Igor Igamberdiev Profile Banner
Igor Igamberdiev Profile
Igor Igamberdiev

@FrankResearcher

Followers
53,116
Following
32
Media
579
Statuses
1,060

Head of Research at @wintermute_t , Research Collaborator at @paradigm , ex @TheBlock__ 𝝪(𝞂ₜ, 𝝩) → 𝞂ₜ₊₁ Views are my own

Joined March 2019
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
@FrankResearcher
Igor Igamberdiev
3 years
LOOOOL, @VitalikButerin removed liquidity from the SHIB pool
Tweet media one
@FrankResearcher
Igor Igamberdiev
3 years
2/8 49.5% of the token supply was added to Uniswap after token creation. LP tokens from this pool were sent to @VitalikButerin along with the remaining SHIB. Therefore, Vitalik, instead of selling, can simply withdraw 93% of the pool liquidity without any price impact ($118M).
Tweet media one
18
17
167
178
576
2K
@FrankResearcher
Igor Igamberdiev
2 years
Imagine stealing 600 million 6 days ago and depositing money on @FTX_Official
Tweet media one
@Ronin_Network
Ronin
2 years
The Ronin bridge has been exploited for 173,600 Ethereum and 25.5M USDC. The Ronin bridge and Katana Dex have been halted.
649
1K
4K
145
363
2K
@FrankResearcher
Igor Igamberdiev
3 years
How many people want to learn how to do on-chain analysis like a pro?
201
33
2K
@FrankResearcher
Igor Igamberdiev
3 years
IronBank ($CREAM) was exploited on $37.5M, let’s take a quick look at what happened.👇 1/ Attacker used Alpha Homora for borrowing sUSD from IronBank. Each time they borrow twice as much as in the previous one.
65
428
1K
@FrankResearcher
Igor Igamberdiev
3 years
Looks like @CreamdotFinance is dead boys
Tweet media one
159
328
1K
@FrankResearcher
Igor Igamberdiev
2 years
1/5 The new popular @beanstalkfarms protocol lost $181M+ in today’s exploit, but the attacker only gained $76M. Let’s figure out what happened👇
Tweet media one
89
341
1K
@FrankResearcher
Igor Igamberdiev
2 years
Before the hack, the BNB bridge exploiter registered as a relayer for this bridge
Tweet media one
64
281
1K
@FrankResearcher
Igor Igamberdiev
3 years
Ok, new DeFi exploit. Victim: - @iearnfinance Attacker profit: - 513k DAI - 1.7M USDT - remaining 506k 3CRV (~$1) To obtain such a profit, the attacker executed 11 transactions. Below is a very superficial explanation of what was happening in these transactions👇
50
314
1K
@FrankResearcher
Igor Igamberdiev
2 years
1/8 Everyone has been waiting for this for a long time, and now @paraswap practically launched his token (PSP), which includes a retroactive airdrop and, apparently, some staking for Paraswap pools Let’s see what we can learn from these unverified contracts👇
Tweet media one
64
282
1K
@FrankResearcher
Igor Igamberdiev
2 years
1/5 Let’s look at how @jump_ tried to defend the UST peg a week ago. They used at least three addresses on Ethereum and spent $682.5M+ in various stablecoins. Basically, they were adding one-side liquidity in USDC since the Curve DAI/USDC/USDT pool was already imbalanced.
Tweet media one
126
281
1K
@FrankResearcher
Igor Igamberdiev
1 year
1/6 Some personal news. Today is my last day at @TheBlock__ and I’m joining @wintermute_t as Head of Research and @paradigm as Research Collaborator
69
45
996
@FrankResearcher
Igor Igamberdiev
3 years
Not impressed Another guy put 37.65 ETH and now it's worth $2.05 billion
Tweet media one
@sassal0x
sassal.eth/acc 🦇🔊
3 years
276 days ago someone put 10 ETH into SHIB and now it's worth $460 million. How's your life going?
125
280
3K
46
151
909
@FrankResearcher
Igor Igamberdiev
2 years
Should @a16z ' Github account be suspended for using the Tornado code?
Tweet media one
@semenov_roman_
Roman Semenov 🌪️
2 years
My @GitHub account was just suspended 🤷 Is writing an open source code illegal now?
