Noah (@1s0l4te) 's Twitter Profile
Noah

@1s0l4te

#Web3 #Security Focus on Cybersecurity and Web3 Ecosystem Security.

ID: 1690899459625136128

calendar_today14-08-2023 01:34:21

106 Tweet

51 Takipçi

154 Takip Edilen

Noah (@1s0l4te) 's Twitter Profile Photo

下载软件前需要干的两件事:1. 验证是否是官方网站;2.验证下载的文件hash。做到上述步骤可以防止99.9%的攻击

Noah (@1s0l4te) 's Twitter Profile Photo

处理了一个 sol 上的被盗案例。被害者复制了私钥导入 chrome 钱包,结果被读取了粘贴板,所有的$TRUMP 都被转走

Noah (@1s0l4te) 's Twitter Profile Photo

曾经多次参与处理过Web3 Ecosystem的安全事件,我总结了一条规律。攻击人永远是最简单的。

Noah (@1s0l4te) 's Twitter Profile Photo

我也觉得这块设计可能不太周全,首先cold wallet交易不是高频操作,第二cold wallet的操作也不是时间敏感的。完全可以先放到local fork模拟一遍检测一下是否和预期相同。

Ben Zhou (@benbybit) 's Twitter Profile Photo

Bybit Hack Forensics Report As promised, here are the preliminary reports of the hack conducted by Sygnia and Verichains Screenshotted the conclusion and here is the link to the full report: docsend.com/view/s/rmdi832…

Bybit Hack Forensics Report
As promised, here are the preliminary reports of the hack conducted by <a href="/sygnia_labs/">Sygnia</a> and <a href="/Verichains/">Verichains</a> 
Screenshotted the conclusion and here is the link to the full report: docsend.com/view/s/rmdi832…
Scott Bauer (@scottybauer1) 's Twitter Profile Photo

The GPU shares similar microcode across products, which is why CVE-2025-21479/80 is so interesting. Whomever had it burned (reach out to me pls) had a crazy versatile bug ruined. The affected GPU versions run on multiple different product types (IoT/phones/laptops & future auto.