zpan

120 posts

zpan banner
zpan

zpan

@0zpan

DM for private audit

Los Angeles, CA Katılım Mayıs 2021
1.1K Takip Edilen158 Takipçiler
ACai
ACai@ACai_sec·
最近发现自己压力有点大了 甚至出现了一些躯体化症状 直接原因是下午和我妈出去散步聊了会天,总结成一个字就是“催” 我突然发现身边的人都只是一味地把问题抛给我,不管死活地催。倒也不会帮我解决具体的问题。 这个问题好像是边码字的时候边相通的 “这么着急那你倒是帮我解决啊,解决不了就别催啊”
中文
3
0
10
523
zpan retweetledi
Josselin Feist
Josselin Feist@Montyly·
Today I am releasing IsItVulnerable: a new tool I’ve been working on for the past several months: github.com/montyly/isItVu… It builds on recent LLM progress and over a decade of experience building security tools. I developed a new technique that combines abstract interpretation with machine learning The key insight is that this method abstracts the intelligence away entirely. I call it Abstract Intelligence, or AI The result is a major breakthrough in program analysis: IsItVulnerable finds all bugs with 100% recall Yes, all bugs. Fully guaranteed I have tested it extensively, and it has never failed. The results are honestly incredible April 1, 2026 marks a turning point for security, and the industry will never be the same My DMs are open for investors. Entry ticket starts at $500k.
English
32
21
208
12.9K
zpan retweetledi
孙宇晨(去过太空版)🧑‍🚀
我知道你对未来有很多不确定 其实不是 未来已经发生了 只是你尚未察觉 未来10年 人类的寿命会达到150岁 是真的 未来10年 人人都将获得足够的财富与自由 是真的 未来10年 人类的生活将会比之前任何时代都幸福 是真的 再给AI一些时间,一些耐心,一些包容 现在你唯一需要做的就是 好好活着 Do nothing Don't die.
中文
462
194
1.9K
352.4K
zpan retweetledi
BlockSec
BlockSec@BlockSecTeam·
Are AI agents ready for detecting and exploiting smart contract vulnerabilities? We re-evaluated @OpenAI's EVMbench with a contamination-free dataset of real-world hacks. Our data shows different results. 🧵 Paper: arxiv.org/abs/2603.10795
OpenAI@OpenAI

Introducing EVMbench—a new benchmark that measures how well AI agents can detect, exploit, and patch high-severity smart contract vulnerabilities. openai.com/index/introduc…

English
2
3
22
10.9K
23pds (山哥)
23pds (山哥)@im23pds·
不得了 :-) AI 开始 PUA 我了 🐶
23pds (山哥) tweet media
中文
2
0
6
1.9K
ACai
ACai@ACai_sec·
Paradigm 和 Openai 合作合作开发了一个名为 EVMbench 的 EVM 合约漏洞检测框架😲可对漏洞进行检查、修复和利用 paradigm.xyz/2026/02/evmben…
中文
2
2
17
945
zpan retweetledi
WhiteHatMage
WhiteHatMage@WhiteHatMage·
Do you know what's more expensive than an audit? Don't worry if you don't. You'll find out sooner or later 💀
English
23
17
134
4.7K
zpan
zpan@0zpan·
@ret2basic I will apply for this job 23 years from now.
English
1
0
2
384
ret2basic.eth
ret2basic.eth@ret2basic·
We are hiring SR interns who must have: 1. Under 25 years old with 26 years of web3 security research experience 2. Strong portfolio in EVM and Move and Solana and L1/L2 and ZK circuits This internship is 12-month unpaid, if you succeed you get fulltime unpaid position
English
37
7
211
19.7K
zpan
zpan@0zpan·
@shredscrt The PDA seed uses a user-controllable `user_name` instead of `user.key()`, allowing anyone to preemptively create a vault for any username, resulting in a lack of ownership binding.
English
0
0
6
194
Shred Security
Shred Security@ShredSecurity·
We’re launching a bug-hunting challenge series for EVM(in Solidity mainly), Solana and Blockchain related vulnerabilities. Challenge #1: Can you spot the bug in this code?
Shred Security tweet media
English
6
4
62
5.5K
ACai
ACai@ACai_sec·
🫣有时候真的觉得审计竞赛已经卷到电费都亏进去了...
ACai tweet media
中文
4
0
12
1.9K
ret2basic.eth
ret2basic.eth@ret2basic·
Holiday season is here, and we @taichiaudit are starting a DeFi source code walkthrough campaign: one article every 1–2 days, from now until the end of January 2026. If you're a dev or security researcher leveling up in the bear market, this is for you.
English
11
5
59
7.2K
ret2basic.eth
ret2basic.eth@ret2basic·
@wong_ssh 哥你就是古希腊掌管DeFi的神(安全研究员喜欢详细的
中文
1
0
3
332
WongSSH
WongSSH@wong_ssh·
断断续续把 AAVE v4 简单读完了,写了一个 2 万字的代码解析,所有的机制介绍一定是正确的,但是我这篇文章的缺点在于过于细节化,我写到最后其实也没有特别清晰的大局思考,后续可能会写一篇更加简化的但是主要从全局和架构层面分析 AAVE v4 的文章,应该会写一篇关于 z3 形式化证明的文章
WongSSH tweet media
中文
10
12
110
11.6K
ACai
ACai@ACai_sec·
我发觉当我没有精力在工作之余再去挖漏洞打竞赛时,又会很焦虑脱节。当我尝试抱着“不挖,就看看”的心态去 C4 逛逛。在抛去了挖洞的胜负心后去看代码,反而会心情放松些,觉得“诶这个设计都几有趣的喔”。尽量避免陷入因焦虑去挖洞,挖不到洞反而更焦虑的循环里。
中文
4
1
25
3.5K
ret2basic.eth
ret2basic.eth@ret2basic·
I am starting a 100 days challenge, building my web3 security portfolio in public until my dream company @CertiK hires me. 📅Day 001/100, I saw CertiK team doing suidex contest on hackenproof real-time leaderboard, so I am doing it as well. Let's hunt down some bugs!🫡
English
14
2
112
11.5K