462
1K
5K
40
120
925
@FrankResearcher
Igor Igamberdiev
3 years
1/9 Today we have witnessed the manipulation of XVS price —  the governance token of Venus Protocol on BSC. This incident resulted in $200M+ DeFi liquidations and a $100M+ of protocol bad debt. As usual, let’s analyze this situation below👇
Tweet media one
49
325
912
@FrankResearcher
Igor Igamberdiev
1 year
1/7 Many post-mortems after the Terra events have focused on “Wallet A” which played a large role in UST depegging "Wallet A" swapped 85M UST for USDC and imbalanced the UST/3CRV Curve pool There is a good chance this wallet is related to @JaneStreetGroup
Tweet media one
47
234
892
@FrankResearcher
Igor Igamberdiev
3 years
1/7 Another flash loan attack on a major DeFi protocol on BSC. Today $7.2M was stolen from @burger_swap in 14 transactions. Let’s see what’s happened👇
Tweet media one
58
236
841
@FrankResearcher
Igor Igamberdiev
3 years
1/8 In the past few days, meme token SHIB has been a source of high gas prices and incredible profits for some early adopters. Let’s take a look at some data to understand what’s going on👇
Tweet media one
15
210
782
@FrankResearcher
Igor Igamberdiev
3 years
1/8 New weekend - a new attack on BSC DeFi protocol. Today $6.2M in BUSD was stolen from Belt Finance in 8 transactions. Below is what happened👇
Tweet media one
36
212
759
@FrankResearcher
Igor Igamberdiev
3 years
1/6 Today, BUNNY tokens worth $1B+ were minted from Bunny Finance on BSC, resulting in $40M+ was stolen: - 114k WBNB ($40M) - 697k BUNNY For this reason, the BUNNY price fell from $146 to $6👇
Tweet media one
38
208
699
@FrankResearcher
Igor Igamberdiev
3 years
1/6 Many talk about the @0xPolygon success and the record number of transactions, but is everything really so good? Let’s see how arbitrage bots spammed Polygon with failed transactions👇
Tweet media one
41
145
698
@FrankResearcher
Igor Igamberdiev
9 months
1/12 Alright, I've been sitting on this news all day, but let's look at the @BaldBaseBald deployer. This is definitely someone from Alameda, but I don't think we can safely say that this is @SBF_FTX (even though he is a psycho) Let's go👇
Tweet media one
25
131
673
@FrankResearcher
Igor Igamberdiev
3 years
1/7 Rari Capital lost a lot of funds as a result of a complex exploit, right? However, things are far from simple, and we witnessed the first cross-chain exploit, so let’s see how it went👇
Tweet media one
12
175
656
@FrankResearcher
Igor Igamberdiev
3 years
1/3 Looks like Larry Sukernik, one of the multi signers behind the $20M DeFi education fund, dumped UNI five hours before the $10M OTC sale.
Tweet media one
30
90
617
@FrankResearcher
Igor Igamberdiev
2 years
1/5 We’re back to interesting exploits, and @InverseFinance users lost money today. As a result, $15.6M was stolen in the form of: - 1588 ETH - 94 WBTC - 4M DOLA - 39.3 YFI
Tweet media one
34
168
593
@FrankResearcher
Igor Igamberdiev
3 years
1/10 So, Uranium Finance (another Uniswap v2 fork on BSC) was exploited for $51M, right? Nope, everything is much more complicated. Let’s figure out what happened.👇
Tweet media one
20
173
575
@FrankResearcher
Igor Igamberdiev
3 years
So what happened to Furuсombo👇 An attacker using a fake contract made Furuсombo think that Aave v2 has a new implementation. Because of this, all interactions with ‘Aave v2’ allowed transfers approved tokens to an arbitrary address.
