Smart Contract Audit | Security Monitoring | AML/CFT (KYA/KYT) | Crypto Investigation | @Phalcon_xyz @MetaSleuth @MetaDockTeam 👉TG: t.me/BlockSecTeam

Filter
Exclude
Time range
-
Minimum likes
BlockSec retweeted
.@payy_link was reportedly exploited, with estimated losses of $1.93M. Interestingly, the verifyRollup traces show several burn operations executed successfully with all-zero burn_hash values. How these zero hashes passed verification remains unclear; possible causes include a circuit flaw or a compromise of privileged infrastructure. The team has not yet responded publicly. Attack TX1: app.blocksec.com/phalcon/exp… Attack TX2: app.blocksec.com/phalcon/exp…
2
35
6,898
BlockSec retweeted
🗓 Weekly Web3 Security Roundup | Sep 14 - Sep 20 🚨 Spotlight on 2 notable incidents | ~$11.3M lost this week Featuring a vulnerability breakdown and in-depth analysis of selected key cases👇 blocksec.com/blog/web3-secur…
3
5
2,923
BlockSec's blockchain penetration testing is now live, written up as a series: What it covers, where its boundaries sit, how it is authorized, and which attack surfaces it has to reach. First four parts are live, more to come 🔜 Part 1: Why institutions need it: blocksec.com/blog/why-crypto… Part 2: What it is, and its boundaries: blocksec.com/blog/what-is-bl… Part 3: Authorization and production safety: blocksec.com/blog/blockchain… Part 4: The attack surfaces it covers: blocksec.com/blog/web3-attac…
A cloud and web pentest stops where the money starts moving. Signing → approval → fund logic → on-chain transactions — we test that chain adversarially, in an agreed scope, with evidence for every confirmed path. Blockchain Penetration Testing, now live at BlockSec! Start here👇 blocksec.com/blockchain-pene…
2
4
11
4,952
Builders on @BNBCHAIN can now book BlockSec's security services through the AvengerDAO marketplace. 🔍 Audits — coverage spans the full stack: smart contracts, DeFi protocols, L1s, L2s and rollups, wallets, bridges, nodes and RPC infrastructure. Every audit evaluates implementation security, business logic and, where applicable, economic design, backed by our own static analyzer and LLM-assisted detection system. Alongside audits, we run dedicated blockchain penetration testing and security testing. 📡 Real-time monitoring — Phalcon keeps watching your protocol once it's live, so risk doesn't sit unnoticed between audits. Our findings go beyond severity ratings. Each issue comes with clear, actionable remediation, and every report is built for real-world use: mainnet launches, public disclosures, exchange listing reviews and compliance processes. Find us on the AvengerDAO marketplace 👇 avengerdao.org/marketplace
1
4
5,200
Glad to work with @dgrid_ai to strengthen their security posture. Thanks for the trust and collaboration! ✊
✅Audit Complete DGrid’s $DGAI Staking Contracts have been audited by @BlockSecTeam. From staking and rewards to node operations, delegation, and the LLM pool, every critical path has been reviewed. Security first. Building on #BNBChain. 📄 Report: github.com/blocksecteam/audi…
1
2
7
7,408
Glad to work with @Hertzflow_xyz to strengthen their security posture. Thanks for the trust and collaboration! ✊
📢 Security Audit Update HertzFlow's Perp contracts have been audited by @BlockSecTeam , covering trading, liquidation, fee and asset modules. Your position deserves more than a promise. Safety first. HertzFlow keeps building on #BNB Chain. 📃:github.com/blocksecteam/audi…
2
1
4
5,479
Glad to support @allscaleio in strengthening their security posture. Thanks for the trust and collaboration! ✊
Security should be verifiable, not assumed. AllScale’s EIP-7702 smart contracts have completed an independent security audit conducted by @BlockSecTeam. The signed report is now public, including the audit scope, findings, and remediation status.
