Diego

39 posts

Diego banner
Diego

Diego

@ciphermalware

Blockchain

Entrou em Eylül 2024
468 Seguindo59 Seguidores
Diego
Diego@ciphermalware·
@DoD4uFN @Certora Congrats!! Perhaps the NK government hires you as an exploiter...😜
English
1
0
1
57
Diego
Diego@ciphermalware·
@MoveMav This is gold, keep it up!!
English
1
0
1
19
Diego retweetou
Cyfrin CodeHawks
Cyfrin CodeHawks@CodeHawks·
Awards have been announced for First Flight #53: RebateFi Hook 🤝 Top 5: 🥇ciphermalware - 344 XP 🥈wojack0x0 - 332.8 XP 🥉x0jgsleepy - 320 XP 🏅chain__warden - 302 XP 🏅brocrypt - 264 XP A HUGE thank you to @0xlinguin for their contribution of this repo 🙏 (1/2)
English
2
3
13
1.4K
Diego
Diego@ciphermalware·
@movebrah The ability to focus for long, long hours
English
1
0
1
29
MoveJay
MoveJay@movebrah·
What's one skill every security researcher should master besides finding vulnerabilities?
English
8
1
15
1.5K
Arsen
Arsen@arsen_bt·
You can become successful auditor If you are ready to work hard. That's why I’m sharing my Web3 Security Book: • Where to focus. • How to learn right way. • How to earn and progress. Follow & comment “Security” and I’ll DM it to you for free!
Arsen tweet media
English
1.3K
82
1.5K
149.7K
Cryptor
Cryptor@Cryptor256·
My first ZK high impact bug. Honestly, this contest was insanely hard, and I am happy to have made it on the leaderboard. With that, I have now breached 50k in total earnings from public contests. Thanks @code4rena @SuccinctLabs for the opportunity
Cryptor tweet media
English
2
0
7
260
Diego
Diego@ciphermalware·
@movebrah FACTS. Really love your Move insights!! Great job.
English
0
0
1
23
MoveJay
MoveJay@movebrah·
Things Everyone Gets Wrong About Move Move’s safety ≠ immunity from logic bugs. Move was built to stop structural failure. Every resource is linear. Every reference is tracked. Every move must resolve by the end of a function. That’s why you can’t double-spend, drop state, or reenter. The VM enforces it before code ever runs. But none of that says your logic is correct. You can mint twice without breaking linearity. You can bypass an access check without violating borrow rules. You can drain a pool while staying perfectly type-safe. The verifier’s job is to protect the machine, not the protocol. It guarantees the bytecode won’t corrupt global state, not that your math balances, or your supply stays constant. Even formal verification doesn’t fix that automatically. The Prover only checks what you write: > ensures > requires > invariant If you never describe system behavior in specs, it never questions it. Move gives you memory safety, type safety, and predictable state. But correctness is still human. The language keeps the chain safe. It’s your job to keep the protocol safe.
English
2
7
33
3.3K
Diego
Diego@ciphermalware·
Impact: "Direct Theft of Funds", specializing in Move is paying off @HackenProof
Diego tweet media
English
0
0
2
141
Konquest .
Konquest .@totdking·
This was the result of a team I participated in for the first flight contest on @CodeHawks I only submitted a low bug and it was counted as valid. Not a good evm audit guy, but willing to get more and hopefully bigger wins. Even though it was not incentivised
Konquest . tweet media
English
6
2
13
210
0xCharlesDCheerful
0xCharlesDCheerful@carlos__alegre·
@m4rio_eth Do you think competitive platforms do this to one another to fuck competitors up??
English
3
0
13
471
m4rio
m4rio@m4rio_eth·
Stop spamming contests/bug bounties with llm generated issues Thank you!
English
3
10
91
4.2K
Diego
Diego@ciphermalware·
@blckhv "If you want to be successful as bad as you want to breath then you will be successful"
English
0
0
2
139
Blckhv
Blckhv@blckhv·
If you aren't obsessed with what you're doing, you'll never be successful. 😉 4 years ago, still inexperienced I was at a tough web2 interview, but back then all I was doing was coding. The next day, HR called me to tell me how impressed they were and the "spark" in my eyes, offering more than I asked. Web3 security fuels that same fire in me now. 🔥
English
3
1
47
1.5K
Diego
Diego@ciphermalware·
@junorouse @pashov I would not focus on the money, I would focus on the massive oportunity for growth and learning, which is definitely way more significant.
English
0
0
0
75
Juno
Juno@junorouse·
@pashov $200 is typo?
English
3
0
6
3.5K
pashov
pashov@pashov·
The 2025 Pashov Audit Group security researcher internship program is now official. This is not for 1st day beginners - real projects, real audits, pure practice. Like/RT this post, then apply in the form in first comment for a chance to join us🫡
pashov tweet media
English
88
230
777
116K