This is why we're building Huntor.
A sandbox, a terminal, the freedom to investigate and find drain paths like this before you lose millions.
Create an account at https://t.co/KcxJ3WVcTK, DM us for $25 in credits to run a Standard scan the agent.
🚨 Alephium TokenBridge was reportedly exploited for ~$815K in about 7 minutes.
The scary part?
The bridge contract didn’t need to be “hacked” in the usual way.
The attacker reportedly got control of 3 out of 4 guardian keys.
That was enough to make fake bridge messages look valid...
5/ This is why bridge security is brutal.
The bug is not always inside one Solidity function.
Sometimes it lives in the assumptions around signers, thresholds, custody, relayers, and operational keys.
Attackers don’t need to break everything.
They need control of the part your system blindly trusts.
4/ Result:
13.76M wrapped ALPH reportedly minted unbacked.
Custody assets like USDT, USDC, WBTC and WETH were also unlocked.
The bridge followed the signatures.
That’s the problem.
If the trust layer is compromised, the contract can execute exactly as designed and still lose funds.
This is why we're building Huntor.
A sandbox, a terminal, the freedom to investigate and find drain paths like this before you lose millions.
Create an account at https://t.co/KcxJ3WVcTK, DM us for $25 in credits to run a Standard scan the agent.
🚨DxSale's legacy liquidity locker on BNB Chain was drained today..
~$1.74M pulled so far, ~$2.91M still exposed, ~$7.3M in old LP positions at risk across 1,400+ pools.
Here is how it happened.. 👇
After value leaves a contract, the record must die in the same transaction. A withdrawal has to be unrepeatable by construction, not by convention.
One missing state update turns a normal function into a faucet.
@chistormze Security can’t stay manual while attackers automate.
The solution is continuous autonomous review before launch, before upgrades, and before funds are at risk.
In other words, the solution is Huntor. 💎
Btw, we’re building Huntor to help reduce daily onchain hacks.
Autonomous Web3 AI security for smart contracts, dApps, and AI agents.
Coming soon on @base. 💎
For latest updates, join: https://t.co/n4cVAnf0Sg
Turn notifs on 🛡️
🚨 1/ Here’s how 86 Gnosis Safes got drained today for about $3M...
According to Blockaid, the exploit hit the SquidRouterModule on Ethereum and Base.
The attacker used a module execution path to pretend to be authorized delegates and force swaps from victim Safes.
6/ Security isn’t just about checking contracts one by one anymore.
You need to understand how wallets, modules, routers, pools, and permissions all work together.
That’s exactly the kind of context Huntor is being built to uncover.