singsing

4.3K posts

singsing banner
singsing

singsing

@singgihTara

DeFi learner | ZK Enthusiast | @CentuariLabs Builder | Lead DevRel @devweb3jogja

Dev Web3 Jogja Katılım Mayıs 2019
1.2K Takip Edilen297 Takipçiler
Sabitlenmiş Tweet
singsing
singsing@singgihTara·
Why borrowing rates in DeFi lending protocols remain difficult to accurately calculate — and why fixed-rate lending via order book mechanisms presents a relevant alternative worth exploring 🧵A Thread🧵
English
1
0
13
2.3K
singsing
singsing@singgihTara·
@afrijaldz tengs bro ini yang ku butuhin, soalnya dari kemarin bingung mau review hafalan dimana 😇
Indonesia
1
0
0
18
singsing retweetledi
Eli Ben-Sasson | Starknet.io
Zero-knowledge will transform blockchain, and blockchain will revolutionize our society. They deserve a book! After dedicating years to these topics, I wrote one, co-authored with @NathanOnCrypto: what they can fix and what future they promise. Coming soon, order now! blockchainthebook.com
Eli Ben-Sasson | Starknet.io tweet media
English
51
39
330
19K
singsing retweetledi
Cointelegraph
Cointelegraph@Cointelegraph·
🚨 ALERT: A Kraken user lost ~$18M (8,662 $ETH) in a social engineering hack, with the attacker bridging $1.7M via THORChain and depositing over 5,300 ETH into HitBTC.
Cointelegraph tweet media
English
62
81
416
47.7K
singsing retweetledi
Celo Indonesia
Celo Indonesia@CeloIndonesia·
Cara Submit ke Proof of Ship Season 2 Buat yang belum tau, Proof of Ship itu program bulanan dari Celo. Simpelnya: kamu bangun app di Celo, tunjukkan hasilnya, dan ada prize pool $5K USDT/bulan buat Top 50 projects Kalau app kamu udah live di chain lain (Base, World, dll) dan pengen ekspansi ke Celo, ini kesempatan yang bagus. Games, utility apps, X2Earn, AI agents semua bisa ikut selama sudah ada user dan terintegrasi MiniPay. Cara submit: Buka talent.app/~/earn/celo-pr…, login, dan submit project kamu. Selesai. Leaderboard di-update mingguan. Top 10 dapet bagian terbesar dari pool, Top 3 dapet sesi mentor langsung dari tim Celo. Timeline April: - Submission sampai 26 April - Review 27-30 April - Pengumuman 30 April Daftar: bit.ly/celo-proof-of-… Tanya-tanya? Reply atau DM aja.🫡 @Celo @CeloDevs
Indonesia
0
2
3
91
singsing retweetledi
Heinrich
Heinrich@hwisesa23·
The Drift exploit wasn’t a smart contract bug. Someone on the multisig changed the admin, another member approved it, and then the attacker initialized a fake token with an inflated oracle price and drained real assets through cross-margin. The code worked exactly as designed. That’s what makes this scarier than a typical hack. You can audit the contract a hundred times and never catch this. The vulnerability wasn’t in the logic, it was in who had the keys.
OShield 🛡️@oshield_io

Summary of the @DriftProtocol Exploit thus far: 1) Someone on Drift multisig has updated the drift state account to change the admin here. solscan.io/tx/4BKBmAJn6Td… 2) This member on the multisig approved the change solscan.io/account/6UJbu9… 3) And the current admin and attacker is this account. solscan.io/account/H7PiGq… 4) The attacker used this key to initialize spot market vault for a CVT ( scam propped up token) with high oracle price here. solscan.io/tx/4a5962Rdqd9… 5) Deposits CVT and withdraws actual tokens using the cross-margin and swap functionality on Drift. 6) Program upgrades is happening to regain back the admin as per our latest analysis.

English
1
1
5
517
singsing retweetledi
ZachXBT
ZachXBT@zachxbt·
Update: $230M+ USDC bridged via CCTP from Solana to Ethereum across 100+ txns. 6 hours is how long Circle had to freeze stolen funds from the $280M+ Drift hack. Circle is a centralized stablecoin issuer headquartered in New York and the attack began around 12 pm ET. Why does our industry allow them to stay silent? @jerallaire @circle @usdc
ZachXBT tweet media
English
190
347
2.7K
372.4K
singsing retweetledi
Omer Goldberg
Omer Goldberg@omeragoldberg·
** Correction on key compromise ** A week ago, Drift moved to a new multisig, created by a signer from the old multisig. This signer did not add themselves to the new one. The exploiter also initiated the proposal in the old multisig to hand over admin control to this new wallet. Of the 5 signers on the new multisig, only 1 came from the previous setup; the other 4 were brand-new. The wallet was set with a 2/5 threshold and a 0-second timelock. ~Five hours ago, that sole carryover signer used the new multisig to propose changing Drift’s admin. One of the new signers co-signed a second later, instantly meeting the 2/5 threshold. With no timelock in place, the transaction was executed immediately. ** Note ** Some of the relevant Solana programs are not verified, which limits full analysis. We're continuing to dig into the onchain data and will publish a more thorough post-mortem covering the multisig migration, Solana DeFi contagion, and vault exposure in a follow-up.
Omer Goldberg@omeragoldberg

1/ Drift's admin key was compromised. $213M+ drained from @solana's largest DEX in under 10 seconds. Unfortunately, we've seen similar patterns before: - fake collateral market - a manipulated oracle - disabled circuit breakers Let's break it down 👇 written w/ Chaos AI