Tweet media one
27
173
537
@FrankResearcher
Igor Igamberdiev
2 years
Below is the code that was used in today's attack through ads on crypto websites like @coingecko or @etherscan The attacker wanted to get tokens approvals or perform swaps through DEXs to their address (it is not hardcoded, since it was pulled from API)
Tweet media one
31
185
514
@FrankResearcher
Igor Igamberdiev
2 years
I even started to get a little bored, but half an hour ago $31M were stolen from @MonoXFinance on Polygon and Ethereum. - 5.7M MATIC ($10.5M) - 3.9k WETH ($18.2M) - 36.1 WBTC ($2M) - 1.2k LINK ($31k) - 3.1k GHST ($9.1k) - 5.1M DUCK ($257k) - 4.1k MIM ($4.1k) - 274 IMX ($2k)
Tweet media one
Tweet media two
58
138
485
@FrankResearcher
Igor Igamberdiev
3 years
1/9 Another DeFi protocol xToken was exploited today and almost $25 million was stolen. The attacker was smart enough (or close enough to this project) to use two different exploits for two projects’ tokens.👇
Tweet media one
27
136
464
@FrankResearcher
Igor Igamberdiev
3 years
Looks like @jack 's exchange of preference is Kraken. I don’t know if Jack uses Ethereum, but he used a fresh address specifically to dump the ETH he made from selling his NFT tweet. Good wallet privacy management
Tweet media one
20
48
453
@FrankResearcher
Igor Igamberdiev
3 years
Since launching MetaMask Swaps in October, MetaMask earned almost $2.5M in ETH and $1.5M in various tokens. This is 3x Kyber Network fees for the same period. Wen Metamask token?
Tweet media one
Tweet media two
23
63
450
@FrankResearcher
Igor Igamberdiev
5 months
1/2 Ok, the first connect-kit version with the drainer (1.1.6) was added to the npm registry at 9:44am UTC Better to check that you have not interacted with any UIs starting this time
@FrankResearcher
Igor Igamberdiev
5 months
I don't think that @Ledger made all these updates...
Tweet media one
11
36
222
24
130
428
@FrankResearcher
Igor Igamberdiev
2 years
1/3 Today @Moola_Market has been exploited for $8.4M: - 8.8M CELO ($6.5M) - 765k cEUR ($0.7M) - 1.8M MOO ($0.6M) - 644k cUSD ($0.6M) It was an incredibly simple attack👇
Tweet media one
63
102
394
@FrankResearcher
Igor Igamberdiev
3 years
1/6 Big Data Protocol on crazy hype, huh? BDP contract now holds $6.2B, collected in just a few days, which puts the project on par with MakerDAO and WBTC. Let’s take a look at the four addresses that collectively own 41% of this TVL and dump BDP as soon as they claim it.
Tweet media one
14
84
377
@FrankResearcher
Igor Igamberdiev
3 years
It seems that @justinsuntron did not really like that I disclosed his address for BDP farming, and therefore he began to use a new one. h/t @DeBankDeFi
Tweet media one
@FrankResearcher
Igor Igamberdiev
3 years
2/6 One of the addresses deposited 25% of the current TVL ($1.6B). This is a lot of money and most likely belongs to @justinsuntron , who tried to buy @jack NFT tweet from this address. He added to the BDP farm contract: - 661.8k WETH - 228.9M USDT - 161.6M USDC - 150 WBTC
Tweet media one
8
12
108
21
52
380
@FrankResearcher
Igor Igamberdiev
3 years
1/5 Two hours ago, someone sold a huge amount of social tokens issued on Roll platform. As a result, an attacker earned almost 3k ETH ($5.7M), of which 700 have already been sent to Tornado Cash. Most of social token prices dumped as a result.
Tweet media one
24
136
379
@FrankResearcher
Igor Igamberdiev
3 years
1/8 Another weekend with a DeFi exploit on BSC, and this time the AMM called vSwap from @value_defi is in trouble. About $11M was stolen today from non 50/50 pools, in addition to $6M already lost this week as a result of contract reinitialization. Let’s see what happened👇
Tweet media one
11
113
386
@FrankResearcher
Igor Igamberdiev
4 years
1/11 Okay, MEV is coming MEV is a consequence of the fact that miners (pool operators) have the right to choose the tx order in a block. They can be the first to: - execute arbitrage - get access to token offerings - perform liquidation Plus, they may not pay a fee for this.
Tweet media one
23
136
379
@FrankResearcher
Igor Igamberdiev
3 years
10/10 Since the team fixed this bug that led to the exploit, they should have known about it for sure. In this case, the best option would be a white hack not to jeopardize users’ funds. Since there was no white hack, I tend to believe that it was a rug pull.
