p_tsanev Profile Banner
Plamen Tsanev Profile
Plamen Tsanev

@p_tsanev

Followers
1K
Following
5K
Media
69
Statuses
1K

Smart Contract Security Researcher 🛡️ @Immunefi Associate All Star @CertoraInc @CyfrinUpdraft alumni

Check out my work:
Joined May 2023
Don't wanna be here? Send us removal request.
@p_tsanev
Plamen Tsanev
3 months
Your boy has been inactive for some weeks, but he is also proud to announce he is locked in 🔒 As of the past 2 weeks, he has officially become a full-time security researcher at @CertoraInc We are in the deep end now, the skillset is expanding rapidly. It’s exciting and
22
2
166
@Marcus_Balancer
Marcus | Balancer 🦇🔊
3 days
The Certora team has been a steadfast partner from the early days. As soon as the incident surfaced they spared no efforts, jumped in and worked side by side with us. Grateful to them and to everyone supporting Balancer.
@CertoraInc
Certora
3 days
Since Monday’s @Balancer v2 exploit, we’ve worked hand in hand with their team to develop the first root-cause analysis of the issue, identify all affected and potentially vulnerable pools, and determine whether v3 was susceptible to the same attack. Our analysis breaks down
0
2
44
@CertoraInc
Certora
3 days
Since Monday’s @Balancer v2 exploit, we’ve worked hand in hand with their team to develop the first root-cause analysis of the issue, identify all affected and potentially vulnerable pools, and determine whether v3 was susceptible to the same attack. Our analysis breaks down
Tweet card summary image
certora.com
Certora’s in-depth analysis of the Balancer v2 exploit — what caused it, and how v3’s redesign prevents similar hacks.
8
39
191
@SagivMooly
Mooly Sagiv @ TLV
6 days
Balancer V3 was designed with our help to avoid theoretical incidents exactly like the one we saw yesterday in @balancer V2. We can assure you that V3 pools don't have this bug. We're working on a post-mortem that explains the exploit and lessons learned, and will share it soon.
@Balancer
Balancer
6 days
Today, around 7:48 AM UTC, an exploit affected Balancer V2 Composable Stable Pools. Our team is working with leading security researchers to understand the issue and will share additional findings and a full post-mortem as soon as possible. Because these pools have been live
9
10
174
@0xCharlesWang
CharlesWang
6 days
Do we have a security crisis due to today’s Balancer exploit? Is the defi space considered as completely high risk now? In my opinion, this is not true and I collected some facts and thoughts. This appears to be a very sophisticated exploit, not a trivial oversight. We don’t
19
11
112
@MoveMav
MoveMaverick
9 days
🚨 Move Vulnerability Database v1.0 is LIVE! 🚨 🔹 128 Critical & High findings 🔹 77 public Move audit reports (mostly Sui) 🔹 Mediums & 76 Aptos reports coming soon 🔜 📖 Readable: https://t.co/vDkkrv8TqV 💾 Full DB: https://t.co/X2heO2fEA5 #Sui #Move
Tweet card summary image
github.com
Move Vulnerability Database. Contribute to MoveMaverick/move-vulnerability-database development by creating an account on GitHub.
5
19
136
@p_tsanev
Plamen Tsanev
7 days
0
1
6
@immunefi
Immunefi
10 days
"You’re absolutely right — that was an infinite mint. My mistake."
@OpenAI
OpenAI
10 days
Now in private beta: Aardvark, an agent that finds and fixes security bugs using GPT-5. https://t.co/xwtJhfDM3X
11
12
139
@p_tsanev
Plamen Tsanev
9 days
Another Friday night, another writing of walls of text on Telegram to the devs of the project I am auditing. What are you guys up to tonight?
0
0
2
@CertoraInc
Certora
11 days
Aave V4 fundamentally changes DeFi lending. Liquidity is no longer siloed by market, all assets now live in a unified Liquidity Hub per network. Behind @aave ’s safety are champions like Nurit, a Formal Verification researcher at Certora. Get to know her 👇
@StaniKulechov
Stani.eth
12 days
Aave V4.
2
2
33
@CertoraInc
Certora
12 days
Lido’s governance got safer with @LidoFinance’s Dual Governance, a key step toward reducing DAO risk and strengthening Ethereum staking. Behind its mechanism design review was @tomer_ganor, helping ensure the protocol’s security and robustness. Get to know one of the Certora
