Contribute by sharing insights and tips to strengthen the community.
Category
#giveaway #Airdrop #Pool #Sol #Solana #BnB #USDT ๐ Prize Pool 1000 $TRN๐ Open Distribution link๐ https://wn.nr/pj6nFHm๐ Join our Telegram Channel๐ Join our Telegram Group๐ Follow our Twitter page & Retweet pinned post๐ Send your address BNB/Ber-20 Wallet๐ Done3435
On July 15, 2025, Arcadia Finance became the latest DeFi project to fall victim to a smart contract exploit, resulting in the loss of $3.5 million in user funds. Hereโs what happened, how the attacker executed the hack, and what it means for the DeFi space going forward.๐จ What Happened?In the early hours of July 15, an attacker exploited a critical vulnerability in Arcadia Financeโs Rebalancer contract, a tool that allows users to manage asset allocations across their portfolio.Within minutes, the attacker drained approximately $2.5 million in stablecoins and other assets from Arcadiaโs Base protocol vaults. Shortly after, a second attack followed, stealing an additional $1 million, bringing the total losses to over $3.5 million.๐ง How the Exploit WorkedThe exploit originated from a flaw in the swapData parameter of the Rebalancer contract.The attacker passed arbitrary and malicious data into swapData.This allowed the attacker to bypass validation checks and trigger unauthorized fund movements.A custom malicious contract executed the swap, draining user vaults in under one minute.๐ฆน Attacker Wallets & Fund MovementsThe key wallet involved in the exploit:0x0fa54E967a9CC5DF2af38BAbC376c91a29878615Image 1 Source from EtherscanFunds were bridged from Base Mainnet to ETH MainnetAs of today, ETH remains at this wallet and no further movement initiated. โ Final ThoughtsThe Arcadia hack underscores a painful truth: DeFi remains vulnerable without robust testing, on-chain monitoring, and swift incident response. As attackers grow more sophisticated, protocols must prioritize security as a feature, not an afterthought.Stay safe. Revoke unnecessary permissions. And keep your eyes on the chain.

it's been while since i can't login talken app, when i saw there has some lovely chainbounty in my wallet. Pretty cool keep it up!
What is join chainbounty and earn reward
The crypto world just got hit with another stealthy threatโthis time targeting unsuspecting Firefox users through malicious wallet extensions.More than 40 fake Firefox extensions mimicking popular crypto wallets have been discovered since April 2025. These fraudulent add-ons, found directly on the Firefox Add-ons store, arenโt just phishing scams, theyโre sophisticated clones capable of stealing private keys and draining entire wallets.๐ The Deception: Looks Real, Acts EvilThe attackers didnโt build these fake extensions from scratch. Instead, they forked open-source code from legitimate wallets, like MetaMask, Phantom, Trust Wallet, OKX, Bitget, and Coinbase Wallet, and injected malicious scripts designed to silently steal user data.To make things worse, the extensions:โข Used identical names and logosโข Were stuffed with fake 5-star reviewsโข In some cases, were signed with valid Mozilla developer accountsThese wallet clones were nearly indistinguishable from the real thing. And once installed, they watched for one thing: your seed phrase.