Torgin (not your keys not your coins) (@mtorgin) 's Twitter Profile
Torgin (not your keys not your coins)

@mtorgin

Auditor at @chain_security.
Opinions are my own.

ID: 1362177237961834496

calendar_today17-02-2021 23:09:11

5,5K Tweet

2,2K Followers

1,1K Following

ChainSecurity (@chain_security) 's Twitter Profile Photo

1/7 🧵 We recently discovered how f(x) Protocol could have been exploited for $2M+ through nested flash loans, allowing attackers to front-run users and gain control over their positions. The f(x) team resolved the issue promptly by removing the affected flash loan integration.

1/7 🧵 We recently discovered how <a href="/protocol_fx/">f(x) Protocol</a> could have been exploited for $2M+ through nested flash loans, allowing attackers to front-run users and gain control over their positions. 

The f(x) team resolved the issue promptly by removing the affected flash loan integration.
ddimitrov22 (@ddimitrovv22) 's Twitter Profile Photo

You should always have an incident response plan. Even if you did multiple audits and have a running bug bounty program. It's not a guarantee that there are no bugs in your code. Hopefully, you never have to rely on it. But you should have a plan.

samczsun (@samczsun) 's Twitter Profile Photo

before: open pr on eth-phishing-detect, ping seal 911, wait for it to get picked up across wallets, slow and requires human review now: submit verifiable phishing report, automatically sent to the biggest wallets and blocked in real time, instantaneous and no humans required

ChainSecurity (@chain_security) 's Twitter Profile Photo

🧵Hola Buenos Aires! ChainSecurity is in town for Devconnect ARG - the first Ethereum World’s Fair & Party Action People 🦫 🇦🇷 From talks, panels, MC duties, and community events, here’s your full chronological guide to where you can catch our team 👇

🧵Hola Buenos Aires! ChainSecurity is in town for <a href="/EFDevcon/">Devconnect ARG - the first Ethereum World’s Fair</a> &amp; <a href="/partyactionppl/">Party Action People 🦫</a> 🇦🇷

From talks, panels, MC duties, and community events,
here’s your full chronological guide to where you can catch our team 👇
Michael Egorov (@newmichwill) 's Twitter Profile Photo

Briefly checked this one. Still not everything clear to me, and yearn team told that the official post-mortem is still to be made only after they understand everything. But two takeaways for buidlers: - Be careful with unsafe math. It's unsafe unless you proved it is safe; -