0xdemonnn Profile Banner
0xDemøn Profile
0xDemøn

@0xdemonnn

Followers
305
Following
4K
Media
161
Statuses
3K

Security Researcher

Joined September 2013
Don't wanna be here? Send us removal request.
@0xdemonnn
0xDemøn
7 months
I managed to secure #1 place in this contest. Thank you for the opportunity given by @code4rena and @nudgexyz Many to comes in the future 🫡
@code4rena
Code4rena
7 months
The results of the $20,000 https://t.co/VOSbYO5ljq competitive audit are IN! Congratulations to all the wardens who submitted valid findings, especially to @0xdemonnn for securing first place & top hunter! Much respect to @nudgexyz for their strong dedication to the highest
14
3
61
@0xdemonnn
0xDemøn
11 days
Just updated my github page and I realize something, I need to work harder and more diligently to increase my achievements as an SR
0
0
6
@lookonchain
Lookonchain
23 days
The protocol @Balancer appears to have been exploited — about $70.6M in assets was transferred out, including: 6,587 $WETH($24.46 M) 6,851 $osETH($26.86 M) 4,260 $wstETH(~$19.27 M) https://t.co/oH4OuWSSbR
108
154
861
@0xdemonnn
0xDemøn
30 days
Even though the results are not very satisfying and there is still a lot to learn, this is my first Vyper contest and I am quite proud 😅 Only in web3 sec world, you can learn and earn money while in the learning process. Thanks to @sherlockdefi and @yieldbasis for the
5
0
19
@0xaudron
0xaudron
2 months
🚨NPM packages are compromised with malware Your dependencies could be infected right now without you knowing it. Check and scan your repo against 8200+ vulnerable dependencies containing malware from the recent and prior hacks. Scan your project repo in ~3 seconds :
8
94
396
@0xngmi
0xngmi is hiring
3 months
Explanation of the current npm hack In any website that uses this hacked dependency, it gives a chance to the hacker to inject malicious code, so for example when you click a "swap" button on a website, the code might replace the tx sent to your wallet with a tx sending money to
316
918
4K
@P3b7_
Charles Guillemet
3 months
🚨 There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised. The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk. The malicious payload works
3K
7K
19K
@nicht_tintin
tintinweb
3 months
1
5
12
@0xfrsmln
frs.eth 🦇🔊
3 months
avoid using yarn or npm for the next few hours!!!
1
2
8
@krakovia_evm
Krakovia
3 months
someone deployed a malware extension for @cursor_ai but seems he forgot to delete promotional messages and the clear-text payload lol extra loot: download booster script
9
41
255
@KasturiSec
kasturi
3 months
while you busy deciding whether do audit with us or not, we still cooking non stop on public competitions! congrats @0xdemonnn taking 2nd place in Allbridge Core Yield our DM are open if you need to book an audit 🫡
@0xdemonnn
0xDemøn
3 months
Thanks for the opportunity @sherlockdefi and @Allbridge_io
2
1
8
@0xdemonnn
0xDemøn
3 months
Thanks for the opportunity @sherlockdefi and @Allbridge_io
@sherlockdefi
SHERLOCK
3 months
🏆 @allbridge_io Audit Contest Results 🏆 Congrats to: 1. @Alicrali333, @EgisSec, @VeerendraVamshi, @X0sauce, @xiaoming9090, BobbyAudit - $700 🥇 2. 0xloophole, @0xdemonnn, @0xomeiza, @MishkatM80976, Emine, Hurricane, MysteryAuditor, WillyCode20 - $549 🥈 $19,000 rewards ➡️
8
0
25
@0xdemonnn
0xDemøn
4 months
Filling the afternoon with testing codebases while listening @bountyhunt3rz So much alpha about web3sec and life too from @0xFlint_ https://t.co/bvjgKwa0hM
0
1
7
@0xdemonnn
0xDemøn
5 months
congrats bro's, Kasturi aim higher @0xfrsmln @boserba77
@KasturiSec
kasturi
5 months
Congrats for our Security Researcher @0xfrsmln securing 3rd place in @BreederDodo cross chain swap!
3
0
5
@0xdemonnn
0xDemøn
5 months
🤝
0
0
0
@trust__90
Trust
5 months
Imagine a world where saying researchers should not be abused is a controversial take.. That's what happens when a firm with unlimited cash shows up and buys its way into market dominance. Dumping on researchers with extractive policies simply becomes the new Nash equilibrium
@PatrickAlphaC
Patrick Collins
5 months
Hot takes that I think shouldn’t be hot, and should be “the default” 1. The contest platform is ultimately responsible for the payout. It is the contest platform that promises payout, so if a platform doesn’t pay out, no matter the drama, it is the platform’s fault. 2. The
2
5
87
@PatrickAlphaC
Patrick Collins
5 months
Hot takes that I think shouldn’t be hot, and should be “the default” 1. The contest platform is ultimately responsible for the payout. It is the contest platform that promises payout, so if a platform doesn’t pay out, no matter the drama, it is the platform’s fault. 2. The
21
53
423
@0xdemonnn
0xDemøn
5 months
Respect 🫡
@immunefi
Immunefi
5 months
Statement: A. Spectra Finance contracted with Immunefi to run an Audit Competition. Per our process, Immunefi provided Spectra the program draft that included the reward structure and linked to our standard competition reward terms. The Spectra team, including their CEO,
0
0
3
@jack__sanford
Jack Sanford 🛡️
5 months
52
45
499
@0xdemonnn
0xDemøn
5 months
What a big move 🔥
@code4rena
Code4rena
5 months
Code4rena will run audit contests for free, as public goods. 100% of funds from sponsors will go directly to auditors and judges. We won't take any cut. Why? 1. Competitions are commodities. They're CRUD apps. Why should builders pay premium for a website just to submit bugs?
0
0
5