CEO & co-founder @therealgregoai | host of @bountyhunt3rz podcast | top ranked whitehat on @immunefi immunefi.com/profile/riptide

LIFE ... on the blockchain
riptide retweeted
yBorg applications close tonight! We've got a pretty stacked lineup for speaker workshops
Replying to @yAuditDAO
Details: - We'll be building harnesses and ai tooling which will be used on live audits - The program is 100% free - Kicks off next week on September 28 - Lasts for 4 weeks Here's the application: forms.gle/K4EnfzPUcToFxN8k8
6
8
40
3,317
"How would a human even find this?" Justus Hanna (@0xriptide) on the $250K bug his AI caught: it chained multiple vulnerability classes with an edge-case timing exploit. The probability of a human reaching that same conclusion? Very low. 🎧 CypherTalk: podbean.com/ep/pb-e9u3w-1b5f…
1
3
221
riptide retweeted
We will be at @kbwofficial with @getaugustas representing @therealgregoAI! See you in Seoul 🇰🇷
Made with AI
2
12
527
Thank you for having me on @beyer_st
New @cyphertalkmedia episode: our co-founder @beyer_st sits down with @0xriptide of @therealgregoAI. Chaining vulnerabilities with AI, the $27.7M exploit it caught, and what's left for the human auditor.
18
1,404
The convo, we've all been having "Crypto was made for AI Agents" ⏯️piped.video/6rT4PpcCa1k with @milan_dereede from @NanoGPTcom, @0xriptide CEO @therealgregoAI , Donald Founder @glossifi, Devon Marten, Co Founder @blocksight_ai and moderated by @TheDesertLynx Satoshi Stage, Common S3nse Amsterdam
6
16
600
If you think AI security tools are just cheap scanners that dump 20 pages of false positives, this conversation is worth listening to. This week’s Security Voices features @flack00n, Head of Bugs at @therealgregoAI . From @bountyhunt3rz with @0xriptide. What I found interesting wasn’t just the $500K+ in bounties or the $27.7M they helped save. It was how they think about depth, verification, and why they still don’t trust AI 100%. Some thoughts from the conversation 👇
5
5
43
1,885
riptide retweeted
Finding bugs that humans miss ... while staying extremely humble
An AI security agent now ranks #17 on the Immunefi leaderboard. In 2026 alone, it has found 3 valid Critical vulnerabilities and 5 Highs, earning more than $197,000 in bounties. The AI security agent race is clearly not slowing down. If you’re building an AI security agent and have been hunting on Immunefi, DM us. We’d love to see what you’re working on, support your training with our Studio Review product, and help amplify your work. Congrats, @therealgregoAI! 🤖
2
12
783
riptide retweeted
If protocols actually consider taking hundreds of millions in user funds then returning 85% of it as legit and “whitehat” Then they should be honest and upfront about it. State it clearly in their public comms, docs, the code itself. From launch. Not after the hack happened. Announce an escrow wallet you can move funds at risk to, and expect to receive 15% of the amount. Or even just move 85% and keep the 15% already. Make it clear to the world this is authorized use of the software and therefore cannot be prosecuted. Sign documents stating it clearly. And let users know it and decide if they are ok with it. Otherwise you’re just subsidizing lack of ethics and exploiting people who work with you in good faith. And that in my opinion makes you worse than a black hat.
6
1
64
2,236
Again it happens To what end?
> found a vulnerability with ~$9–15m immediately drainable > got duplicated by a 6+ week-old report > thought "wtf, are they reckless?" > original reporter hadn't found my permissionless (and imho beautiful) exploitation path > they mitigated my trick right after my report got triaged Now I get $0 and the original reporter likely gets $10k at best. Or even a "won't fix", since last I checked they had only mitigated my trick. Now laugh. And that's one of the reasons bounties are incidental for me: I get curious about a project, find something, send it straight to security@ (or equivalent), and move on. I'm lucky to be able to do this for fun rather than need.
4
1
56
4,472
The illusion of invulnerability in crypto: Founders have high self-esteem and high optimism which conflicts with properly preparing for and dealing with negative events The rare founder who has been through a hack before is usually the only exception How many signs to you need to see before you prioritize security? Do you think it won’t happen to you? You, as a founder, are entrusted with investor capital to watch the gates and yet, time after time the same story repeats itself Do better … and DM for audits
13
2
79
2,866
Shocked seeing incentives misaligned yet again $320M or potential $10k w negotiation + KYC
No, Liquid Network / Blockstream did not run a public security bug bounty program. Elements (the software powering Liquid) and related projects only had a standard responsible disclosure policy: report privately via PGP-encrypted email to securityblockstream.com. No rewards or formal bounty platform (Immunefi, HackerOne, etc.) were offered for vulnerabilities. They occasionally posted development bounties for features (e.g. wallet kits), but nothing covering protocol or consensus bugs.
10
5
137
9,821
Treat your whitehats better than your blackhats
13
36
218
8,743
Catch you in Amsterdam for @CryptoCanal anon
3
1
20
1,352
You may be surprised how often we find bugs that allow an attacker to halt your favorite chain Latent bugs exist in almost all protocols with risks accepted given the threat lies dormant due to current market conditions If you do not have a security partner and you operate in this ecosystem with significant capital you are simply taking on additional risk you cannot quantify
8
3
93
5,087
riptide retweeted
This is my Base Case
3
11
230
8,038
In the near future you will be able to drop a pdf of a great book you like in and get an HD full length feature film in a few hours
7
50
2,455
gm if you're in AI, pivot to crypto
4
3
53
2,162
riptide retweeted
An AI just found a critical bug worth $70,000. That brings its 2026 earnings past $187k. Pledge $IMU behind @therealgregoAI and you both earn when it finds the next one: immunefi.com/pledge/gregoai/
12
10
229
16,056