Jeff Security

2.2K posts

Jeff Security

Jeff Security

@jeffsecurity

Independent Smart Contract Researcher & Researcher at @ShieldifySec My mission is to find vulnerabilities in smart contracts for a safer Web3 Space!

Audit portfolio here: Katılım Mayıs 2021
2K Takip Edilen8.4K Takipçiler
Sabitlenmiş Tweet
Jeff Security
Jeff Security@jeffsecurity·
Made $60k last month from audit 😎 What about you?
English
21
0
135
10K
Jeff Security retweetledi
Shieldify Security
Shieldify Security@ShieldifySec·
| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| Need more bug bounty and contest platforms |______________________| \ (•◡•) / \ / —— | | |_ |_
English
7
10
60
2.1K
Shieldify Security
Shieldify Security@ShieldifySec·
🚨PSA for anyone considering working with these guys, they don't pay for their audits. We've been chasing the invoice for months! Repost, so no one else wastes their time. @MuratLite @Fast_Protocol @primev_xyz
Martin@ShieldifyMartin

First time getting scammed for providing an honest, on-time security service. 👏 Still, shoutout to @Fast_Protocol, @primev_xyz and @MuratLite - hope the help made a difference, even if it came at our expense. Hope the good gets passed forward to someone else 🙏

English
6
9
46
5.7K
Martin
Martin@ShieldifyMartin·
First time getting scammed for providing an honest, on-time security service. 👏 Still, shoutout to @Fast_Protocol, @primev_xyz and @MuratLite - hope the help made a difference, even if it came at our expense. Hope the good gets passed forward to someone else 🙏
English
10
4
56
7.5K
Code4rena
Code4rena@code4rena·
An important update from the C4 team. 🧵
English
135
40
529
119.5K
Shieldify Security
Shieldify Security@ShieldifySec·
| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| Need More Auditors |__________| \ (•◡•) / \ / —— | | |_ |_
English
20
8
130
6.9K
Jeff Security
Jeff Security@jeffsecurity·
December 2024. npm i @ solana/web3.js Supply chain attack. The program is immutable and secure. The signer isn’t. Sum everything and you will receive -160k USD loss in SOL. defendor.xyz/p/the-signer-y…
English
0
0
9
453
Jeff Security retweetledi
Martin
Martin@ShieldifyMartin·
🚨 Another Hack @Aurellion_Labs was exploited on @arbitrum for ~$456k. Cause: uninitialized Diamond proxy, unprotected initialize(). The attacker added a malicious facet, abused existing USDC approvals and swept funds from users. Stay safe and take security seriously! 🙏
English
2
3
25
1.5K
Jeff Security retweetledi
Martin
Martin@ShieldifyMartin·
The Mom Test 📘 Most founders ask for compliments and call it customer research. I’ve seen too many teams spend months building, only to end up with a product nobody actually wants. Learn how to validate ideas properly 🫡
Martin tweet media
English
1
2
6
383
Jeff Security
Jeff Security@jeffsecurity·
A 100-page report with zero criticals isn’t a success; it’s a failure of imagination. If you’re just checking boxes, you’re not an auditor-you’re a proofreader. The "extra step" is where the exploits live.
English
3
0
11
506
Jeff Security
Jeff Security@jeffsecurity·
A skill that: - turns a smart contract vulnerability finding into a submission-ready Foundry PoC - forks mainnet - exercises real deployed contracts end-to-end. github.com/cholakovvv/fou… 🚀
English
1
5
49
1.6K
Jeff Security retweetledi
Blockaid
Blockaid@blockaid_·
🚨 Blockaid's exploit detection system has identified an on-going exploit on TrustedVolumes (1inch market maker / resolver, @trustedvolumes ). Chain: Ethereum Victim contract: TrustedVolumes resolver — 0x9bA0CF1588E1DFA905eC948F7FE5104dD40EDa31 Exploiter: 0xC3EBDdEa4f69df717a8f5c89e7cF20C1c0389100 Exploit tx: 0xc5c61b3ac39d854773b9dc34bd0cdbc8b5bbf75f18551802a0b5881fcb990513 Total extracted so far: ~$5.87M (1,291.16 WETH + 206,282 USDT + 16.939 WBTC + 1,268,771 USDC). Same operator as the March-2025 1inch Fusion V1 incident; this is a different vulnerability, in a TrustedVolumes-controlled custom RFQ swap proxy (0xeEeEEe53033F7227d488ae83a27Bc9A9D5051756). More details will follow.
English
20
35
190
147.8K
Jeff Security
Jeff Security@jeffsecurity·
Time from vulnerability disclosure to exploit went from 10 months to just 10 hours. This and other dope vuln stats: 👇 zerodayclock.com
English
0
0
8
562
Shieldify Security
Shieldify Security@ShieldifySec·
| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| Web3 Security is the Future! |______________| \ (•◡•) / \ / —— | | |_ |_
English
14
9
42
1.4K