18
23
381
@FrankResearcher
Igor Igamberdiev
2 years
Looks like a stable bank run from @AaveAave v2 Mainly thanks to @justinsuntron 😎
Tweet media one
24
47
348
@FrankResearcher
Igor Igamberdiev
3 years
1/7 DeFi exploits have recently picked up significantly. So far, there has been at least ~$370M withdrawn from DeFi due to exploits. In the first part of my latest report, you can quickly look at how the attack proceeds and how it is investigated.
13
93
353
@FrankResearcher
Igor Igamberdiev
1 year
1/7 Euler lost $197M in 6 tokens: - 73.8k wstETH ($116M) - 34.2M USDC - 846 WBTC ($18.6M) - 8k WETH ($12.6M) - 8.9M DAI - 3.8k stETH ($6M) Also, EULER price fell by 52%👇
@eulerfinance
Euler Labs🛢️🇬🇧
1 year
We are aware and our team is currently working with security professionals and law enforcement. We will release further information as soon as we have it.
111
104
532
21
111
339
@FrankResearcher
Igor Igamberdiev
3 years
Each time the attacker had more 3crv tokens, which he was later able to swap for stablecoins. Lol, it's funny how so many flash loans have been used. This means that my new research piece about flash loans, which will be released very soon, will be relevant.
10
9
345
@FrankResearcher
Igor Igamberdiev
3 years
1/12 I’m finally home, which means it’s time for a thread about a four-hour attack on Spartan Protocol that resulted in $30.5M being stolen. @Peckshield has already written about the root cause, but there will be more details here as usual. Enjoy👇
Tweet media one
11
100
331
@FrankResearcher
Igor Igamberdiev
2 years
How confident do you need to be to buy USDC on one of the ETH POW forks?
Tweet media one
29
18
305
@FrankResearcher
Igor Igamberdiev
2 years
5/5 What do we know now?👇 - Despite the use of capital almost equal to the entire UST pool size, it was impossible to keep the peg. - Jump lost hundreds of millions, which doesn’t even include CEXs. - They control 36% of the total staked LUNA.
22
29
304
@FrankResearcher
Igor Igamberdiev
3 years
One of the dumbest things I've seen
@0xedenau
Eden Au
3 years
It seems like the @THORChain team were well aware of the danger of using tx.origin but they were okay with it 🤔
Tweet media one
17
37
200
7
33
296
@FrankResearcher
Igor Igamberdiev
3 years
3/8 The top 50 ‘diamond hands’ by the number of tokens have a paper profit ranging from $5M to $2.5B, with an average of $65M. Btw, someone turned $17 into $6.5M, and they can get $4.2M with current liquidity.
Tweet media one
8
38
266
@FrankResearcher
Igor Igamberdiev
2 years
1/5 Do you like fancy words like MEV and Flashbots and want to have ‘stress-free passive income’? Then be careful, and don’t get caught by scammers like @mevbots . For half a year of existence, 4.4k addresses independently transferred 1.8k ETH ($2M+) to them👇
Tweet media one
36
63
229
@FrankResearcher
Igor Igamberdiev
2 years
8/8 The final tokenomics and the ability to claim tokens are not yet available (due to the absence of Merkle data), but it has already become clear that $WEN is really coming soon
@paraswap
ParaSwap
2 years
$WEN ⁉️
79
89
695
20
9
248
@FrankResearcher
Igor Igamberdiev
3 years
Over the past two and a half years, the number of addresses interacting with DeFi protocols has grown from several thousand to over three million. For this reason, over the past few months, I have been fascinated by researching the various characteristics of protocol userbases.
Tweet media one
6
66
257
@FrankResearcher
Igor Igamberdiev
2 years
The Wintermute exploiter has one day to return funds👀
Tweet media one
38
27
251
@FrankResearcher
Igor Igamberdiev
3 years
1/6 I’m very excited to release new “DeFi Protocol Revenue” charts in @TheBlock__ data dashboard. I have been collecting this data from Ethereum in parallel with all other work for two months now, so the release of these charts is very important for me.
Tweet media one
9
67
257
@FrankResearcher
Igor Igamberdiev
6 months
1/6 Sad, but @raft_fi was exploited, and the attacker was able to mint 6.7 uncollateralized R stablecoin The twist is that they converted them into ETH, which was sent to the null address, but first things first👇
@raft_fi
Raft
6 months
We are aware of a potential security vulnerability. We are currently investigating and will provide an update as soon as we can.
