Daniel Tan (@danielslothx) 's Twitter Profile
Daniel Tan

@danielslothx

Web3 Security Researcher | Audit Leader | Saved $200K worth tokens from the Phemex attack

ID: 114342801

calendar_today15-02-2010 02:50:36

377 Tweet

167 Followers

535 Following

Daniel Tan (@danielslothx) 's Twitter Profile Photo

#Phemex attack. We saved $200K worth tokens from the Phemex hacker by quickyly blacklisting the hacker before the hacker dumping the tokens.

#Phemex attack. We saved $200K worth tokens from the Phemex hacker by quickyly blacklisting the hacker before the hacker dumping the tokens.
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#SIR exploit. A hacker manipulated the value stored on the #transientstorage to by-pass the caller check, due to the check condition loads value from the transient storage, which was manipulated by the hacker due to the contract does not clear the transient storage at right point

#SIR exploit. A hacker manipulated the value stored on the #transientstorage to by-pass the caller check, due to the check condition loads value from the transient storage, which was manipulated by the hacker due to the contract does not clear the transient storage at right point
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#KiloEx $7.4M exploit. A hack exploited the `MinimalForwarder` contract, using a forged signature to impersonate trusted roles, due to the critical access control flaw in the contract, and gained unauthorized access to the `KiloPriceFeed::setPrices()` function & manipuated prices

#KiloEx $7.4M exploit. A hack exploited the `MinimalForwarder` contract, using a forged signature to impersonate trusted roles, due to the critical access control flaw in the contract, and gained unauthorized access to the `KiloPriceFeed::setPrices()` function & manipuated prices
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#Bankroll expoit. An reward calculation error in the `distribute` function resulted in a total loss of $65K, which is detected by an AI Audit platform LISA (agentlisa.ai/sign-up?ref=LE…). #AI is unbelievable. #LISA #AIAudit

#Bankroll expoit. An reward calculation error in the `distribute` function resulted in a total loss of $65K, which is detected by an AI Audit platform <a href="/AgentLISA_ai/">LISA</a> (agentlisa.ai/sign-up?ref=LE…). #AI is unbelievable.
#LISA #AIAudit
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#GMX $40M hack. A hacker manipulates the AUM(Assets Under Management) value that determines the GLP value after minting the GLP and before unstaking GLP by reenter the GMX:Vault to get profit.

#GMX $40M hack. A hacker manipulates the AUM(Assets Under Management) value that determines the GLP value after minting the GLP and before unstaking GLP by reenter the GMX:Vault to get profit.
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#ArcadiaFi $3.5M hack. I always try to summary a hack into one tweet, but this time it seems hard for this one due to the the hack traverses many contracts. Under the hood, an unchecked malicious `router` address is injected to drain the victims' asset.

#ArcadiaFi $3.5M hack. I always try to summary a hack into one tweet, but this time it seems hard for this one due to the the hack traverses many contracts. Under the hood, an unchecked malicious `router` address is injected to drain the victims' asset.
Daniel Tan (@danielslothx) 's Twitter Profile Photo

#Monero 51% hashrate experiment. #Qubic announced that they achieved over 51% hashrate dominance, resulting in six blocks being reorganized and sixty blocks orphaned on the Monero chain.