0xki retweeted
the best protection you can have is an active threat of physical violence
1
1
9
588
BREAKING: Aave V3’s Safe Module loses 114 ETH in an access control exploit The attacker abused a flaw in FlashLoopAdapter’s open and close functions to bypass Safe authorization, repay about 1,300 WETH in debt and unlock the protected collateral.
7
10
60
8,001
👀😱🤯
BREAKING: 🇬🇧 $1.3 Trillion UK bank Lloyds just settled a cross-border payment with Visa using stablecoins, allowing money to move 24/7. Traditional banking is moving onchain.
54
0xki retweeted
BREAKING: 🇬🇧 $1.3 Trillion UK bank Lloyds just settled a cross-border payment with Visa using stablecoins, allowing money to move 24/7. Traditional banking is moving onchain.
116
187
1,717
117,154
🔎 The @bitget exploiter is moving stolen DAI on Ethereum through a series of swaps and cross-chain transfers: DAI → USDT on Ethereum → USDT0 → Tron 💱 One recent transaction: 100,000 DAI → 100,034.89 USDT via #Uniswap. etherscan.io/tx/0xe71fe8f06d… 🌉 The USDT was then transferred from Ethereum to Tron via #USDT0 infrastructure. tronscan.org/address/TSjHkJL… USDT0 OFT: 0x1f748c76de468e9d11bd340fa9d5cbadf315dfb0 Tron-side USDT0 OFT: 0x3a08f76772e200653bb55c2a92998daca62e0e97 On Tron, the funds continued moving via #SunSwap: • 90,967 USDT → $USDD • 19,000 USDT → $TRX This activity is part of an ongoing flow from an address linked to the Bitget exploiter. The same address has been repeatedly converting $DAI to $USDT and bridging the funds to #Tron. We’ll continue tracking the movement of the stolen funds across chains and services. 👀
5
6
31
6,683
😱🤯
after some onchain sleuthing, i think this is what happened: 19 metamask validators had won block rewards, and 18 of the rewards were not paid to the correct fee recipient but instead to this tornado funded account: 0x98B9231de84334c1d48BA0b72CF13f92484924A3 ~17k validators proactively exited, ~523k eth total, unknown whether the attacker had the ability to change all fee recipients it appears that 3 of the exploited validators have not yet been exited, and that 821 potentially impacted validators in total have yet to exit, unclear why attacker only stole ~0.36 eth in rewards and likely never had the ability to withdraw any staked eth. however, depending on how the attacker managed to get signing access, they could potentially cause the validators to be intentionally slashed
72
0xki retweeted
after some onchain sleuthing, i think this is what happened: 19 metamask validators had won block rewards, and 18 of the rewards were not paid to the correct fee recipient but instead to this tornado funded account: 0x98B9231de84334c1d48BA0b72CF13f92484924A3 ~17k validators proactively exited, ~523k eth total, unknown whether the attacker had the ability to change all fee recipients it appears that 3 of the exploited validators have not yet been exited, and that 821 potentially impacted validators in total have yet to exit, unclear why attacker only stole ~0.36 eth in rewards and likely never had the ability to withdraw any staked eth. however, depending on how the attacker managed to get signing access, they could potentially cause the validators to be intentionally slashed
Security Update: We are responding to a security incident affecting part of our infrastructure. At this time, we have identified no immediate threat to MetaMask wallets. As a precaution, we are proactively exiting affected validators within our non-custodial staking operations, in coordination with clients, partners and security advisors. We’ll share further updates as appropriate. metamask.io/news/user-update…
27
38
385
75,382
$BitGet Hacker
⚠️UPDATE: The Bitget hacker is now SWAPPING stolen ETH into BTC from the $387.5M exploit. Lookonchain flags the attacker has started rotating ETH into BTC, suggesting the stolen funds are being moved into a harder-to-freeze asset before further laundering attempts. This comes as Bitget resumes withdrawals in phases, adding that users will be fully covered whether the stolen funds are recovered or not.
130
Ok this Bitget investigation became just a little more complex 🤣🤣
4
93
0xki retweeted
🇬🇧HUGE: UK government publishes official rules on AI usage as part of its advice on reducing environmental impact - - Use AI only when necessary, check if a spreadsheet/ search engine can do the job before using AI. - Choose the smallest model capable of handling the job, such as Gemini Flash instead of Pro or GPT Instant instead of Thinking. - Prompts should be kept short, with as few as possible used. - Any AI-assisted work should be personally checked for accuracy. The guidance also says it should be disclosed when AI helped create or edit content.
120
38
237
60,616
#BitGethack catching a hacker ? 👀👀🤯🤯🤯🤯
🚨 BITGET HACKER CAN BE CAUGHT 🤯 The Bitget hacker reportedly withdrew $1.23 million worth of Ethereum from Binance. Now Binance can potentially help trace the identity of this hacker linked to the Lazarus Group. 👀
75
Tether banned the wallet owned by the bitget exploiter etherscan.io/tx/0xdd30e4831e…
So far, we have identified the following addresses associated with the @bitget exploiter that still hold funds. We will continue to update this list. @GracyBitget @xiejiayinBitget @Bitget_zh docs.google.com/spreadsheets…
15
19
179
62,550
0xki retweeted
⚡️JUST IN: ZachXBT says victims SCAMMED him out of a $100K cut after he recovered their stolen Bitcoin. He says several victims GHOSTED him, as they stopped replying once their funds were returned, despite remaining active online.
110
68
1,157
124,606
MORE: According to Bitget CEO, Gracy Chen, it looks like there was a security key that was hacked and was able to lead to false authentication of signing processes to transfer funds out of their hot wallet. Serious negligence on the part of Bitget for this size of capital not tightly secured. Feel bad for their team right now and hope they're able to quickly recover with the help of other exchanges or partners who can backstop this hole. You also wonder if AI had a part in this....
3
128
0xki retweeted
Vitalik Buterin Warns Blockchain Privacy is Breaking Down Ethereum co-founder Vitalik Buterin (@VitalikButerin) says traditional blockchain pseudonymity is becoming increasingly unreliable. At the Global Blockchain Summit in Shanghai, he pointed to AI and data analytics as making wallet identities easier to uncover. Buterin is advocating programmable privacy built directly into blockchain protocols. He highlighted SNARKs, STARKs, FHE, and indistinguishability obfuscation as key tools.
62
55
359
44,796