11252
• Articles: @officercia • Blog: officercia.mirror.xyz • X: x.com/officer_cia • Chat: t.me/+C6RfnbB33AYzNGIy
It looks like there is an exploit on TrustedVolumes (1inch market maker / resolver, trustedvolumes ).
Total extracted so far: ~$5.87M (1,291.16 WETH + 206,282 USDT + 16.939 WBTC + 1,268,771 USDC).
• https://x.com/officer_secret/status/2052207295036043586?s=46
#security #alert
I rarely give interviews, but I made an exception for my Russian-speaking followers, so if you're interested, please give it a listen: https://youtu.be/PIdWg4XD5Ko?si=N9Pc9sCc14Z9ifXx
Also via Apple Podcasts: https://podcasts.apple.com/us/podcast/metalamp-%D0%BE-web3/id1837845390
#offtopic
Someone just lost over $1,000,000 (17 BTC) due to an approval bug on EkuboProtocol !
Revoke your approvals right now. Especially revoke approvals to these affected addresses:
Ethereum:
0x8ccb1ffd5c2aa6bd926473425dea4c8c15de60fd
0x4f168f17923435c999f5c8565acab52c2218edf2
Arbitrum:
0xc93c4ad185ca48d66fefe80f906a67ef859fc47d
Just spotted one of the best resources around to understand the native design constraints (and schools) of bridge design!
• https://x.com/officer_secret/status/2050573796319404045?s=46
#research
It looks like Wasabi protocol has been exploited for $5M+ across multiple chains, including Ethereum, Base, Berachain, & Blast.
Probable cause: private key compromise.
• https://x.com/officer_secret/status/2049797213258154088?s=46
#security #alert
Protecting Your Linux System Against DPRK (North Korean) Cyber Attacks
Link: officercia/protecting-your-linux-system-against-dprk-north-korean-cyber-attacks" rel="nofollow">https://paragraph.com/@officercia/protecting-your-linux-system-against-dprk-north-korean-cyber-attacks
Hey fam please donate to my Giveth project, 100$ donation matches $50k!
I really need your support this time.
• https://qf.giveth.io/project/opsec-hub?roundId=16
#security
Please support my work! Unfortunately, my projects haven’t been selected for any grant rounds for several years now, but there’s a silver lining - I’m truly independent.
And I really need your help, especially given my health situation. A huge thank you to everyone who helps me. Feel free to send me a private message; I’ll reply to everyone.0x1191b7d163bde5f51d4d2c1ac969d514fb4f4c62 or officercia.eth - all supported EVM chains; 17Ydx9m7vrhnx4XjZPuGPMqrhw3sDviNTU or bc1q75zgp5jurtm96nltt9c9kzjnrt33uylr8uvdds - Bitcoin;BLyXANAw7ciS2Abd8SsN1Rc8J4QZZiJdBzkoyqEuvPAB - Solana; TYWJoRenGB9JFD2QsdPSdrJtaT6CDoFQBN - TRX;
888kZwFbzSGPa1HXFExBe1AZH6yH5akDk8e7AmNtAwNYWpWL776eyCq4iW79za271qGME2WbUwZzAEw4SYUtpXMyKkr3d22 - XMR.
Thank you!
It looks like giddydefi has been hacked for $1.3M.
Another day, another hack: https://x.com/officer_secret/status/2047334278418063516?s=46
#security #alert
🐧 DPRK Is Actively Targeting Linux Users
Lazarus Group is hitting developers and IT professionals via fake job offers, malicious coding challenges, and supply-chain poisoning across npm, PyPI, and GitHub.
Key defenses: never run unverified code, enable SELinux/AppArmor, sandbox unknown binaries, and treat every unsolicited "opportunity" as a potential attack vector.
🔗 Details
Protecting Your Linux System Against DPRK (North Korean) Cyber Attacks
• https://x.com/officer_secret/status/2047071481549701362?s=46
#security #privacy
Lazarus Group Just Released “Mach-O Man” – A Brand-New Native macOS Malware Kit Targeting Fintech, Crypto, and High-Value Executives
You get an “urgent” meeting invite over Telegram for a Zoom, Teams, or Google Meet call. The link leads to a convincing fake website that tells you to copy and paste one simple command into your Mac’s Terminal to “fix the connection issue.”
You run it… and Mach-O Man has just taken over your Mac.