6
5
38
@0xnirlin
nirlin
17 days
never a boring day here
4
1
70
@p_tsanev
Plamen Tsanev
17 days
New Solidity before GTA 6 Question is, would this be more annoying for the researchers or the builders 🤔
@pashovkrum
pashov
18 days
Security researchers - PREPARE🙏 New Solidity features coming, the language is getting its biggest revamp so far in its history. Many, many changes upcoming. This also means many new attack vectors. Many new things to learn and study. Adapt or die in our fast-moving tech world🫡
1
1
13
@p_tsanev
Plamen Tsanev
17 days
New Solidity before GTA 6 Question is, would this be more annoying for the researchers or the builders 🤔
@pashovkrum
pashov
18 days
Security researchers - PREPARE🙏 New Solidity features coming, the language is getting its biggest revamp so far in its history. Many, many changes upcoming. This also means many new attack vectors. Many new things to learn and study. Adapt or die in our fast-moving tech world🫡
1
1
13
@0xMackenzieM
MackenzieM
17 days
SRs, Whitehats, Fellow Countrymen. This is the time to lock-in. How web3sec is organized is shifting. Gone are the days of DM for audit & 30 simultaneous contests, we will miss them. But we look to a glorious new future. A future of <0.1% TVL hacks per year. Of tighter
@immunefi
Immunefi
18 days
These coming months are going to be the most important for every SR hunting on Immunefi… The Hunt Points Program is officially live today, brought to you by the @ImmunefiFdn. There are two things you need to do to join The Hunt: ➡️ Submit valid reports ➡️ Get high payouts
0
5
44
@CertoraInc
Certora
17 days
Certora Champions 🦸‍♂️ Meet Alex, one of the experts behind securing @Balancer, @KaminoFinance, @RaydiumProtocol, @fragmetric, Chainlink, Astaria, and many more.
2
6
47
@CertoraInc
Certora
18 days
We’ve been securing the Solana ecosystem since day one and we’re proud to see builders proving that you can move fast and break nothing. Big thanks to @kamino, @jito_sol, @jup_lend, @squadsprotocol, @ManifestTrade, @GlowFinanceXYZ, @fragmetric, the @SolanaFndn, and many more for
@SolanaFloor
SolanaFloor
18 days
📽️DeFi has a $2B per year security problem — but what if most of those hacks were preventable? @CertoraInc is an all in one security partner securing the industry's biggest protocols. Now also trusted by @solana teams like Jito, Kamino, and Squads. Here's how @CertoraInc
0
2
17
@DevDacian
Dacian
19 days
Useful lesson in here for some web3sec CEOs whose favorite pastime is slinging mud at competitors
@BowTiedPhys
BowTiedPhys
19 days
“If we just had fewer anons” The problem isn’t anonymity. The problem is the naïveté to believe your negative energy directed at others will hit your intended target more than yourself. Long enough timeline - you burn in the fires you cast at others.
0
1
17
@CertoraInc
Certora
19 days
The Oct 20 @awscloud outage didn’t just hit Web2. It exposed how much Web3 still depends on centralized infrastructure. If one outage can disrupt @ethereum, @coinbase, @base and @MetaMask… What could a targeted attack do to the ecosystem? Read Certora’s perspective 👇
1
7
22
@oot2k1
oot2k
20 days
Important question. We recently published an article on @SCAuditStudio together with @ihtishamSudo about the price of audits, which is a big component in decision making: https://t.co/r3e2iSlxOp
@0x3b33
Pyro
20 days
Founders have asked me multiple times if they should chose a private audit or a contest. Here are the pros and cons of each 👇 Contest: + more eyes on the code, usually results in better coverage (bugs found) - costs more - no/minimal remediation (fixes are on your own) - a lot
0
2
5
@chrisdior777
chrisdior.eth
20 days
Auditors & SC devs, thank me later: Clone any verified on-chain contract into a local Foundry project with `forge clone`. [PATH] is optional - it’s just where the code will be saved. Works on any EVM chain. Great for audits, bounty hunters and reverse engineering.
20
16
149