@BlockSecTeam

Smart Contract Audit | Security Monitoring | AML/CFT (KYA/KYT) | Crypto Investigation | @Phalcon_xyz @MetaSleuth @MetaDockTeam 👉TG: https://nitter.cf/t.co/owokTLanv5

Joined December 2020
If your crypto gets stolen today, you usually have two options: pay a professional firm thousands of dollars, assuming they'll even take a small case, or just give up. We built Trace AI to give you a third. It runs on the same tracing tech behind @MetaSleuth, which our team has used on on-chain cases worth over a billion dollars. 8 chains, 10 languages, and it starts at $5. youtube.com/watch?v=SdcAEE2c…
1
1
2
11
16,911
🚨 ALERT! We have observed a series of attack transactions targeting contracts on #Ethereum, including those associated with @Fetch_ai, @nunet_global, and @SingularityNET. Total losses exceed $2.1 million. The incidents appear to stem from leaked private keys belonging to two privileged accounts (e.g., the deployer account). By controlling these accounts, the attacker was able to execute authorized privileged operations and drain valuable assets through direct transfers or token minting. The attacker appears to be actively probing potential victims, with @SingularityNET’s AGIX token being the latest target. Stay vigilant! Compromised accounts: etherscan.io/address/0x1572F… etherscan.io/address/0x863F1…
1
3
18
4,767
Attackers rarely break the chain. They take over a channel you already trust — a real account, a real conversation, a real history. BlockSec co-founder @yajinzhou and the Gate security team on how account takeovers, phishing and impersonation actually work, and what separation of identity, devices and permissions buys you.
🚨 安全小测试:合作伙伴突然发来新收款地址,还附上盖章确认函——你转不转? ⚠️ 先别急,听听专家怎么说!? 首期 #大门安全课,Gate 安全团队携手 @BlockSecTeam,带你拆穿那些“专攻人性、不攻代码”的套路 👇
2
3
2,548
.@nostrafinance was reportedly hit by a price-manipulation attack: approximately $3.5M was borrowed against NSTR collateral, though the final loss is not yet confirmed. 1. The attacker first created an NSTR/SolvBTC pool and added 1.5 SolvBTC as one-sided liquidity away from the active price: voyager.online/tx/0x741af6ef…. This increased the pool liquidity reported by GeckoTerminal, apparently influencing which pool supplied its Pragma NSTR price. 2. The attacker then added very little liquidity between the normal price and a much higher price; a small buy pushed the quote sharply upward: starkscan.co/tx/0x772e73613f…. At that point, Pragma had two contributing NSTR/USD prices: a normal AVNU quote of ~$0.00596118 (starkscan.co/tx/0x1d33ab3d3f…) and a manipulated GeckoTerminal quote of ~$99.02439975 (starkscan.co/tx/0x6bc9b41bce…). Although the documentation describes a median of three sources, the second listed source did not provide a price in this instance. With only two available values, the median was their arithmetic average, approximately $49.51518, consistent with the borrow trace. 3. The attacker used another account holding NSTR collateral to borrow ETH, STRK, USDC, USDT, WBTC and DAIv1 at the inflated valuation: starkscan.co/v1/SN_MAIN/tx/0…
On September 17, a manipulated NSTR oracle price enabled one account to borrow approximately $3.5 million worth of ETH, STRK, USDC, USDT, WBTC and DAIv1 against NSTR collateral in the Nostra money market on Starknet. The Nostra money market is paused: lending, borrowing, withdrawals and liquidations are currently unavailable. We are reconciling the impact on each asset and tracing the funds. The final loss and potential recoveries are not yet known. We are working with relevant parties on recovery and will share verified updates, including a detailed post-mortem. Beware of impersonators. Nostra will never DM you or ask you to connect a wallet as part of recovery. Ongoing updates will be posted in our Discord.
