Sabitlenmiş Tweet
gote
223 posts


Excited for our first experiment in the agent space! Much more to come.
When onchain agents first took the spotlight in 2024, many of us were incredibly excited about what could be possible, but most shrugged it off as a fad. Indeed, agents weren’t advanced enough to execute complicated tasks that could genuinely provide value to end users.
Now, this revolution is impossible to ignore.
We firmly believe that onchain agents will become a core part of the Trillion Dollar Agentic Economy, and that tokenizing them at the earliest stages will provide huge benefits for their creators and earliest believers.
Namely, tokens represent a distribution layer for agents, for humans and other agents alike. They can also fund themselves incredibly quickly and efficiently using creator fees and other onchain mechanisms.
Today’s update is a v0; it’s there to serve as a bedrock for future updates in this space. So we’re super happy to hear feedback and ideas for what we should build next that can provide value to a) agent developers and b) end users.
Pump.fun@Pumpfun
Onchain Agents are taking over, and we’re building tools to accelerate the Agentic Economy on Pump fun The first step: Automated Buybacks for Tokenized Agents - our solution to bridge the gap between agentic success and human opportunity Live now, here's how it works 👇
English

is this onboarding retail?
charging $450 for a private gc and some dogshit other features is insane.
this guy full on larps having a 400k wallet and stealing other peoples pnls and calling himself a insider 🤣
all of his tiktoks get high views, i cannot even imagine how much normies buy this slop ass course
@shais.crypto" target="_blank" rel="nofollow noopener">tiktok.com/@shais.crypto

English

Drift Protocol just released their thread on the $280 million hack
It's worse than anyone thought too
There was no code exploit. It wasn’t a flash loan. It wasn’t even a traditional key theft.
Solana has a feature called "durable nonces" that lets you sign a transaction today but execute it days or weeks later
Sound familiar EVM critics? 😏
Think of it like writing a signed check and leaving it in someone's drawer until they decide to cash it.
The attacker used this to build a time bomb inside Drift's own governance system.
So I was wrong and Solana’s architecture did in fact play a role in this exploit occurring. Similar to how a hacker exploits approvals on EVM chains.
Here's how it played out:
March 23: The attacker sets up four of these delayed-execution accounts. Two are tied to real Drift Security Council members and two belong to the attacker.
At some point, the attacker tricks two of Drift's five council members into signing transactions they didn't fully understand.
Blind signing is something I have called out a lot and it is a major issue with many of these chains
Drift calls it "transaction misrepresentation” 🤨
But in reality they were socially engineered into signing their own robbery
Those signatures sat dormant for nine days!
March 27: Drift rotates its security council. New members, fresh setup. Doesn't matter. The attacker compromises two of the five new signers too.
April 1: Drift runs a routine test transaction. Sixty seconds later, the attacker cashes those pre-signed checks. Two transactions, four Solana slots apart. Full admin control.
Every withdrawal limit removed. Every vault drained.
$280 million. Gone.
Two out of five signatures is all it took 🤦♂️
But also clearly some major planning and patience for this elaborate attack
Blind signing
Durable nonces which function similarly to approvals
Poor key management
Insecure infrastructure
Everything worked as it was designed to work and this was just an incredibly well orchestrated and thought out attack
Drift@DriftProtocol
Earlier today, a malicious actor gained unauthorized access to Drift Protocol through a novel attack involving durable nonces, resulting in a rapid takeover of Drift’s Security Council administrative powers. This was a highly sophisticated operation that appears to have involved multi-week preparation and staged execution, including the use of durable nonce accounts to pre-sign transactions that delayed execution.
English

@exitliquid1ty is this the official profitable(exitliquid1ty) coin? is it official?
English
















