ONLY HIM

17.1K posts

ONLY HIM banner
ONLY HIM

ONLY HIM

@u_godfvr

Blockchain Dev | math lover | 1% better everyday

OnChain Katılım Ekim 2023
975 Takip Edilen351 Takipçiler
Zurab Anchabadze
Zurab Anchabadze@anchabadze·
Exactly one year ago, I started my journey toward a Web3 Security Researcher position at a company. At that time, I had already learned Solidity and was just beginning to participate in public contests. Since then, I’ve found dozens of bugs, earned thousands of dollars, accumulated around 2000 hours of auditing and skill development. My professional level, my understanding of web3 security, and attack vectors have grown tremendously over this year. I’ve developed my own auditing style and methodology. I actively use AI, which helps a lot in my auditing process. I haven’t reached my goal yet and my journey continues. Yes, it’s not the best time to land a job as an SR right now - bear market, fewer contests, intense competition, AI audits - but I believe in myself. I know I don’t want to do anything else, and I will keep moving toward my goal. Even for another year, if needed. Consistency is the key There is no plan B Success is inevitable #RoadToWeb3SecurityJobChallenge
Zurab Anchabadze@anchabadze

1 YEAR! 🎯 Day 365 of my #RoadToWeb3SecurityJobChallenge 🕰️ Hours worked: 5 hours 30 min 🔎 Focus: Auditing 🛠️ Practical work: - Started auditing @MonetrixFinance on @code4rena - Read and studied several reports from past audit contest - Studied different vulnerabilities using Anki cards

English
20
3
148
3.9K
ONLY HIM retweetledi
0xasen
0xasen@asen_sec·
Not every new auditor who'll matter in three years is visible today. Some are quiet right now, putting in reps nobody sees. Keep going. I'll notice.
English
8
3
115
2.1K
ONLY HIM
ONLY HIM@u_godfvr·
@theMurtez @Kunagnes1 @Heyyesama At some point, Shiki was equal to Roger. And also it could be that they took down Shiki because they didn’t want to go extreme diff. Garp alone could have taken him
English
1
0
0
21
Luffy 🐐
Luffy 🐐@Heyyesama·
I have a question? How come Roger was ranked the most wanted man in the world, meanwhile whitebeard could literally split the world in half??
Luffy 🐐 tweet media
English
162
11
1.2K
68.8K
ONLY HIM retweetledi
Brian Armstrong
Brian Armstrong@brian_armstrong·
People are capable of far more than they think, on far shorter timelines. Problems expand to fill the time you give them.
English
317
1.4K
12.4K
412.5K
Interesting things
Interesting things@awkwardgoogle·
A surgeon showed that he could sew up a balloon without making it burst
English
556
2.6K
52K
10.8M
Ehsan
Ehsan@Ehsan1579·
Just came across this, got tagged a while back but somehow only saw it now. Beautifully written man, and honestly it hit hard because it felt like I could’ve written half of it myself, especially the part about the beginning. Your journey mirrors mine in ways that are almost eerie. My first report was also a Low for $2,000, and I remember that exact feeling, staring at the “Confirmed” status like it wasn’t real. Looking back, I think that first payout is what flipped a switch in me. It stopped being about proving I could do it and became about maximizing every opportunity, squeezing every drop out of every target, refusing to leave anything on the table, finding new ways that others never thought of or considered to have a higher advantage to dominate. And yeah, you never really catch that first high again, you get way bigger bounties and still won’t feel it as much, but chasing it is half the fun. Congrats on everything you’ve built, and thanks for putting this into words. It’s great to see you at the top.
GrumpyLord@GrumpyLord36678

