We’re glad to support in this case.🫡
🚨Social engineering + Malware are becoming increasingly sophisticated.
👉Always verify the source before downloading or running any software.
👉Protecting users requires cross-team collaboration — thanks @AnChainAI for working together.
Stay vigilant.🛡️
🚨 We helped a San Francisco crypto user who lost $1M in stablecoins after falling for a fake @LinkedIn recruiter.
💻 Malware disguised as an “interview tool” drained their wallet and laundered funds across chains.
✅ Verify recruiters
🚫 Never install unknown software
🔐 Secure your wallets
Huge thanks to our partners @MetaMask@SlowMist_Team !
Read more:
🔗 https://t.co/MeOZtwQ3rp
I just got drained for $996,000 🧵
I’m honestly still processing that this happened and even writing it out feels completely unreal.
I just spent the last 24 hours looking into it, wiping out all my devices, and moving my files.
Part of me was considering whether I should even reveal this or not but let this be a good wake up call for everyone in this space regarding security, because if it can happen to me, with all my experience in this space, it can happen to anyone.
If my loss prevents this from happening to even one person, then it wasn’t all for nothing.
Not asking for pity, money, or anything. I know I made a mistake. Just want to help others.
🥳Theme: RWA × DeFi × On-chain Security — Building a Closed Loop from Assets to Risk Control
🌟Highlights: Explore the latest trends in #RWA – #DeFi integration.
🎙️ Hosts: @AlloyX_Limited × @SlowMist_Team
🗓️ Sept 11, 16:00–18:00
📍 Central, Hong Kong
Register here 👉 https://t.co/OWOMpR8TFw
#CertiKInsight 🚨
Developer Qix- access tokens were compromised via phishing, and the attacker injected malicious code into the popular npm packages.
https://t.co/yISGBEehxU
The attacker appears to have only profited around 5 cents of ETH and $20 of memecoin, according to @_SEAL_Org.
Stay Vigilant!
🚨 ScamSniffer August 2025 Phishing Report
August losses: $12.17M | 15,230 victims
VS July: +72% in losses | +67% in victims
Key insight: Sharp escalation driven by EIP-7702 batch-signature scams and direct transfers to phishing contracts. 3 whale hits totaled $5.62M (46%).
https://t.co/Z5KxaEekuZ
A fun journey that started with bypassing Google's Play Integrity and ended with a vulnerability in the @myBraavos "Gasless" mechanism on @Starknet
Here’s the full write-up on how it could have been exploited:
https://t.co/k4qV3uGDVq
👀👀👀 A @justinsuntron-associated address (labeld as TRON DAO) was blacklisted after allegedly selling $WLFI
Here is the related tx:
https://t.co/HSd3WSSTmN
It was amazing that we could to turn the tide and have the best possible outcome for all. Huge shout out to @peckshield@hexagate_@HypernativeLabs@chaoslabs and the amazing Venus Community.
This would not have worked out if one piece wasn't in place.
Stay safe, everyone 💪
Update: Venus Protocol has been fully restored (withdrawals and liquidations resumed) as of 9:58PM UTC. ✅
The lost funds have been recovered under Venus' protection. ✅
Phishing Attack Updates + Lightning Vote (join the vote now!)
TLDR; A phishing attack on a user prompted a swift protocol pause to protect assets. We propose partial resumption for position adjustments and liquidation avoidance, plus force-liquidation of the attacker's wallet. Then, once security review is thoroughly completed, we will fully resume the protocol.
Voting plan:
1⃣[WITHIN 5 HOURS] Partial restoration of Venus Protocol (enabling repay debt/supply funds)
2⃣[WITHIN 7 HOURS] Recover stolen funds
3⃣[WITHIN 24 HOURS] Security review on Venus to prevent any replication of this attack on any other users.
4⃣Resume Venus fully - updates and timeline will be communicated via X
More details and vote here: https://t.co/DsOWX1302w
Today, a user suffered a devastating phishing attack, and @VenusProtocol has responded swiftly and responsibly by proposing an Emergency Vote — a commendable step to ensure Venus resumes safely while working to recover the user’s stolen funds.
Here is the vote details: https://t.co/X1YuU4pizi
Please vote to force-liquidate the hacker's position and recover the stolen funds. 🙏🙏🙏
#PeckShieldAlert A user of @VenusProtocol has been drained ~$27M in crypto after falling for a #phishing scam.
The victim approved a malicious transaction, granting token approval to the attacker's address (0x7fd8...202a) for asset transfer.
🚨August 2025 Web3 Security Recap🚨
📊According to SlowMist’s Hacked (https://t.co/e90CSvTm6B):
⚠️9 hacks ➡️ ~$70.73M lost
❄️$6.3M recovered/frozen
🎣Phishing losses via @realScamSniffer:
15,230 victims ➡️ ~$12.16M stolen
Major incidents:
• BtcTurk reportedly lost ~$54M after hot wallet compromise, its 2nd major breach in just over a year
• ODIN[.]FUN exploited for 58.2 BTC ($7M) via token price manipulation; >30 BTC later recovered
• BetterBank lost ~$5M due to a minting vulnerability, attacker later returned ~$2.7M worth of stolen tokens
• Credix exploited for ~$4.5M through admin wallet compromise; suspicions of an exit scam arose after the team vanished
Security Highlights:
💰Hot wallets at centralized platforms remain high-risk
⚠️Price manipulation and token minting flaws continue to be exploited
🎭Exit scams disguised as “hacks” further erode user trust
❄️Asset recovery remains rare and limited—prevention is key
✍️Full report:
https://t.co/okGM0eSLbm