PeckShield Inc. (@peckshield) 's Twitter Profile
PeckShield Inc.

@peckshield

A blockchain security and data analytics company (telegram: t.me/peckshield)

ID: 950915985422221312

linkhttp://peckshield.com calendar_today10-01-2018 02:23:32

1,1K Tweet

81,81K Followers

480 Following

PeckShield Inc. (@peckshield) 's Twitter Profile Photo

Today's DeltaPrime exploit leads to $4.8m loss. Since affected pools are now paused, we share our initial analysis below. The exploit is made possible due to the lack of input validation in claiming possible rewards. Specifically, the exploiter provides an evil pair in

Today's <a href="/DeltaPrimeDefi/">DeltaPrime</a> exploit leads to $4.8m loss. Since affected pools are now paused, we share our initial analysis below.

The exploit is made possible due to the lack of input validation in claiming possible rewards. Specifically, the exploiter provides an evil pair in
PeckShield Inc. (@peckshield) 's Twitter Profile Photo

It seems today's Clober | Fully on-chain CLOB DEX hack is due to a reentrancy issue from the burn() function. And it is further facilitated with the use of an evil strategy prepared by the hacker. The stolen funds are now parked in the following two addresses: etherscan.io/address/0x711C…

It seems today's <a href="/CloberDEX/">Clober | Fully on-chain CLOB DEX</a> hack is due to a reentrancy issue from the burn() function. And it is further facilitated with the use of an evil strategy prepared by the hacker.

The stolen funds are now parked in the following two addresses:
etherscan.io/address/0x711C…
PeckShield Inc. (@peckshield) 's Twitter Profile Photo

We have analyzed the latest FEG (Feed Every Gorilla) hack and the root cause appears to be a composability issue from the integration with the underlying Wormhole bridge for cross-chain message/token transfers. In particular, the hacker creates a fake deposit message (via an unanticipated

We have analyzed the latest <a href="/FEGtoken/">FEG (Feed Every Gorilla)</a> hack and the root cause appears to be a composability issue from the integration with the underlying Wormhole bridge for cross-chain message/token transfers.

In particular, the hacker creates a fake deposit message (via an unanticipated
PeckShieldAlert (@peckshieldalert) 's Twitter Profile Photo

#PeckShieldAlert 2024 has witnessed a significant resurgence in crypto-related hacking activities. The total value of loss in 2024 has exceeded $3.01B, reflecting a ~15% increase over the $2.61B stolen in 2023. This total includes $2.15B stolen from crypto hacks and $834.5M

#PeckShieldAlert 2024 has witnessed a significant resurgence in crypto-related hacking activities. The total value of loss in 2024 has exceeded $3.01B, reflecting a ~15% increase over the $2.61B stolen in 2023. 
This total includes $2.15B stolen from crypto hacks and $834.5M
Ben Zhou (@benbybit) 's Twitter Profile Photo

Bybit Hack Forensics Report As promised, here are the preliminary reports of the hack conducted by Sygnia and Verichains Screenshotted the conclusion and here is the link to the full report: docsend.com/view/s/rmdi832…

Bybit Hack Forensics Report
As promised, here are the preliminary reports of the hack conducted by <a href="/sygnia_labs/">Sygnia</a> and <a href="/Verichains/">Verichains</a> 
Screenshotted the conclusion and here is the link to the full report: docsend.com/view/s/rmdi832…
PeckShield Inc. (@peckshield) 's Twitter Profile Photo

The KiloEx protocol was hacked today with a loss of ~7.5m ($3.3m in base, $3.1m in opBNB, $1m in BSC). The protocol is now paused! Our initial analysis on one exploit tx indicates a price oracle issue. And the hacker exploits it to create a new position with initial given

PeckShield Inc. (@peckshield) 's Twitter Profile Photo

Kudos to the ZKsync (∎, ∆) team! It seems the ~$5M of stolen funds have been fully recovered. Impressive work! And here are the related accounts: explorer.zksync.io/address/0xfFB6… etherscan.io/address/0xb13d…

Kudos to the <a href="/zksync/">ZKsync (∎, ∆)</a> team! It seems the ~$5M of stolen funds have been fully recovered.

Impressive work! And here are the related accounts: 

explorer.zksync.io/address/0xfFB6… etherscan.io/address/0xb13d…
PeckShield Inc. (@peckshield) 's Twitter Profile Photo

Our analysis shows that the Meta Pool staking contract has a critical bug that allows for free mint of mpETH. This specific tx freely mints 9700+ mpETH ($27m), but the low-liquidity of mpETH limits the profit to ~10 ETH.

Our analysis shows that the <a href="/meta_pool/">Meta Pool</a> staking contract has a critical bug that allows for free mint of mpETH. 

This specific tx freely mints 9700+ mpETH ($27m), but the low-liquidity of mpETH limits the profit to ~10 ETH.