3
5
1
42
8,804
🗓 Weekly Web3 Security Roundup | Sep 07 - Sep 13 🚨 Spotlight on 2 notable incidents | ~$320M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
2
10
3,489
ALERT! Our system detected an attack that drained ~$7.8M from a Gnosis Safe wallet on Ethereum (0x40E93a52F6Af9fCD3b476aeDADD7FeABD9f7AbA8). The root cause was a flawed authorization check in the executor contract (0x4f0055926c839D1d960a82CBF84E2eE933958ebC). Setting the supplied contract parameter to address(this) passed validation, allowing attacker-controlled calls to execute from the trusted executor through an enabled Safe module. The exploit moved ~2,900 aEthrsETH into a Uniswap V4 pool paired with the worthless “Permissionless Attacker Token” (PAT), leaving the Safe with a worthless LP NFT. The original attack transaction was front-run by the MEV bot yoink, which captured ~2,882 rsETH (~$7.8M) and routed it to 0xC70f00CD7E461686b04B0E912E309becA8b80ea0. Original attack TX: app.blocksec.com/phalcon/exp… Front-run TX: app.blocksec.com/phalcon/exp…
19
54
18
344
52,353
🗓 Weekly Web3 Security Roundup | Aug 31 - Sep 06 🚨 Spotlight on 4 notable incidents | ~$9.4M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
1
3
10
6,194
BlockSec's blockchain penetration testing is now live, written up as a series: What it covers, where its boundaries sit, how it is authorized, and which attack surfaces it has to reach. First four parts are live, more to come 🔜 Part 1: Why institutions need it: blocksec.com/blog/why-crypto… Part 2: What it is, and its boundaries: blocksec.com/blog/what-is-bl… Part 3: Authorization and production safety: blocksec.com/blog/blockchain… Part 4: The attack surfaces it covers: blocksec.com/blog/web3-attac…
A cloud and web pentest stops where the money starts moving. Signing → approval → fund logic → on-chain transactions — we test that chain adversarially, in an agreed scope, with evidence for every confirmed path. Blockchain Penetration Testing, now live at BlockSec! Start here👇 blocksec.com/blockchain-pene…
2
3
10
4,005
A cloud and web pentest stops where the money starts moving. Signing → approval → fund logic → on-chain transactions — we test that chain adversarially, in an agreed scope, with evidence for every confirmed path. Blockchain Penetration Testing, now live at BlockSec! Start here👇 blocksec.com/blockchain-pene…
1
1
4
14,506
BlockSec retweeted
Eleven security teams, one place for BNB Chain builders to find the support they need. From contract audits to real-time monitoring and incident response, here’s what each team on the AvengerDAO marketplace brings to the table 🧵👇
40
15
6
137
78,354
Builders on @BNBCHAIN can now book BlockSec's security services through the AvengerDAO marketplace. 🔍 Audits — coverage spans the full stack: smart contracts, DeFi protocols, L1s, L2s and rollups, wallets, bridges, nodes and RPC infrastructure. Every audit evaluates implementation security, business logic and, where applicable, economic design, backed by our own static analyzer and LLM-assisted detection system. Alongside audits, we run dedicated blockchain penetration testing and security testing. 📡 Real-time monitoring — Phalcon keeps watching your protocol once it's live, so risk doesn't sit unnoticed between audits. Our findings go beyond severity ratings. Each issue comes with clear, actionable remediation, and every report is built for real-world use: mainnet launches, public disclosures, exchange listing reviews and compliance processes. Find us on the AvengerDAO marketplace 👇 avengerdao.org/marketplace
1
1
4
4,348
BlockSec retweeted
Shipping on BNB Chain? Security support just got easier to find. The AvengerDAO marketplace brings together 11 security teams covering audits, threat monitoring, risk scanning and incident response: @HashDit @CertiK @zokyo_io @salus_sec @Beosin_com @GoPlusSecurity @BlockSecTeam @pessimistic_io @sherlockdefi @getfailsafe @FirepanHQ Explore the marketplace: avengerdao.org/marketplace Learn how the AvengerDAO marketplace works in our blog 👇 bnbchain.org/en/blog/avenger…
34
24
5
154
52,242
1/x @Liquid_BTC Liquid Network appears to have experienced a consensus divergence at block 4,050,336. Approximately 13 minutes later, a 3,996.01834922 L-BTC peg-out was recorded on the branch that continued beyond the divergent block. Our preliminary analysis, informed by the findings shared by @stutxo, suggests that a potential issue in the rangeproof-verification cache mechanism in certain Elements Core builds may have contributed to the incident: nitter.cf/stutxo/status/20967245… Previously, the cache key for successful rangeproof verifications was derived only from the rangeproof and value commitment. It did not include the asset commitment or scriptPubKey, although both are inputs to full verification. This could allow different verification contexts to map to the same cache entry. After a valid context populated the cache, a modified context might hit that entry and return true without undergoing full verification. A recent patch adds the missing inputs to the cache key: github.com/ElementsProject/e… If reachable during consensus validation, this behavior could cause nodes with different cache states or implementations to reach different conclusions about the same transaction.
