nftmerchant.lens (@nftmerchant) 's Twitter Profile
nftmerchant.lens

@nftmerchant

head of growth @vyperlang | co-organizer @theTrustX | mentor @thesecureum | volunteer @summit_defi | prev: @code4rena @rareskills_io

ID: 1293792545483431937

calendar_today13-08-2020 06:12:43

6,6K Tweet

1,1K Followers

5,5K Following

Sigma Prime (@sigp_io) 's Twitter Profile Photo

We have released `Lighthouse v7.0.0` which supports the Pectra upgrade on Ethereum mainnet that will land on May 7, 2025. Let's dive in to the changes!

Daniel Von Fange (@danielvf) 's Twitter Profile Photo

Today’s bug in rsETH minted a cool $31,220,047,901,664,100,000 to the Kelp Treasury as a protocol fee. A rewrite of the protocol fee calculations did not take into account that the code was using 1e36 based numbers for the assets. Here’s the details: 🧵 1/6

Today’s bug in rsETH minted a cool $31,220,047,901,664,100,000 to the Kelp Treasury as a protocol fee.

A rewrite of the protocol fee calculations did not take into account that the code was using 1e36 based numbers for the assets. Here’s the details: 🧵 1/6
RareSkills (@rareskills_io) 's Twitter Profile Photo

Office hours with Vyper is happening in a little over 2 hours. Get ready for another compiler deep dive where we will explore: - Venom IR (intermediate representation) - Optimization strategies - Security guarantees Invite in the reply.

Office hours with Vyper is happening in a little over 2 hours.

Get ready for another compiler deep dive where we will explore:
- Venom IR (intermediate representation)
- Optimization strategies
- Security guarantees

Invite in the reply.
Idiom (@idiom_bytes) 's Twitter Profile Photo

The latest update to YEET includes a minimal Farcaster integration so you can start building mini apps straight from your project. This implementation uses only the frames.js library and vanilla nextjs code to reduce dependencies on any third-parties and SDKs. In future

The latest update to YEET includes a minimal <a href="/farcaster_xyz/">Farcaster</a> integration so you can start building mini apps straight from your project.

This implementation uses only the frames.js library and vanilla nextjs code to reduce dependencies on any third-parties and SDKs.

In future
Vladimir S. | Officer's Notes (@officer_cia) 's Twitter Profile Photo

Hackers almost gained god-like access on Solana, with the power to mint unlimited tokens or drain funds from any wallet. The bug was fixed quietly, but it exposed some serious flaws in the system.

Zunami Protocol (@zunamiprotocol) 's Twitter Profile Photo

The Zunami protocol has been hacked — the collateral for zunUSD & zunETH has been stolen. We are currently investigating the situation.

Ciara Nightingale (@ciaranightingal) 's Twitter Profile Photo

Ugh I wish someone would make a video on incremental Merkle trees🤔 I was trying to understand how ZKsync (∎, ∆), Tornado Cash and other fun ZK stuff worked and it’s just so flipping confusing Oh wait a minute! I just made one 😁 INCREMENTAL MERKLE TREES EXPLAINED!!! 🌳🩷

Ugh I wish someone would make a video on incremental Merkle trees🤔

I was trying to understand how <a href="/zksync/">ZKsync (∎, ∆)</a>, Tornado Cash and other fun ZK stuff worked and it’s just so flipping confusing

Oh wait a minute! I just made one 😁

INCREMENTAL MERKLE TREES EXPLAINED!!! 🌳🩷
Blockchain Threat Intelligence (@blockthreat) 's Twitter Profile Photo

BlockThreat - Week 23, 2025 💙 Sponsored by Coinspect Security 💸 ALEX 🟧 No. 1 Bitcoin DeFi $14M compromise on Stacks 🏦 BitoGroup 幣託集團 admits an $11.5M hack. 👮 French crypto extortion gang leader arrested 🤡 Libra investigation against Milei dropped newsletter.blockthreat.io/p/blockthreat-…

Roman Storm 🇺🇸 🌪️ (@rstormsf) 's Twitter Profile Photo

😔💔 I’m Roman Storm. I poured my soul into Tornado Cash—software that’s non-custodial, trustless, permissionless, immutable, unstoppable. In 31 days, I face trial. The DOJ wants to bury DeFi, saying I should’ve controlled it, added KYC, never built it. SDNY is trying to crush

Wazz (@wazzcrypto) 's Twitter Profile Photo

Israeli hackers exploited an Iranian exchange and straight up burned all the $80M exploited to vanity addresses like "TKFuckiRGCTerroristsNoBiTEXy2r7mNX" That's some hall of fame hating right there h/t ZachXBT

Israeli hackers exploited an Iranian exchange and straight up burned all the $80M exploited to vanity addresses like "TKFuckiRGCTerroristsNoBiTEXy2r7mNX"

That's some hall of fame hating right there

h/t <a href="/zachxbt/">ZachXBT</a>
burn the bridge (@econoalchemist) 's Twitter Profile Photo

Day 440 since the Samourai Wallet developers were indicted, raided, & arrested. Non-custodial wallets are not money transmitters. CoinJoins are not money laundering. Drop the charges. Stop the lawfare. Details: freesamourai.com Support: p2prights.org/donate.html

Day 440 since the Samourai Wallet developers were indicted, raided, &amp; arrested.

Non-custodial wallets are not money transmitters. CoinJoins are not money laundering. Drop the charges. Stop the lawfare.

Details: freesamourai.com

Support: p2prights.org/donate.html
The Hacker News (@thehackersnews) 's Twitter Profile Photo

🚨 A high-severity flaw in Cursor AI (CVE-2025-54136) let attackers hijack trusted MCP configs—triggering remote code execution every time you opened the project. No re-prompt. No warning. Just silent compromise by modifying a config file you already trusted. Learn more →

🚨 A high-severity flaw in Cursor AI (CVE-2025-54136) let attackers hijack trusted MCP configs—triggering remote code execution every time you opened the project.

No re-prompt. No warning. Just silent compromise by modifying a config file you already trusted.

Learn more →
zak.eth (@0xzak) 's Twitter Profile Photo

I've been in crypto for over 10 years and I’ve Never been hacked. Perfect OpSec record. Yesterday, my wallet was drained by a malicious Cursor extension for the first time. If it can happen to me, it can happen to you. Here’s a full breakdown. 🧵👇

tuckner (@tuckner) 's Twitter Profile Photo

New malicious extension in Open VSX using the same pattern. Uploads to the marketplace as a test extension and then updates to include a new file which decodes to execute from a Cloudflare worker. Diff shown below for the file `prompt.js` nomic-foundation.hardhat-solidity

New malicious extension in Open VSX using the same pattern. Uploads to the marketplace as a test extension and then updates to include a new file which decodes to execute from a Cloudflare worker. Diff shown below for the file `prompt.js`

nomic-foundation.hardhat-solidity
Dexter ∞ ₿ (@dehypokriet) 's Twitter Profile Photo

How Meme's hacked high value individuals trading memecoins : CVE-2025-43300 exploits of high net worth individuals like orangie thread 🧵 CVE-2025-43300 is a zero-day vulnerability in Apple's ImageIO framework, which is responsible for processing and rendering image files

How Meme's hacked high value individuals trading memecoins : 
CVE-2025-43300 exploits of high net worth individuals like <a href="/orangie/">orangie</a>  thread 🧵 

CVE-2025-43300 is a zero-day vulnerability in Apple's ImageIO framework, which is responsible for processing and rendering image files