
WATCHPUG
@WatchPug_
Followers
2K
Following
29
Media
12
Statuses
53
WATCHPUG is a security team that offers in-depth auditing for Solidity smart contracts.
EVM
Joined May 2021
Dear @paraswap, could you please display the full address in the warning box? So that 0xWho can reverse resolve the address to a readable name, which I rely on it to confirm the address.
2
4
8
a frontend hijacking attack on Convex. this is exactly why the wallet should display a human-readable ENS name for the smart contract address they are interacting with;. and the reason I added this feature to @TallyCash 3 months ago:
2
10
32
0xWho is an open-sourced Chrome extension:
github.com
Sorry, 0x who? Contribute to jack-the-pug/0xwho development by creating an account on GitHub.
1
2
9
RT @CurveFinance: This happened in the problem was them rolling a vulnerable LP token price oracle (sers, we have….
etherscan.io
Flash Loan 27,000 WBTC From Aave Protocol V2 | Success | Jun-16-2022 08:47:58 AM (UTC)
0
20
0
.@InverseFinance now believes the crv3c is worth much more than it's actual value, so the attacker can borrow out 10m DOLA with only $4.7m worth of collateral. that's ~$5m of bad debt to the protocol.
1
0
3
. @InverseFinance was exploited ~1.3hrs ago on a new cToken (anYvCrv3Crypto) they deployed and added to the comptroller 22 days ago. It's never been touched until this exploit. so this new cToken appears to be a pre-launch product.
1
1
1
RT @insuredao: We are honored to introduce the new ReportingDAO member, .@WatchPug_, a team of web3 security professionals!. In combination….
link.medium.com
Hi, InsureDAO community!
0
8
0
⚠️ Oct 20, 9 AM UTC, an attacker exploited PancakeHunny and stole 2.3M. The root cause: inappropriate usage of a low liquidity pool makes it vulnerable to price manipulation to create artificial profits. Read more:
watchpug.medium.com
The Exploit
1
2
7
WATCHPUG is proud to have received a quarter million ($250K) bug bounty award from @PancakeBunnyFin for a critical bug in the Zap function. Thank you! @PancakeBunnyFin @immunefi
Hi Bunny Fam! 🐰🚀. We would like to announce that we have just awarded a critical Immunefi bounty. The award was in relation to a bug in polyBUNNY zap function. The related contracts are now upgraded and the issues are resolved.
4
5
21
At 2 AM UTC on Aug 4, @Wault_Finance‘s WUSD on BSC was exploited and drained $800k (370 ETH) out of the WUSD/BUSD LP. WUSD is a stable coin backed by USDT and WEX. We believe it's an economic attack rooted in the design of WUSD. Read our analysis:
watchpug.medium.com
An economic attack rooted in the design of WUSD
0
2
5
RT @immunefi: Today, we want to share with you couple repos that will help you master blockchain pentesting and smart contract dev. https….
github.com
⟠ A curated list of awesome Solidity resources, libraries, tools and more - bkrem/awesome-solidity
0
55
0