Coming back to the “What’s the biggest thing bug bounties gave you?” Question, Money aside, BB taught me the art of not giving up and the art of not giving a fuck. Hunting for bugs has been a spiritual journey more than anything else... If you are in the beginning of your journey, you probably see other people making it big. Making big dollars like @Ehsan1579. You sit there and ask yourself just “How”. What do they have that I don’t? As rejections roll out and your reports get closed one after the other one, all you ever feel like is giving up. You might feel defeated, unsatisfied, all the small chatter in your head is telling you to give up… But your EGO won’t let you. EGO isn’t all bad, as society likes to condemn it. I’d go as far as to say that ego is the key ingredient in an industry as cut-throat as BB. In moments like these, your family, your friends and whoever you consider close will try to tell you that maybe it’s just not for you. Solution? -> cut everyone. Don’t let anyone get to you and put your head down, analyze what is going wrong, how to get better and try new strategies. That’s the only difference between the ones who make it and the ones who don’t. Do not take “no” for an answer. If a project closes your report but you know you are right, make sure you are right and then ask for mediation with all the facts you have. You’d be surprised how many projects close valid in-scope issues. Same thing applies if they try to reduce the severity or pay you “peanuts” for what it’s worth. I’ve been working in DEFI for years now, learning the ropes, building projects. All of them were a fluke until I tried Immunefi. I worked every waking minute for 8 months straight without any payout. Then… in September I got my first bug confirmed. A “Low” for $2000. I was ecstatic, I was excited. For literally 3 days, I was listening to music just staring and the “Confirmed” ticket. You see bug bounty is a bit like the casino, the difference is instead of betting money, you bet time (sometimes it does cost money too) and the payouts hit like a truck and you never quite expect it fully. It’s like a drug. And like a drug, you want more of it and you soon become accustomed to a certain level (“the tolerance”). They say you always chase the first high and it’s very true for bug bounty as well. The months following I was finally averaging at least 1 paid report per month. That was until January. I’ll never forget it, I had 9 confirmed reports in a row. The “High” hit soooo strongly. But with every high comes a low. Doubts cripple in, you start rationalizing it. You tell yourself that “I just got lucky”. The bug Immunefi posted on their page was from January. This cycle repeats endlessly. Turns out that February was an even better month for me. The thrill of the unknown and the unexpected is what makes it fun. I do not think I would be doing this if you took that out of the picture. It was a journey, a very difficult one I’d might add. But in the end, it was worth it. It built me into a stronger more resilient person. It thought me patience. Reports being closed hurt. Probably one of the worst types of rejection out there. But at some point in time you get used to it and have to learn how to detach yourself from the emotions and trust the process. It’s a numbers game after all. I am waiting for the leaderboard to update now (long due)! I’m curious to see if I finally made it into the top 100 of whitehats of all times. (Currently sitting at $175k in earnings from 22 reports) It’s all just a matter of time after all (;

English
4
9
219
11.4K
ONLY HIM
ONLY HIM@u_godfvr·
@mwas_erastus @ChampionsLeague Bellingham won POTY in bundesliga while musiala was there and his team won the Bundesliga. Bellingham >>>> Musiala all day
English
0
0
0
26
UTDMwas
UTDMwas@mwas_erastus·
@ChampionsLeague I am a Madrid Fan but I would stand and defend that Musiala is Better than Jude Bellingham
English
3
4
48
1.3K
playboi.eth
playboi.eth@adeolRxxxx·
I am happy to say i topped 6 out of 500+ participants in the Move contest on @sherlockdefi > I didn’t touch the code once. > I built an algorithm from absolute scratch. > It found 4 out of the 6 issues that made the top 6. > I never opened the source > I and @Pelz_Dev only wrote the reports and submitted the findings. > I’ve been building this in silence. No clout. No noise. > Because I don’t talk about shit I can’t prove. > This isn’t here to replace auditors. > It’s here to show the beauty of hacking live contracts on-chain in real time. No lowballing. No shortcuts. Just straight, undeniable proof of work, exactly how black hats are already using AI. > I built this because I’ve been cheated on, played, and ignored too many times. It runs in 3 phases: 1. Contests: This was my backtesting ground. 2. Bug bounties: where I show real results. 3. Live chains: Instances deployed on mainnet, auto-targeting protocols that push unaudited commits straight to chain. Currently at 50% complete. still building and implementing. One of its features is that when it hits a protocol with closed-source code on-chain, it automatically decompiles the bytecode back into clean, human-readable source, then throws its entire knowledge graph and reasoning engine at it. It systematically breaks down every layer until the protocol is fully reverse-engineered and every vulnerability is exposed. This is just the beginning.
playboi.eth tweet media
English
49
16
257
17.6K
tanjiro777
tanjiro777@tanjiro7777·
@sigmarshanks the final villain they say btw already bleeding in here and there is still akainu blackbeard shamrock waiting wait even gorosei can heal up but how tf imu struggling here XDDDD
English
2
0
1
2.7K
Fabrizio Romano
Fabrizio Romano@FabrizioRomano·
🚨👕 Erling Haaland’s shirt after another battle with Gabriel Magalhães. 😁
Fabrizio Romano tweet media
English
1.4K
3.6K
55.1K
1.2M
Artem Chystiakov
Artem Chystiakov@Arvolear·
Proposing to rename smart contracts to dumb contracts.
English
4
3
56
3.4K
ONLY HIM
ONLY HIM@u_godfvr·
BAD news for hackers and vulnerabilities alike I’ve decided to be a smart contract security researcher GM
English
1
0
2
60