX96 according to the expected resulting sqrtPrice after the swap, based on the amount of liquidity being swapped through. However, as long as there is sufficient liquidity to execute the swap between the current sqrtPrice and the sqrtPriceLimitX96, the swap will succeed regardless of the placement This allows MEV bots to strategically move liquidity away from the current sqrtPrice to the sqrtPriceLimitX96, providing the swap with the worst possible pricing Always enforce the minimum amount out/maximum amount in to protect against slippage Stay tuned for a ✨new bug writeup every monday✨
English
2
0
37
2.2K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
While auditing, if you find a possible vulnerability: 1. You would mark it and carry on auditing 2. Or would you rather right there write the PoC for it and then move on
English
0
0
0
22
phil
phil@philbugcatcher·
I used to ask myself a lot "am I auditing correctly?" I studied auditing a lot, and everyone says they just read code. But in the beginning, just reading code felt incredibly hard I was convinced top SRs had some secret process that I was missing Turns out I was wrong. It just takes time to master reading code After a while the process starts to feel natural. Auditing is still tough, but it flows
English
9
9
129
4K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
1/ Solidity `bytes` variables behave differently than you might expect—especially when mixing high-level code with assembly. This short snippet below shows a common gotcha
Lucifer Ξ tweet media
English
1
0
0
46
petar | Spectra
petar | Spectra@petercalic99·
If you want to deepen your sc security skills i recommend watching "The Mentorship Series" by @0xSimao. A ton of great tips. I might share my fav.
English
1
1
15
1.2K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
@HackenProof In upgradeable context, the initialize function can be initialized again against implemantation contract storage. -> Use diableInitializer() in constructor -> add initializer modifier in initilize function
English
1
0
1
30
HackenProof
HackenProof@HackenProof·
Spot the Bug 🧠 Upgradeable setup What’s the issue in this code?
HackenProof tweet media
English
16
5
83
6.3K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
Starting with this 10-weeks long SR mentorship program, mentored by @bichistriver and sponsored by @PashovAuditGrp 🫡
misbahu@bichistriver

this is Hooooge! We got the top auditing company to sponsor 29 future Elite security researchers. One of the best in web3 security space. Their founder wants to help this space grow in the era of AI. @PashovAuditGrp We will have an exciting mentorship program. Next steps: If you have been wanting to join but couldn't due to the $50 fee, go ahead and fill this form. You will get a free slot. Join only if you are ready to work hard for the next 10 weeks. docs.google.com/forms/d/e/1FAI… Those that already paid before will get communicated tomorrow. They are already locked in. We will choose the lucky ones from the today applicants that do after this announcement. Make sure to answer the questions with your best response. Let's go!

English
0
0
1
47
HackenProof
HackenProof@HackenProof·
Spot the Bug 🧠 Signature Replay What’s the issue in this code?👇
HackenProof tweet media
English
16
5
73
5.6K
misbahu
misbahu@bichistriver·
I have selected the 29 @PashovAuditGrp - sponsored candidates who demonstrate the highest probability of consistency. Selection Criteria: - absolute beginners but with Clear roadmaps rather than vague passion. - Candidates who have quit jobs, burned ships, or invested significant personal capital. - Candidates with existing contest wins, specific findings (Highs/Mediums), or completed bootcamps (RareSkills, GuildAcademy). - Developers/SREs transitioning to security (higher retention rate than fresh beginners). @0xgo4ko @cosminm53 @slAGeRoP @0x_Blackwolf @Rezar13 @0xh2134 @ByteFable @0xbube @0xAbhayyy @KalpPShah @takeshi77kovacs @derastephh @specterev @dejiolaniyannn @HabeeblaiM @AshhadAslam @0xserEMir @0xmishoko @tiersigma @StrangeEth @faruukku @developerx_sec @Abdvssamad @molaratai @0x_wind @dystopiaxyz @kalyan__tr @0x_bob_0x @0xvard if your name is mentioned above kindly dm me on TG to get added today to the group. tg username: @bichistriver We will kick off tomorrow!
English
25
7
83
7.4K
0xfirefist
0xfirefist@0xFireFist·
I can't even express my feelings rn... 3rd place on Mento's contest, life is good. Congrats to @vinicaboy, he once again proved that he is one of the best in our space! @0xSimao I guess the 5 figs challenge goal isn't that far now, is it?
0xfirefist tweet media
English
81
3
298
13.5K
Pashov Audit Group
Pashov Audit Group@PashovAuditGrp·
We sponsored 29 slots of this mentorship web3 security program. Good luck with your applications🫡
misbahu@bichistriver

this is Hooooge! We got the top auditing company to sponsor 29 future Elite security researchers. One of the best in web3 security space. Their founder wants to help this space grow in the era of AI. @PashovAuditGrp We will have an exciting mentorship program. Next steps: If you have been wanting to join but couldn't due to the $50 fee, go ahead and fill this form. You will get a free slot. Join only if you are ready to work hard for the next 10 weeks. docs.google.com/forms/d/e/1FAI… Those that already paid before will get communicated tomorrow. They are already locked in. We will choose the lucky ones from the today applicants that do after this announcement. Make sure to answer the questions with your best response. Let's go!

English
14
6
87
6K
Lucifer Ξ
Lucifer Ξ@0xLuciferAlpha·
@ArnieSec I had the same learning curve with Yul/Assembly I think identifying prerequisites is itself a task
English
0
0
2
20
Arnie
Arnie@ArnieSec·
If you’re trying to learn something and it feels confusing or doesn’t stick, that’s often a sign that you skipped prerequisites. Yul/Assembly felt impossible to me early on, not because it was “too hard,” but because I didn’t yet understand storage, memory, the stack, and how data is represented. Learning has an order.
English
5
1
47
1.7K