15
21
79
9
54
260
@FrankResearcher
Igor Igamberdiev
3 years
1/5 How can Defi live without new hacks, right? The new victim is ForceDAO, who didn’t provide the necessary checks in a contract code. Anyone could call the function “making a deposit” even without having FORCE. However, the received xFORCE could be used to obtain real FORCE.
Tweet media one
12
63
255
@FrankResearcher
Igor Igamberdiev
2 years
👀
Tweet media one
19
29
250
@FrankResearcher
Igor Igamberdiev
3 years
1/9 I looked at my calendar and realized that it was time for a little personal story. It is about how exactly a year ago I quit my job at the most unsuitable moment and what happened in the end. 🧵
Tweet media one
22
39
251
@FrankResearcher
Igor Igamberdiev
3 years
@VitalikButerin He dumped AKITA
Tweet media one
13
28
245
@FrankResearcher
Igor Igamberdiev
3 years
1/9 Today I’m starting a new chapter in my life by joining @TheBlock__ family as a Research Analyst. I am very grateful to @lawmaster and all the rest of the team who supported the materials that I published here. Also from today, I will be using my real name Igor on Twitter.
14
21
237
@FrankResearcher
Igor Igamberdiev
5 months
I don't think that @Ledger made all these updates...
Tweet media one
@MatthewLilley
I'm Software 🦇🔊
5 months
🚨🚨🚨 RED ALERT 🚨🚨🚨: Do not interact with ANY dApps until further notice. It appears that a commonly used web3 connector has been compromised which allows for injection of malicious code affecting numerous dApps.
515
3K
6K
11
36
222
@FrankResearcher
Igor Igamberdiev
3 years
. @justinsuntron trivially put about a $1B into @LiquityProtocol . Another $2B are in @Ellipsisfi on BSC. The rich get richer, right?
Tweet media one
@whale_alert
Whale Alert
3 years
🚨 🚨 🚨 🚨 🚨 🚨 🚨 🚨 🚨 🚨 440,000 #ETH (938,057,953 USD) transferred from unknown wallet to unknown wallet
27
43
324
14
37
223
@FrankResearcher
Igor Igamberdiev
3 years
Two failed transactions, why not use admin privileges?
Tweet media one
13
18
214
@FrankResearcher
Igor Igamberdiev
3 years
1/9 One of the largest crypto market makers is Wintermute ( @wintermute_t ). They are currently #1 on Bitfinex based on current month volume, also very active on FTX, and responsible for 40% of dYdX volume in 2020. Let’s see what we can find out from their Ethereum addresses.👇
Tweet media one
3
37
219
@FrankResearcher
Igor Igamberdiev
4 years
$ENM hacker used Tornado to fund his address a week ago. Right after that, he claimed $UNI tokens for one of arbitrage contracts and withdrew them to himself in another tx by simulating arb. In theory, this claim could be a hack, which is why a mixer might have been used.
Tweet media one
Tweet media two
11
59
203
@FrankResearcher
Igor Igamberdiev
2 months
1/9 The @Starknet Provisions Program is here, and 1.3M addresses can claim their part of 720M STRK in one week With the pre-launch price from @aevoxyz , the program size is $1.2B, nearly matching @arbitrum ’s So let’s extract insights from the distribution data
Tweet media one
17
18
208
@FrankResearcher
Igor Igamberdiev
3 years
What was stolen ($14M+): - 3,9k stETH - 2.4M USDC - 649k USDT - 257k DAI - 26 aWBTC - 270 aWETH - 296 aETH - 2.3k aAAVE - 4 WBTC - 90k CRV - 43k LINK - 7.3k cETH - 17.2M cUSDC - 69 cWBTC - 142.2M BAO - 38.6k PERP - 30.4k COMBO - 75k PAID - 225k UNIDX - 342 GRO - 19k NDX
15
47
188
@FrankResearcher
Igor Igamberdiev
3 years
Looks like casual rug pull. PAID deployer made an attacker the owner of PAID admin contract. This attacker deployed a new implementation contract for PAID token and minted almost 60M tokens.
Tweet media one
@ricosoon
soon
3 years
LOOKS LIKE @paid_network WAS EXPLOITED DO NOT BUY PAID AND REMOVE LIQUIDITY ASAP
2
4
10
22
47
184
@FrankResearcher
Igor Igamberdiev
3 years
9/9 I am sure that the actual damage from this case is greater than this figure, but the continuation of the analysis takes more time. Perhaps later, I will find time to calculate all losses, as I did with Black Thursday.
