-

12.7K posts

- banner
-

-

@benezuriel

Katılım Temmuz 2010
1.1K Takip Edilen309 Takipçiler
-
-@benezuriel·
When i write point 2, i was assuming that the protocol isn't deployed yet, hence the 'whataboutism' if they have millions of dollar in TVL. Again, i agree with the underlying idea of being safer, but there are trade-offs. E.g. audit comp considerably cheaper but takes more time. Top tier audit firm takes less time but more cost etc. But maybe from protocol/team perspective considering e.g. Balancer V2, there are couple notes that they have to take (i doubt it too tho). Again this is just from what i think considering perspective of involved parties. I may be wrong
English
0
0
0
11
0K
0K@ZeroK_____·
I agree with 1, but i don’t agree with 2, because currently there are many opportunities to secure your project with less money that we can think about, and if your project holds many million dollars, then it’s better for you to have some funds to make sure the funds on chain are safe right?
English
1
0
0
11
0K
0K@ZeroK_____·
I feel sad seeing all these hacks these days. Sometimes I feel like I’m part of the reason this is happening, even though deep down I know I’m not. What do you think our community should do in this situation? solutions only, I’m not here to hear anything negative.
English
8
1
16
1.6K
-
-@benezuriel·
one of these days, there will be a major exploit. might be 30m, might be less. will not be more than that tho
English
0
0
0
12
-
-@benezuriel·
lmao this bitches still moans about decentralization vs centralization? and we thought we're a "better" system? would you bitches choke when knowing the prerequisite of having "democracy" as a system? lmaooooooooooooooo
English
0
0
0
18
- retweetledi
cartoon.the🦄.eth
cartoon.the🦄.eth@cartoonitunes·
In March 2016, a team called DappHub deployed a token that would go on to govern over $8 billion in DeFi. MKR gave holders the power to vote on every parameter of DAI, the most important stablecoin on Ethereum. The source code has never been publicly verified. Until now. 🎉
cartoon.the🦄.eth tweet media
English
5
11
68
7.7K
-
-@benezuriel·
@0xriptide more like 30
English
0
0
2
398
Xiaoming9090
Xiaoming9090@xiaoming9090·
Glad to have secured 1st place in the Fluid V2 contest. Managed to find all H/M issues in the contest. Thanks to @0xfluid and @sherlockdefi for the opportunity!
Xiaoming9090 tweet media
English
33
5
317
4.5K
-
-@benezuriel·
@sisihacks Decentralization is process. Its not the dot in a sentence, its not the "no law applicable since anyone can do so", its not getting away from consequence and such
English
0
0
0
13
Sisi
Sisi@sisihacks·
Okay, so... people are not complaining because funds were frozen. They’re reacting to who has the power to do it. Arbitrum didn’t just pause something, they identified specific address, stepped in and moved 30k+ ETH into a controlled wallet. From a security perspective, that was very useful for the situation at hand, it slowed things down, contained the damage and gave protocols a chance to respond instead of watching the funds disappear but let’s not pretend there isn’t a tradeoff. The moment a group can step in and move funds even with law enforcement involved you’ve introduced trust. It’s no longer fully “code is law.” There’s a human layer that can intervene when things go wrong and that’s the part people are reacting to. So yeah, it helped but it also proves that the system isn’t as trustless and decentralized as people thought it is. That’s the trade-off.
Haleemah@Haleeeemahh

since the beginning of 2026 a lot of projects have been hacked none recovered yet Arbitrum recovered stolen funds linked with kelpDAO why are people complaining? genuinely curious 👀