We are aware of a security incident on @Liquid_BTC. Purported white-hat hackers have withdrawn ~4,000 BTC (~$320 million) from the Liquid Federation wallet. The @Blockstream team is working on contacting them on-chain with a signed message. What we know so far is that the funds were withdrawn via the SideSwap PAK (Peg-out Authorization Key), but that key was not compromised, nor were any others. Exchanges have been notified and have already paused (or will pause) LBTC deposits and withdrawals. Other Liquid assets such as USDT, DePix, and RWAs are unaffected by this security incident. Bridge nodes have been temporarily disabled, so no new transactions can be submitted to the network. Effectively, the Liquid sidechain is paused until this issue is resolved. Liquid wallets will be impacted, and we're sorry for any inconvenience. Federation members are actively working on resolving this so we can restore normal network activity. You can monitor the situation via @mempool's liquid.network site below: mempool.space/address/bc1qdl…
2
1
1
11
7,935
🗓 Weekly Web3 Security Roundup | Aug 24 - Aug 30 🚨 Spotlight on 5 notable incidents | ~$23M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
4
11
7,254
🗓 Weekly Web3 Security Roundup | Aug 17 - Aug 23 🚨 Spotlight on 2 notable incidents | ~$10.26M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
2
3
8,799
It is alarming that @cosmoslabs_io Cosmos EVM v0.7.2 [1] appears to have publicly, yet quietly, included fixes for critical vulnerabilities while at least some affected chains may not have been promptly notified, according to @KiiChainio’s official post-mortem. Only after multiple chains had been exploited did Cosmos Labs publicly acknowledge the incident [2], advise chains already in contact with them to halt, and ask other Cosmos EVM teams to reach out. [1] github.com/cosmos/evm/releas… [2] nitter.cf/cosmoslabs_io/status/2…
2
3
1
32
8,413
Glad to work with @dgrid_ai to strengthen their security posture. Thanks for the trust and collaboration! ✊
✅Audit Complete DGrid’s $DGAI Staking Contracts have been audited by @BlockSecTeam. From staking and rewards to node operations, delegation, and the LLM pool, every critical path has been reviewed. Security first. Building on #BNBChain. 📄 Report: github.com/blocksecteam/audi…
1
3
8
6,825
🗓 Weekly Web3 Security Roundup | Aug 10 - Aug 16 🚨 Spotlight on 5 notable incidents | ~$47M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
3
9
7,666
Glad to work with @Hertzflow_xyz to strengthen their security posture. Thanks for the trust and collaboration! ✊
📢 Security Audit Update HertzFlow's Perp contracts have been audited by @BlockSecTeam , covering trading, liquidation, fee and asset modules. Your position deserves more than a promise. Safety first. HertzFlow keeps building on #BNB Chain. 📃:github.com/blocksecteam/audi…
2
1
4
5,445