17
15
188
@FrankResearcher
Igor Igamberdiev
3 years
8/8 According to Nansen, out of the Top 10 traders’ balances, only one sold tokens in the last week. As already mentioned, the main reason for this is the very low liquidity, which will not allow to cash out in size. Let’s see what happens when retail interest disappears
Tweet media one
17
16
181
@FrankResearcher
Igor Igamberdiev
3 years
1/6 MakerDAO community was able to convince @a16z to start participating in governance. Five days ago, a16z locked 20k MKR and voted for the current executive proposal. But no one seems to have noticed that before that they also locked in some profits from their investments.👇
Tweet media one
5
38
180
@FrankResearcher
Igor Igamberdiev
2 years
Tweet media one
9
10
176
@FrankResearcher
Igor Igamberdiev
3 years
Good deed
Tweet media one
4
20
174
@FrankResearcher
Igor Igamberdiev
3 years
6/6 While scaling solutions have successfully lowered fees, they are already starting to run into problems due to adverse activity. My user experience on BSC continues to deteriorate with each day, so it seems like the same will happen with Polygon.
18
12
180
@FrankResearcher
Igor Igamberdiev
9 months
Tweet media one
10
42
152
@FrankResearcher
Igor Igamberdiev
3 years
FinNexus (FNX) contract deployer changed the token owner to some address on Ethereum and BSC. This address minted: - 323M FNX ($6M) on Ethereum - 60M FNX ($1.6M) on BSC and started dumping tokens. Rug pull or StOlEn PrIvAtE kEy?
Tweet media one
20
28
166
@FrankResearcher
Igor Igamberdiev
3 years
. @1inchExchange token is almost launching. In addition to the 1inch token, 1inch distribution contract and a set of governance and staking contracts were deployed. Get ready to give liquidity into pools with YFI, USDT, USDC, WBTC, DAI, and ETH on Mooniswap to farm 1inch.
Tweet media one
Tweet media two
Tweet media three
Tweet media four
12
28
167
@FrankResearcher
Igor Igamberdiev
3 years
2/8 49.5% of the token supply was added to Uniswap after token creation. LP tokens from this pool were sent to @VitalikButerin along with the remaining SHIB. Therefore, Vitalik, instead of selling, can simply withdraw 93% of the pool liquidity without any price impact ($118M).
Tweet media one
18
17
167
@FrankResearcher
Igor Igamberdiev
2 years
The question is how did the exploiter validate a Merkle proof that he initiated a large deposit in one of the extremely old blocks? (Bug in a MerkleProof contract?)
9
15
168
@FrankResearcher
Igor Igamberdiev
3 years
1/ Flash loaned 116k ETH from dYdX 2/ Flash loaned 99k ETH from Aave v2 3/ Borrow 134M USDC and 129M DAI using ETH as collateral on Compound 4/ Add 134M USDC and 36M DAI to 3crv Curve pool 5/ Withdraw 165M USDT from 3crv Curve pool 6/ Repeat five times👇
4
10
165
@FrankResearcher
Igor Igamberdiev
3 years
If you don't like Ethereum so much, why, instead of supporting DeFi copycats on your blockchain, you make money on competitor's blockchain?
9
8
159
@FrankResearcher
Igor Igamberdiev
9 months
In the meantime, it seems like @LeetSwap has been exploited
Tweet media one
10
28
162
@FrankResearcher
Igor Igamberdiev
7 months
1/5 Imagine if you could bet on a coin flip but couldn’t lose anything This is how someone stole around $25k from dice9win today, with another $200k was saved by SEAL 911 members Let’s figure out how it works (we have the team's approval)👇
@pcaversaccio
sudo rm -rf --no-preserve-root /
7 months
Today is a historic moment for SEAL 911 as it was the first incident where we were able to prevent damage _before_ the attack was carried out. h/t @FrankResearcher for helping with this incident & the anon community member for the intel!
Tweet media one
9
33
227
12
27
162
@FrankResearcher
Igor Igamberdiev
3 years
9/ Stablecoins have been deposited to Aave v2, 1k ETH to IronBank deployer, 1k ETH to Homora deployer, 220 ETH to Tornado, 100 ETH granted to Tornado and almost 11k ETH remain on the exploiter balance.