๐ง How the Attack WorksOnce a victim pastes a seed phrase or private key into the fake extension interface, itโs game over.These fake extensions:โข Monitor inputs over 30 characters (typical of seed phrases)โข Immediately exfiltrate them to attacker-controlled serversโข Also log the userโs IP address, likely for geographic targeting๐ท๐บ Whoโs Behind It?Investigators found Russian-language comments in the code and metadata tied to Russian-speaking actors, although attribution is not conclusive.The infrastructure behind the scam was impressively organized:โข Hosting on bulletproof VPS providersโข Constantly rotating domain namesโข Multiple versions pushed across dozens of wallets and language localizationsThis wasnโt a quick smash-and-grab. It was an industrial-scale operation.๐งฏ Mozillaโs ResponseMozilla has begun purging these fake extensions, but new ones keep popping up. As of July 2025, many remain live on the Add-ons store, making this a whack-a-mole nightmare for security teams.Mozilla stated that it is:โข Using automated scanning toolsโข Relying on user reportsโข Tightening vetting procedures for crypto-related extensionsBut clearly, more must be done.๐ก๏ธ What You Can Do NowIf you use Firefox for crypto-related activity, pause and reassess your security posture. Here's what I recommend:๐ Action Why It MattersAvoid browser wallet extensions Especially on Firefox, until the dust settles. Use mobile apps or official websites.Install only from verified sources Check the publisher name and history. Don't trust reviews alone.Enable 2FA everywhere Adds a critical second layer to access.Use cold storage for large holdings If itโs not online, it canโt be drained.Report suspicious extensions Help Mozilla remove threats faster.๐งฐ Free Tool to Check for Scam WalletsAt scamhunter.ai, weโre fighting crypto scams head-on. Uppsala Security offers a free tool to:โข Scan suspicious wallet addressesโข View scam reportsโข Flag stolen assetsYou can try it free twice a day. Just paste in a wallet address and weโll show you what we know.๐จ Final ThoughtsThis latest wave of wallet-cloning extensions on Firefox is a wake-up call for the crypto industry. Browser-based wallets are convenient, but they also open up new attack surfaces.As always in crypto, convenience must be balanced with paranoia. Double-check everything. Trust no extension blindly. And if youโve ever typed a seed phrase into an extension, you should migrate your funds now.The attackers are evolving. So must our defenses.Stay safe, stay skeptical.
CBP ๋ชจ์๊ฑฐ ์ ํํ์ง ํ๋ฃจ๊ฐ ๋ค ๋์ด๊ฐ๋๋ฐ์ ์์ง๋ ์ง๊ฐ์ ์ฒด์ธ๋ฐ์ดํฐ ์ ๊ธ ์๋ผ์ฃ ?

๐บ [AMA] 10๋ถ ๋ค : ํ๊ตญ์ ์ด์์ค๋๋ผ ECLIPSE- ์ผ์: ์ค๋๋ฐค 11์- ์ฅ์: ์ฝ์ธ๊ฐ์ดํฌ์ ์คํ์ด์ค- ์๋: Nate, CMO of Eclipse์ด์ ์ฒด์ปค๋ ๋์ค๊ณ ์ฌ๋จ๋ ์ค๋ฆฝํ ์ดํด๋ฆฝ์ค๊ฐ ๊ณง ํ๊ตญ์ ์จ๋ค๊ธธ๋ AMA ์ค์ผ์ฅด์ ์ก์์ต๋๋ค. ์ฌ๋ฌ๊ฐ์ง ๊ถ๊ธํด ํ ์ฌ์๋ค๊ณผ ์ดํด๋ฆฝ์ค๊ฐ ๊ทธ๋์ ์ด๋ค ๊ฒ์ ํด์๋์ง์ ๋ํด ๋ฌป๋ ์๊ฐ์ ๊ฐ์ง ์์ ์ด๋ ์ดํด๋ฆฝ์ค ์๋ น๋ค์ ๋ง์ ์ฐธ์ฌ ๋ถํ๋๋ฆฝ๋๋ค!๐ ์ด๋ฒคํธ: ์คํ์ด์ค ๊ณต์ง ์๋ฌธ Like RT: ์ธ์ฆ์ท ๋ฐฉ์ ์คํ์ด์ค ์ฐธ์ฌ ์ธ์ฆ์ท ์ ์ถ: ๊ตฌ๊ธํผ ์์ฑ์ํ: ์ปคํผ 100์ + ํน์ ๋ชจ๋ฅผ ์คํ์ ๋ฆฌ์๋๋์ค์ ๋ง๋์~
์๋นํธ๋ผ ์ด๋๋ฆฌ์๋ง ์ถฉ๋ถํ๋ณด์ ํ๊ณ ์์ผ๋ฉด ๋๋ค์
