grassy.eth (@grassyeth) 's Twitter Profile
grassy.eth

@grassyeth

grassy.eth

Discord Security Consultant/Auditor.

Cool Cats Discord Security

Cold Admins, No Kings.

ID: 1442205527711174657

calendar_today26-09-2021 19:14:11

851 Tweet

1,1K Followers

746 Following

Jon_HQ (@jon_hq) 's Twitter Profile Photo

๐Ÿšจ๐Ÿšจ Discord Security Alert ๐Ÿšจ๐Ÿšจ There is a new phishing scheme going around MASS TARGETING DeFi and NFT projects. This one, unfortunately, is impersonating security researchers, smart contract/Discord auditors. It uses fear, intimidation, and bookmarks to snag discord tokens.

๐Ÿšจ๐Ÿšจ Discord Security Alert ๐Ÿšจ๐Ÿšจ

There is a new phishing scheme going around MASS TARGETING DeFi and NFT projects.

This one, unfortunately, is impersonating security researchers, smart contract/Discord auditors.

It uses fear, intimidation, and bookmarks to snag discord tokens.
grassy.eth (@grassyeth) 's Twitter Profile Photo

While I am sure there are many talented people out there, there are very real risks in the space, and you need someone on your side who understands both what they are, and how to defend against them! And on that note, who are your favorite discord builders, even if they donโ€™t

Jon_HQ (@jon_hq) 's Twitter Profile Photo

What you should do if you think someone you're talking to online is acting off: Step 1: Try to communicate on a different platform, if they send you a Discord message, ask them to respond on Twitter DM. Or maybe to text you or send an email. Step 2: Take it slow. Someone asking

Jon_HQ (@jon_hq) 's Twitter Profile Photo

In my Twitter bio, I mention something called a "Discord Server Audit." Here's a brief explanation of what that entails. The goal is to make a server safe. A big part of that is looking for weaknesses that an attacker will use in combination with phishing to attack the server.

In my Twitter bio, I mention something called a "Discord Server Audit." Here's a brief explanation of what that entails.

The goal is to make a server safe.

A big part of that is looking for weaknesses that an attacker will use in combination with phishing to 
attack the server.
Jon_HQ (@jon_hq) 's Twitter Profile Photo

Why can't a bot just make my Discord server secure? I think this is a route a lot of folks go down when thinking about Discord security. They look for an easy out. But sadly I don't think this route can ever exist. Bots can make an auditor's life easier, but should never fully

Jon_HQ (@jon_hq) 's Twitter Profile Photo

๐Ÿ› ๏ธ Doing a Discord audit is hard. ๐Ÿ› ๏ธ Discord servers can quickly turn into giant unmanageable jumbles and even the best Discord auditors have horror stories of certain servers just being too much. The only way to know if your Discord audit was not good, is when it fails and a

๐Ÿ› ๏ธ Doing a Discord audit is hard. ๐Ÿ› ๏ธ

Discord servers can quickly turn into giant unmanageable jumbles and even the best Discord auditors have horror stories of certain servers just being too much.

The only way to know if your Discord audit was not good, is when it fails and a
grassy.eth (@grassyeth) 's Twitter Profile Photo

This one is a new enough approach that itโ€™s a good idea to read up on it! While job offer based attacks are nothing new, an explicit focus on devs via GitHub is new!

grassy.eth (@grassyeth) 's Twitter Profile Photo

This is not the first time something like this was happened. Mee6 as well as several other major bots have had severe attacks in the past. No bot is perfect, so you have to secure your servers accordingly.