When I first learned Solana, I was searching for a resource that explained how Solana programs work under the hood, beyond just Rust.
I couldn’t find one I liked, so I wrote my own.
Get nerdy:
ubermensch.blog/under-the-hood…
Recently I was targeted by an extremely sophisticated phishing attack, and I want to highlight it here. It exploits a vulnerability in Google's infrastructure, and given their refusal to fix it, we're likely to see it a lot more. Here's the email I got:
Pyth vulnerabilities i see very often 🕵🏼♂️
🔻getPriceUnsafe is used
🔻Ignoring confidence interval check.
🔻Output amount calculations doesn’t preserve correct decimals
Sole advice for the developers and auditors:
“Read the docs of the integrations heavily, you can find the bugs…
Intense workout = higher audit quality.
It sharps your body and brain.
The 1.5 hour of audit session after sport is pure gold.
- Sport refreshes your mind
- Sport gives you exploit ideas
- Sport makes you enhanced human and researcher
Adapt sport into work routine. It makes…
Just found this cool dashboard to track public web3 security audit contests. It comes as an alternative to DailyWarden, I like this one, especially the filters.
Check it out yourself👇
vigilseek.com
Agent Terminal 🔜
✅ Prompts related to security & audits of protocols (incl. all common audit platforms/firms)
✅ Set up your own agent that executes trades based on risk metrics in the Sonic ecosystem
✅ Own AI model to audit smart contracts by scanning verified contracts
☑️…
🚀Just published a new article on Cyfrin's blog: "ZKsync Governance Tool: Secure Proposal Verification."
This tool makes the ZKSync proposal verification more secure and easier by enabling independent verification of proposal details, decoding transactions, and reducing reliance…
🚀 We are pleased to announce the launch of Safura's updated website!
🛡️ Safura offers comprehensive protection for Web3 applications, combining advanced security, financial stability, and reliability through covered smart contracts.
Just found a GOLDMINE for ZK security researchers🔥
A Github repository containing close to 100 security vulnerabilities related to zero-knowledge proofs. Whenever you do ZK audits, make sure to go through those🫡
github.com/zksecurity/zkb…
Proud to be part of the audit team ensuring security and reliability for LeverageX by @Javsphere ! Solid results for a solid project.
#SmartContractSecurity#Base
Proud to be part of the audit team ensuring security and reliability for LeverageX by @Javsphere ! Solid results for a solid project.
#SmartContractSecurity#Base
The 2025 Pashov Audit Group security researcher internship program is now official. This is not for 1st day beginners - real projects, real audits, pure practice.
Like/RT this post, then apply in the form in first comment for a chance to join us🫡
3K Followers 508 FollowingThe Ultimate Store of Value on @SonicLabs. On a mission to flip BTC.
CA:
0x888852d1c63c7b333efEb1c4C5C79E36ce918888
TG Community:
https://t.co/gZjRtYvXVS
742 Followers 3K FollowingBlockchain Innovator | Founder @hybridyai | Pioneering transformative tech solutions at the intersection of Software Development & Digital Strategy. #Blockchain
403 Followers 968 FollowingFather and husband
Ex-concert promoter
Discovered 20+ H/M vulnerabilities in public security contests
I'm currently doing the #RoadToWeb3SecurityJobChallenge
10K Followers 2K Followingthis page is mixed w/ random thoughts... please do not disturb. crypto “enthusiast” and gambling on everything is my thing. @wolf0x67 🐺 $WOLF
258K Followers 100 FollowingBienvenue sur le compte officiel du #RERA ! Suivez le trafic en temps réel, les coulisses de votre ligne. 5j/7 de 6h à 20h.
#RATP #SNCF pour @IDFmobilites
3K Followers 508 FollowingThe Ultimate Store of Value on @SonicLabs. On a mission to flip BTC.
CA:
0x888852d1c63c7b333efEb1c4C5C79E36ce918888
TG Community:
https://t.co/gZjRtYvXVS
28K Followers 412 FollowingEqualizer Exchange on Sonic uses a vote escrowed model to drive Liquidity to the highest volume pairs. Join Our Community - https://t.co/pK73SSoZVj