1
3
17
7,757
Take a trial now: blocksec.com/trace-ai
If your crypto gets stolen today, you usually have two options: pay a professional firm thousands of dollars, assuming they'll even take a small case, or just give up. We built Trace AI to give you a third. It runs on the same tracing tech behind @MetaSleuth, which our team has used on on-chain cases worth over a billion dollars. 8 chains, 10 languages, and it starts at $5. piped.video/watch?v=SdcAEE2c…
1
3
2,354
If your crypto gets stolen today, you usually have two options: pay a professional firm thousands of dollars, assuming they'll even take a small case, or just give up. We built Trace AI to give you a third. It runs on the same tracing tech behind @MetaSleuth, which our team has used on on-chain cases worth over a billion dollars. 8 chains, 10 languages, and it starts at $5. piped.video/watch?v=SdcAEE2c…
1
1
10
18,751
Glad to work with @KEYRING_PRO to strengthen their security posture. Thanks for the trust and collaboration! ✊
🎉 We’re thrilled to announce that KEYRING ONE has successfully completed its security audit with @BlockSecTeam 🧾 Detailed report in the comments. #KEYRING_ONE #BlockSec #Audit
2
5
2,975
Accepting crypto is easy — securing the system behind it isn't. 🔐 Glad to team up with @NOWPayments_io on this Crypto Payment Security & Compliance Checklist: the controls every operator should confirm before going live, from wallet security to stablecoin freeze risk. Worth a look 👇
Accepting crypto is easy. Accepting it securely takes the right expertise. Before going live, businesses need the right controls: wallet security, signing workflows, AML/KYT checks, real-time monitoring, and stablecoin risk planning. That’s why NOWPayments created a Crypto Payment Security & Compliance Checklist in collaboration with @BlockSecTeam, combining our crypto payment infrastructure experience with BlockSec’s deep security expertise. Get the checklist: nowpayments.io/blog/crypto-p…
1
6
2,904
🛡️ When AI agents start paying on their own, every payment needs to be screened and accountable — not just signed. Glad to bring the Trust & Compliance layer to the Agentic Payment Whitepaper, alongside @InterlaceMoney @XAgent_official @Cobo_Global @Stable @Conflux_Network @BitgetWallet @hetu_protocol 🤝
We’re excited to announce the Agentic Payment Whitepaper, initiated by @InterlaceMoney together with 7 ecosystem partners. This whitepaper defines a shared vision, architecture, and standards for AI‑agent‑driven payments — a critical step toward the emerging Agentic Payment Economy. 🧱 The layers & partners: 🤖 Agent Application – @XAgent_official 💳 Payment Execution – @InterlaceMoney (Initiator) 🔐 Governance & Control – @Cobo_Global 🛡️ Trust & Compliance – @BlockSecTeam 💵 Stablecoin Settlement – @Stable ⛓️ Blockchain Infrastructure – @Conflux_Network 🌊 Liquidity Orchestration & User Access – @BitgetWallet 🔗 Causal Verification – @hetu_protocol The company names above are listed in no particular order. 📄 Expected release: within the next 1–2 months. Stay tuned. #Interlace #AI #agenticpayment
1
2
3
1,684
Proud to be part of the SEAL Certifications initiative @_SEAL_Org At BlockSec, we see this as an important step toward more standardized, credible, and transparent security auditing across Web3, helping build a more mature security assurance framework for the ecosystem.
Replying to @_SEAL_Org
If your protocol is ready to get certified, these firms are accredited and taking clients now. Already working with one of them? Ask about SEAL Certifications starting today. @audit_wizard @BlockSecTeam @chain_security @Composable_Sec @ConsensysAudits @cyfrin @DefiSafety @hackenclub @HackenProof @SecurityOak @OpenZeppelin @opsek_io @Quantstamp @0xshield3 @sigp_io @statemindio @trailofbits @Wonderland @zellic_io @zeroshadow_io Announcement: radar.securityalliance.org/s…
1
1
8
3,337
A sad day... Hopefully the funds can be recovered and this won't leave bad debt that triggers cascading contagion.
.@KelpDAO was reported attacked hours ago, with total losses estimated around $290M. Based on community on-chain analysis (e.g., @banteg), the likely root cause is a compromise of the configured DVN/verifier on the Unichain→Ethereum rsETH bridge route: the route relied on a 1-of-1 check, which may have let a forged/unbacked bridge message pass verification and trigger a drain from the protocol's rsETH Adapter. The exploiter then deposited rsETH into Aave/Compound/Euler and borrowed roughly $236M in assets (WETH, wstETH, WBTC), which is the attacker’s tracked profit so far. @aave has frozen rsETH markets (V3/V4). The incident is still under investigation. The main risk now is contagion: thin rsETH liquidity could turn collateral exposure into bad debt.
1
1
5
2,798
🤝 BlockSec × @Jumio — Now in one workflow. KYC + KYT, finally stitched together. > Off-chain identity verification (Jumio) > On-chain transaction monitoring (BlockSec Phalcon Compliance) @Phalcon_xyz Built for exchanges, custodians, stablecoin issuers, Web3 projects — ready for FATF, MiCA & beyond. 🚀 #Web3 #KYC #KYT #Compliance #BlockSec
1
2
1,043
Our deep investigation on the VerilyHK's ponzi scam.
1/7 $1.6B in TRON USDT. A Ponzi disguised as a "Hong Kong health tech group," borrowing the names of Alphabet's Verily Life Sciences and a Chinese A-share listed company. We mapped VerilyHK's full on-chain topology, one of the largest TRON-based fund schemes ever documented. 🧵👇
2
2
1,988
One surprise from our data: GLM-5 from @Zai_org ranked 25th on @OpenAI's EVMbench (20.8%) but jumped to 7th on real-world incidents (42.9%), outperforming Gemini 3.1 Pro. Model rankings shift dramatically across datasets.
Are AI agents ready for detecting and exploiting smart contract vulnerabilities? We re-evaluated @OpenAI's EVMbench with a contamination-free dataset of real-world hacks. Our data shows different results. 🧵 Paper: arxiv.org/abs/2603.10795
2
11
3,201
Yet AI adds real value when guided by humans. With human context, exploit scores jump from 65% to 95.7% (EVMbench's own data). We @BlockSecTeam have built LLM-powered detectors and static analyzers since 2023. The future of smart contract security is human-in-the-loop.
7
849