Matias Sequeira (@matiasasequeira) 's Twitter Profile
Matias Sequeira

@matiasasequeira

Web3 security @coinspect. Fulbrighter @ Northeastern University. Entrerriano 🇦🇷🧉

ID: 720720899536723968

calendar_today14-04-2016 21:10:27

154 Tweet

151 Takipçi

317 Takip Edilen

Coinspect Security (@coinspect) 's Twitter Profile Photo

What if you could easily know which crypto wallets are the most secure? 🤔 Over the years, we’ve developed a comprehensive threat model and checklists for crypto wallet security audits. However creating a maintainable Wallet Ranking framework isn't easy.

Coinspect Security (@coinspect) 's Twitter Profile Photo

1/ Why a Wallet Security Ranking? 🤔 🎣Phishing and scams remain major threats in crypto. Our wallet ranking aims to help developers, researchers, and users understand and improve wallet security, serving as a trusted resource for informed decisions.

Matias Sequeira (@matiasasequeira) 's Twitter Profile Photo

After months of developing a framework to test 60+ crypto wallet implementations, we’re getting close to launching our independent, security-focused wallet ranking! Check out this post for insights into the project, and stay tuned!

Coinspect Security (@coinspect) 's Twitter Profile Photo

When testing wallets, you expect to find issues like vague transaction approval dialogs or weak password policies... but how about this: 🔓⌛️ a lock screen delay bypass where the wait time turns negative, giving infinite attempts! 😳

When testing wallets, you expect to find issues like vague transaction approval dialogs or weak password policies... but how about this:
🔓⌛️ a lock screen delay bypass where the wait time turns negative, giving infinite attempts! 😳
0xM3GANbabe (@0xmatebabe) 's Twitter Profile Photo

Originally, the plan was to not publish the specific tests to avoid any kind of gaming of the score. After feedback we realized more transparency is needed, so now you can know with quite some detail why a wallet scores how it scores.

Originally, the plan was to not publish the specific tests to avoid any kind of gaming of the score. 

After feedback we realized more transparency is needed, so now you can know with quite some detail why a wallet scores how it scores.
Coinspect Security (@coinspect) 's Twitter Profile Photo

🚨 Curve Finance Frontend Hijack Still Active DNS hijack began ~2025-05-12 21:30 UTC. Users visiting the Curve frontend are being served malicious JavaScript wallet drainer code. Malicious dApp is hosted via Cloudflare infrastructure. We’ll keep this thread updated. 🧵

Coinspect Security (@coinspect) 's Twitter Profile Photo

Zombie dapp update:🧟‍♀️🧟‍♂️🧟 100+ wallet drainer domains just got buried. 🪓🪓 Our team tracked the necromancer behind them and drove a stake through his op. Stay safe out there. #Web3 #InfoSec #security

Zombie dapp update:🧟‍♀️🧟‍♂️🧟 100+ wallet drainer domains just got buried. 🪓🪓 Our team tracked the necromancer behind them and drove a stake through his op. Stay safe out there. #Web3 #InfoSec #security