Whitehat

25 posts

Whitehat

Whitehat

@TokenLith

加入时间 Temmuz 2023
2 关注1 粉丝
Whitehat 已转推
Piyush Shukla 🇮🇳
Piyush Shukla 🇮🇳@PiyushShukla__·
@PrismaFi faced an $11.6M exploit, but white hat hackers returned the funds after negotiating a bounty through a rescue operation. Understanding the hack's root causes is crucial to prevent future incidents. Read more about the $11M hack breakdown techfund.jp/media/Prisma-F…
English
1
4
22
3.6K
Whitehat 已转推
Piyush Shukla 🇮🇳
Piyush Shukla 🇮🇳@PiyushShukla__·
Startup idea: Establish a CISO-as-a-Service company. With companies increasingly seeking to hire full-time security specialists, offering expert CISOs to their teams would definitely make this idea successful.
English
0
1
5
436
Whitehat 已转推
Piyush Shukla 🇮🇳
Piyush Shukla 🇮🇳@PiyushShukla__·
Here is a brief explanation of the recent $8.5 million #Woofi hack. Learn from it and avoid making the same mistake in your contracts
TECHFUND Inc.( 🇯🇵JAPAN 🇸🇬ASIA)@techfund_inc

#Security Alert: Understanding the $8.5 Million WOOFi Exploit On Mar 5th, WOOFi encountered a devastating flash loan attack on the Arbitrum network, resulting in loss of $8.5 million. Here's a breakdown of what happened & how you can prevent it : techfund.jp/media/WOOFi-Ha…

English
0
1
5
1.4K
Whitehat
Whitehat@TokenLith·
🫡
Piyush Shukla 🇮🇳@PiyushShukla__

A few hours ago, a @minerercx exploited a vulnerability resulting in a loss of $456k. The vulnerability lies in the `_update` function. If a user transfers tokens to themselves within the same transaction, there is indeed a potential for their balance to double. This scenario arises because the `_update` function utilizes cached balance values for the sender (`from`) and recipient (`to`). When a user transfers tokens to themselves, the balance update process might not accurately reflect the change. Here's how this scenario unfolds: 1. The `_update` function is called with `from` and `to` being the same address. 2. It retrieves the cached balance for that address before the transfer. 3. It subtracts the `value` from the cached balance for the sender (`from`) and adds the `value` to the cached balance for the recipient (`to`), which is the same address. 4. The balances are updated using the cached values, potentially resulting in a doubled balance for that address. The total fund loss for the miner is almost $456k. etherscan.io/tx/0x5cc93e9d5… is the breakdown of the transaction.

ART
0
0
0
185
Whitehat 已转推
Piyush Shukla 🇮🇳
Piyush Shukla 🇮🇳@PiyushShukla__·
In the recent Future Crime Summit 2024, I had the opportunity to meet some of the biggest minds of the Indian government, which was really insightful for me. I learned a lot from them. However, I noticed that many professors from institutes were also attending to explore new ideas to teach their students. I had great conversations with them, and they expressed interest in collaborating on blockchain initiatives wth us . The point is, we need these professors in all Indian institutes who are making efforts to guide their students about trending and future technologies #futurecrime2024
English
0
1
6
603
Whitehat 已转推
Piyush Shukla 🇮🇳
Piyush Shukla 🇮🇳@PiyushShukla__·
Cloud security is as crucial as the security of your smart contracts. Always prioritize securing both Web 2 and Web 3 components. Recently, Ukrainian hackers executed 1500 different brute force attacks to compromise a cloud server, resulting in the theft of millions in crypto
English
1
1
3
288
Whitehat 已转推
PrismBlocks🌈
PrismBlocks🌈@Prism_Blocks·
🚨 Security Breach Update 🚨: Concentric.fi on Arbitrum recently suffered a $1.7M hit in a cunning social engineering attack. Here's a breakdown: The attacker slyly altered the CONE-1 proxy contract, swapping it from ConeCamelotVault to their controlled contract. AdminMint() privileges were manipulated, putting 0x105f52fcC329cEF4CBe25BC946f8a3738414E4A1 in control. Result? A substantial minting of LP tokens. 🕵️‍♂️ Stay informed, fellow #DeFi enthusiasts! #ConcentricSecurity #ArbitrumIncident #CryptoAlert 🛑🔒#prismblocks #blockchainsecurity #Web3
English
2
3
5
145
Whitehat
Whitehat@TokenLith·
it is a biggest hack of 2024 ??
PrismBlocks🌈@Prism_Blocks