Tweet media one
17
6
153
@FrankResearcher
Igor Igamberdiev
3 years
8/8 This is not the first and far from the last time that project teams fork someone else’s code without a deep understanding of its work. It’s pretty foolish to think that CZ will save you if you mindlessly deposit money into projects with anon devs or obscure teams.
7
18
158
@FrankResearcher
Igor Igamberdiev
3 years
Tx to Coinbase
Tweet media one
11
8
155
@FrankResearcher
Igor Igamberdiev
3 years
7/7 The interoperability between DeFi protocols is becoming more complex, which opens up new vectors of attacks. This attack was similar in difficulty to the Pickle Evil Jar and will become even more frequent in the future.
7
6
151
@FrankResearcher
Igor Igamberdiev
3 years
1/8 I noticed a few days ago the use of MEV sandwiching and was preparing a Twitter thread but got frontran by @fifikobayashi . In any case, I have additional insights regarding this situation and the current MEV state in general. Let’s go👇
@fifikobayashi
Fiona Kobayashi 🧠
3 years
For those of you wondering what MEV sandwiching looks like in the wild: 1. Hop onto block #11955959 2. Go to the last page and look at the 3 oldest tx's 3. It starts with the victim's tx in the middle buying POLK tokens on uniswap
Tweet media one
7
41
189
5
48
153
@FrankResearcher
Igor Igamberdiev
2 years
@FTX_Access @jump_ They withdrew stablecoins from CEXs, and I think you have more answers than I...
Tweet media one
7
2
150
@FrankResearcher
Igor Igamberdiev
1 year
1/10 For more than a week, someone has been trying to carry out a governance attack on @SwerveFinance (a dead Curve clone) and steal $1M+ in various stablecoins Let’s figure out why he didn’t succeed and also find out who the exploiter is👇
@spreekaway
Spreek
1 year
🚨Swerve Finance is facing a likely governance attack. If for some reason you still have money there, would recommend withdrawing immediately.
Tweet media one
13
41
125
11
27
151
@FrankResearcher
Igor Igamberdiev
3 years
He dumped SHIB
Tweet media one
12
13
144
@FrankResearcher
Igor Igamberdiev
2 years
7/8 The second one (0x3b45...) also had a lot of activity on Paraswap and made five deposits in Tornado Cash a few minutes before they were withdrawn to a new address. Bad opsec😢
Tweet media one
3
4
144
@FrankResearcher
Igor Igamberdiev
3 years
3/3 Consider four transactions: - Larry received UNI from UGP address (18 days ago) - sent 0.05 ETH on DeFi education fund address (16 hrs ago) - swapped UNI on $50k using Uni v3 (15 hrs 55 mins ago) - executed the $10M OTC deal (10 hrs 45 mins ago)
Tweet media one
Tweet media two
Tweet media three
Tweet media four
5
6
146
@FrankResearcher
Igor Igamberdiev
3 years
Preparing to SHIB dump on Uni v3
Tweet media one
13
17
142
@FrankResearcher
Igor Igamberdiev
3 years
1/8 Time to do a quick overview of my research on DeFi liquidations. Why are liquidations needed, how they work, how keepers harm the Ethereum ecosystem, and as always you can learn much more in 5–10 minutes of reading this piece. But a summary here:
4
24
141
@FrankResearcher
Igor Igamberdiev
3 years
Donation to Gitcoin
Tweet media one
1
9
136
@FrankResearcher
Igor Igamberdiev
3 years
Lol, VIP farmer left
Tweet media one
4
13
133
@FrankResearcher
Igor Igamberdiev
2 years
6/* UPD: The exploiter initially was funded from Tornado Cash, sent ETH through Synapse to Arbitrum, and withdrew "clean" funds to Ethereum
Tweet media one
16
7
138
@FrankResearcher
Igor Igamberdiev
2 years
For some reason, he was using the same block from two years ago
Tweet media one
Tweet media two
Tweet media three
8
16
134
@FrankResearcher
Igor Igamberdiev
2 years
1/9 Crypto has existed for more than ten years, but we have not yet seen a real adoption. One of the main issues is a rather high entry threshold and the lack of high-quality data. @TheBlock__ is solving exactly that, and you are the one who can help bring adoption closer👇
24
26
134