English
27
27
259
166.3K
singsing retweetledi
SolanaFloor
SolanaFloor@SolanaFloor·
🚨BREAKING: @Solana based perpetuals protocol @DriftProtocol exploited for over $200M, onchain data confirms.
SolanaFloor tweet media
English
102
114
851
385.5K
singsing retweetledi
Celo Indonesia
Celo Indonesia@CeloIndonesia·
Proof of Ship Season 2 udah live. @CeloDevs Buat yang lagi build MiniApp atau AI Agent di Celo, ini program buat kalian. $5K USDT/bulan buat top 50 projects. Daftar: bit.ly/celo-proof-of-…
Celo Developers ◘ 🦇🌳@CeloDevs

Proof of Ship is officially live! If you're building a Mini App or Agent on @Celo that solves a real problem for real people, it belongs here. @CeloPublicGoods is distributing a 5K USD₮ prize pool to the top 50 projects every month. Here is everything you need to know ↓

Indonesia
4
2
9
206
Celo Indonesia
Celo Indonesia@CeloIndonesia·
Apa itu @Celo? Celo adalah Ethereum Layer 2 yang dibangun untuk real-world adoption. Mobile-first, stablecoin-first, dan fokus di financial inclusion untuk emerging markets Beberapa hal yang bikin Celo beda: 1) Fee Abstraction User bisa bayar gas pakai stablecoin (USDT, USDC), ga harus punya native token dulu. Ini ngilangin barrier terbesar buat new users 2) Mobile-first Arsitektur Celo didesain buat smartphone. Kirim crypto cukup pakai nomor HP, Simple 3) Stablecoin ecosystem 25+ stablecoins native di Celo, termasuk USDT, USDC, dan local stablecoins buat berbagai negara. Weekly active USDT users: 5M+ 4) MiniPay Self-custodial stablecoin wallet dari Opera dengan 14M+ users di 66+ negara. 400M+ transaksi diproses. Ini distribution channel terbesar di Celo 5) Tech stack Celo jalan di OP Stack, secured by Ethereum. 1-second block time, sub-cent fees, dan ZK fault proofs buat enhanced security Celo sekarang jadi L2 #1 by daily active users di Ethereum ecosystem Mau build di Celo? Stay tuned, kita bakal share lebih banyak resources buat developer Indonesia 🇮🇩
Indonesia
1
1
7
1.7K
singsing
singsing@singgihTara·
mau ikut protes claude, masa iya 4x nge prompt limitnya abis anjir 😭😭
Indonesia
1
0
2
68
singsing retweetledi
Hirosi Ooguri
Hirosi Ooguri@PlanckScale·
"Shor’s algorithm is possible with as few as 10,000 reconfigurable atomic qubits" A neutral-atom architecture could support quantum computation at cryptographically relevant scales using a smaller number of qubits than was previously thought necessary. arxiv.org/abs/2603.28627
English
6
61
259
15.4K
DogPay
DogPay@DogPay_·
🇮🇩 If you’re in Indonesia and have some followers, please follow, retweet, and leave a comment—there are gifts for you.
English
1.1K
703
1.1K
71.6K
singsing
singsing@singgihTara·
@DogPay_ gm it’s me, got some followers, mostly web3 devs
English
1
0
1
148
singsing retweetledi
Feross
Feross@feross·
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
English
534
4.1K
16.3K
12M
yunus
yunus@0xyunss·
ini agent dlmm gua yang ngehasilin duit 20-100$ sehari. gua open source, gua kasih tau cara setupnya, simak aja videonya. meridian ini udah jalan 2 minggu, banyak juga temen temen yang udah profit dan atau masih struggle loss buat train agent mereka. ada repo githubnya juga. kalian bisa cek github dan tele channel untuk detail fiturnya. ini bukan ajakan finansial atau nfa. dan selalu kasi ilmu dulu ke diri kalian bagaimana agent ini bekerja. edge dari agent ini adalah gimana cara kalian ngasih lessons ke meridian. cheer to @mininghelium1 for help me improving this agent.
yunus@0xyunss

sebenernya gini mas, bikin agent itu gampang. tapi gua heran deh kenapa orang coding di openclaw. selama ini gua pake codex atau claude cli. dengan 10$ subscription gua udah bisa: - bikin beberapa website - built agent yang hasilin 20-100$ sehari - bikin tools buat trenching/dlmm - bikin sistem pantau kebakaran hutan (in progress) yang penting lu harus bisa ngarahin data yang mau lu ambil dari mana. misal : - tolong bikinin gua agent dlmm meteora otomatis. dia bakal bingung. contoh benar : - gua mau bikin agent dlmm meteora. flownya udah gua siapin kaya gini, lu bisa ambil data dari api ini buat nyari pool, ambil data dari api ini buat cek holder. dia bakal langsung terarah, jadi lu ngga harus bisa ngoding, lu harus paham flow agent lu mau gimana.

Indonesia
123
544
3.2K
256.2K
singsing
singsing@singgihTara·
@hwisesa23 Hard warning for DeFi. Back then, hacking took skill and time. Now you just need your daily coffee money to scan thousands of contracts...
English
1
0
1
57
Heinrich
Heinrich@hwisesa23·
It costs $1.22 to scan a smart contract for exploitable bugs using AI. Not $1,200. Not $12,000. One dollar and twenty two cents. Anthropic tested their AI agents against 2,849 live contracts with no known vulnerabilities. The agents found two zero-days and produced profitable exploits. Let me break this down.
Heinrich tweet media
English
5
2
10
1.1K