• https://x.com/officer_secret/status/2046719684213710894?s=46
#security #macos
Lazarus Group behind $290M KelpDAO exploit!
• https://x.com/officer_secret/status/2046294895313252611?s=46
#security #analysis
Vercel has been hacked! Here is a full thread: https://x.com/officer_secret/status/2045973049841967561?s=46
#security #alert
The issue with the KelpDAO 280m$ hack was that it was just secured by just 1/1 validator set (DVN) on LayerZero Core . Which means one faulty transaction from a validator is all that's needed.
• https://x.com/officer_secret/status/2045616225812623626?s=46
#security
Security Sucks in General Nowadays. Blockchains Just Tend To Have an Immediate Payoff
Link: https://medium.com/coinmonks/security-sucks-in-general-nowadays-blockchains-just-tend-to-have-an-immediate-payoff-b5f2684c0147
I have successfully helped individuals recover and unfreeze millions of dollars in cryptocurrency that was blocked or frozen on major exchanges.
If your funds are stuck or frozen on a large crypto exchange, feel free to reach out. I’ll assist you in recovering them.
Be careful and don't fall for the Recovery Scam. I operate openly and value my reputation.
• https://x.com/officer_secret/status/2052087337761243205?s=46
#security
GM fam! If you enjoy my work and my articles, please support my project on Round QF!
• https://x.com/officer_secret/status/2051654568971317644?s=46
#web3
OpSec Hub: Fortifying Web3 with Practical OpSec Education
• https://x.com/officer_secret/status/2049877020813738410?12
#security
If you enjoy my work, my articles, and the X threads I post during security incidents, and if you’d like to see DeFi Roadmap 2.0, please support my project on Round QF!
TheDAO Fund × Giveth QF round is live. Small donations count!
Support → https://qf.giveth.io/project/opsec-hub?roundId=16
Thank you so much!
They’re About to Ban Cash Worldwide — The Exact Timeline and What You Must Own Before It Happens
• https://x.com/officer_secret/status/2049088835275919669?s=46
#web3
Please help me to amplify this post fam, much appreciated!
• https://x.com/officer_secret/status/2048032216228196547?s=46
Security Sucks in General Nowadays. Blockchains Just Tend To Have an Immediate Payoff
• https://x.com/officer_secret/status/2047628448592478347?s=46
#security
Tether just froze 2 wallets holding $344M USDT on Tron blockchain:
TCXfhTDMuS6pbfCEoACPcBf2EnnhMAAEWh
TTiDLWE6fZK8okMJv6ijg42yrH6W2pjSr9
They’re About to Ban Cash Worldwide — The Exact Timeline and What You Must Own Before It Happens
Link: https://medium.com/thecapital/theyre-about-to-ban-cash-worldwide-the-exact-timeline-and-what-you-must-own-before-it-happens-f8709641308a
$585K Drained Across 4 Victims in 11 Hours!
One of victims lost 3 WBTC (~$221K) after signing a phishing increaseApproval signature - moments after withdrawing from Aave. Victim: 0x5d908c88bE270889C0953E7dfF1C8E1D699cEeA3
All four victims were hit by the same drainer contract. In order to stay protected from such attacks, you should use tools like RevokeCash, TenderlyApp , web3_antivirus , delegatedotxyz, and of course Rabby Wallet.
Stay safe!
• https://x.com/officer_secret/status/2046803885465927948?s=46
#security #alert
Arbitrum just froze $70m in ETH (30,766 ETH) that has been hacked by DRPK-associated attackers in a recent KelpDAO incident: https://x.com/officer_secret/status/2046453357724790793?s=46
More information in a thread.
#security #web3
Here is a aWETH redemption protocol allowing ETH lenders on Aave to swap into wstETH or weETH.
Even if user has debt against ETH, he can swap collateral to wstETH or weETH and the debt will remain the same. It will significantly reduce systematic risk for Aave, users, and DeFi as a whole: https://x.com/officer_secret/status/2046013051040678129?s=46
#web3
This is some of the OFT adapters at risk. Urgent for teams!
Yes, the KelpDAO exploit is different. But also relies on this principle of trusting 1 source.
• https://x.com/officer_secret/status/2045688050324226545?s=46
#security
KELPDAO'S liquid staking token potentially exploited for over $280M!
• https://x.com/officer_secret/status/2045573559615934890?s=46
• https://x.com/officer_secret/status/2045576667536453837?s=46
#security #alert