🚨 Security Alert 🚨 @GAMEEToken has experienced a security breach! Unauthorized deployer key access led to an attack using the recoverERC721s() function, bypassing $GMEE recovery protection. Approximately 600m $GMEE has been drained from the contract. 🔗 Attack transactions: 1️⃣ polygonscan.com/tx/0x70f7e0376… 2️⃣ polygonscan.com/tx/0x2340cfdec… ⚠️ Important: The $GMEE's _transferFrom() implementation skips the allowance check, allowing the attacker to use transferFrom() without pre-approval. Exercise caution with OpenZeppelin's ERC20.transferFrom() function. Stay vigilant and follow @GAMEEToken and @prism_blocks for updates on the ongoing investigation and steps being taken to secure the platform. join our telegram community -t.me/+kyzfNY_dRN9hN… #SecurityAlert #CryptoNews #GAMEEToken #BlockchainSecurity #prism_blocks

English
0
0
0
20
Whitehat 已转推
PrismBlocks🌈
PrismBlocks🌈@Prism_Blocks·
🚨 SECURITY ALERT 🚨 @samudaixyz has fallen victim to a significant security breach, resulting in the loss of $1.2M worth of ETH from both the founder's and multisig wallets. 🔍 Investigation is underway, and the community is urged to report any suspicious activity related to this incident. 💰 A 10% bounty has been announced for the safe return of the stolen funds. Your cooperation is vital in bringing justice to the affected party. 🔒 Stay vigilant and consider adopting prismblocks, the ultimate solution to eliminate the risk of crypto theft from enterprise wallets. #blockchainsecurity #CryptoSecurity #ETH #FailSafe #StaySafeCryptoCommunity #hack #exploit #prismblocks
PrismBlocks🌈 tweet media
English
1
3
5
144
Whitehat
Whitehat@TokenLith·
huge security breach
PrismBlocks🌈@Prism_Blocks

🚨 SECURITY ALERT 🚨 @samudaixyz has fallen victim to a significant security breach, resulting in the loss of $1.2M worth of ETH from both the founder's and multisig wallets. 🔍 Investigation is underway, and the community is urged to report any suspicious activity related to this incident. 💰 A 10% bounty has been announced for the safe return of the stolen funds. Your cooperation is vital in bringing justice to the affected party. 🔒 Stay vigilant and consider adopting FailSafe, the ultimate solution to eliminate the risk of crypto theft from enterprise wallets. #blockchainsecurity #CryptoSecurity #ETH #FailSafe #StaySafeCryptoCommunity #hack #exploit #prismblocks

English
0
0
0
15
Whitehat 已转推
PrismBlocks🌈
PrismBlocks🌈@Prism_Blocks·
🚨 #SocketProtocol Update 🚨 @SocketDotTech fell prey to a call injection attack, resulting in a staggering loss of $3.3M. The breach's epicenter lies in an insecure call within the performAction function. Overlooking scenarios with 0 WETH transfers allowed the attacker to specify alternative functions, bypassing the balance check. 🕵️‍♂️ The attacker's meticulous calldata manipulation executed transferfrom() on arbitrary tokens, transferring funds approved by other users to their address. 📉 Misappropriated funds currently held at: 0x50DF5a2217588772471B84aDBbe4194A2Ed39066. 📢 Join Our Community on Telegram! Be part of the excitement! Join our Telegram channel for amazing updates, discussions, and exclusive insights. Click here to join: t.me/+kyzfNY_dRN9hN… #CyberSecurity #blockchainsecurity #prismblocks #hack #exploit
PrismBlocks🌈 tweet media
English
3
3
5
1.2K