English
3
1
11
1K
-
-@benezuriel·
@ma1fan Is this Binance?
English
0
0
0
615
Nolan | Exvul
Nolan | Exvul@ma1fan·
I reported a critical vulnerability to a top-tier crypto exchange—an exploit that could allow an attacker to crack and steal wallet private keys within minutes. By all industry standards, this was a severe, high-impact bug. Yet, they initially offered me a measly $4,000 bounty. I refused to accept it and pushed back hard. After a prolonged back-and-forth, they spent ages escalating it to their leadership. Following endless rounds of "approvals," they finally added a whopping $1,000 to the offer, bringing the grand total to $5,000. I am honestly "moved to tears" by their generosity, considering an exploit of this magnitude is easily worth at least $50,000. Seriously, my advice is to avoid participating in Bug Bounty programs run by certain Chinese teams. It seems they would much rather risk getting drained for tens or hundreds of millions of dollars by actual hackers than pay a white hat a single extra cent for protecting them.
English
48
19
328
40K
-
-@benezuriel·
@0xriptide Working poc got dismissed/abused by ghosting months, why would theoretical would appreciated
English
0
0
0
106
riptide
riptide@0xriptide·
After this LZ incident, do you think project teams will now consider more "theoretical" bug bounty submissions?
English
16
0
27
4.3K
curiousapple
curiousapple@0xcuriousapple·
wen chainlink infra compromise ?
English
9
2
16
2K
-
-@benezuriel·
Again, people dancing on top of the grave. What's with this? Security world seems to be mote and more bleak than ever. SRs being ridiculed as a "beg bounty" Protocol's rev drained as market activities went down User's money being drained because of point 1 2 (bh > wh now)
English
0
0
0
31
- retweetledi
sudo rm -rf --no-preserve-root /
cow[.]fi (CoW Swap) UI (and probably DNS) is compromised. do NOT interact!
sudo rm -rf --no-preserve-root / tweet media
English
27
170
587
117.6K
-
-@benezuriel·
@0xfrsmln Cara lama ini sir malah, era sebelum bbp jadi new norm
Indonesia
1
0
0
237
frs.eth 🦇🔊
frs.eth 🦇🔊@0xfrsmln·
Somehow this kind of PoC is: 1. You get to be called a white hat. 2. It solves the duplication problem. 3. It guarantees payout. Is this the norm now? Somehow if you do this, it is a white hat act. We skip the platform middleman and go straight to exploit? Seems so wrong for me tbh
dango🍡@dango

The white hat has returned the funds in full, and has been awarded a bug bounty. User funds are completely unaffected. Our appreciation to the white hat for identifying the bug, securing the vulnerable funds before further damage could happen, and assisting us in strengthening our system. Team is now working on deploying additional guardrails to prevent similar situations from happening again. We expect dango.exchange to resume operation within the day.

English
10
1
50
3.8K
-
-@benezuriel·
@toby_solutions from the dev's/founder's tweet, seem so tho. painfully might be user's funds and not the protocol's
English
1
0
1
85
Tobiloba 🦀
Tobiloba 🦀@toby_solutions·
So if you rage-bait hackers you will actually get hacked? Damn.
English
20
14
178
13.2K
chrisdior
chrisdior@chrisdior777·
CAREFUL what you manifest. 🤯 On April 1st, @hyperbridge joked they got hacked for $37M. 12 days later, they actually got hacked - $237K gone. Damn 🤯
chrisdior tweet mediachrisdior tweet mediachrisdior tweet media
English
10
6
55
2.8K
-
-@benezuriel·
"Is anyone left in Aave?" ???? What?
English
0
0
0
44
-
-@benezuriel·
devs said security killed innovation of defi apps because its too expensive. SRs got ghosted for months, silent fixed, banned unjustly, protocols are spamming `no fix no pay` rules, etc. Jong Un-Kim, laughing uncontrollably because it's goddamn easy to do so (billions alr)
English
0
0
0
46
-
-@benezuriel·
@SolarEtherPunk Very bad take. If you want to mock/make fun of @DriftProtocol i would back you, since a protocol being fucking dumb is their vault and must held accountable by their idiotic mistakes. But blaming users of a chain because of their chain is not it
English
0
0
2
273
SolarEtherPunk.eth🏄
SolarEtherPunk.eth🏄@SolarEtherPunk·
Solana just got its final reality check. Drift Protocol, one of the biggest perpetuals DEXes on the chain, just got drained for $270M+ in a massive exploit. On April 1. And they had to tweet “this is NOT an April Fools joke.” After years of pump.fun turning Solana into the biggest meme-coin casino and rug-pull factory in crypto… After Toly and Mert spent years gaslighting everyone about how “decentralized” and “battle-tested” the chain is while it kept having outages, validator concentration issues, and VC-controlled narratives… This is the bill finally coming due. The most toxic, arrogant, hype-driven, “number go up” ecosystem in crypto just hit the wall. Hard. $SOL less
Drift@DriftProtocol

We are observing unusual activity on the protocol. We are currently investigating. Please do not deposit funds into the protocol while we investigate. This is not an April Fools joke. Proceed with caution until further notice. We’ll provide additional updates from this account.

English
19
11
145
12.8K