pks_ Profile
pks_

@pks_eth

Followers
325
Following
2K
Media
12
Statuses
579

Web3 SR, always make mistakes. @immunefi All Star.

Joined May 2018
Don't wanna be here? Send us removal request.
@00xSEV
Sev
1 day
Results and lessons from ~1yr (2025) of full-time BB on @immunefi - 3 bugs marked as Crits and paid - 2 Crits confirmed but not paid for >5-6 months - spent ~3 months on this project - the project has been unresponsive for months now - just recently the BBP was
18
14
229
@infosec_us_team
infosec_us_team
3 days
~ Bugs are everywhere. Zoom out! ~ > This is a very long post. The more software we develop, the more certain we are that it is infinitely easier to discover bugs than to write bug-free code. On top of that, private audits and contests are doomed to miss critical
0
24
147
@0xpessimist
pessimist
14 days
@agfviggiano Let me share what I know; Barracuda is Asymmetric Research, and they still do bug hunting. The second person’s known nick is satya0x, after getting $10m from the Wormhole uninitialized proxy bug, they basically disappeared. Pwning founded Offside Labs. Gegul is an LSR at
3
3
38
@RektHQ
Rekt News
16 days
Developers trust intuition. Data says they shouldn’t. Bug rates rise when code is written by feel, and AI isn’t fixing it. Code looks cleaner, breaks deeper.
5
5
30
@immunefi
Immunefi
16 days
Immunefi Show Episode 2 is here. "What It Takes to Secure a Trillion Dollars on Ethereum." Featuring @zachobront and @ethzed with @MitchellAmador.
1
7
28
@Balancer
Balancer
22 days
35
146
613
@officer_secret
Vladimir S. | Officer's Notes
22 days
Fresh details on the @Balancer V2 exploit - like the attacker's binary search via reverts & decompiled math helper code. Deep dive into rounding biases & on-chain forensics ⬇️ https://t.co/Eai3qDbNbx
Tweet card summary image
coinspect.com
An attacker exploited a rounding issue in the calculation of the stable swap invariant, deflating the implied BPT price and extracting value via internal balances and a...
3
14
79
@Ehsan1579
Ehsan
2 months
I think the top bug hunters should be rewarded by the bug bounty platforms with DATA. I want to know which projects are actually worth my time to audit, not waste hours on trial and error. Give us a transparent list of projects that actually care about security. It’d save a
16
18
156
@zerosnacks
zerosnacks.eth
2 months
Foundry has a new release candidate: v1.4.0-rc3! Highlights include: backtraces, configuration inheritance & multi-chain configuration, forge fmt powered by Solar🌞, enhanced coverage guided fuzzing, custom precompiles & many performance improvements! $ foundryup -i v1.4.0-rc3
11
35
177
@threesigmaxyz
Three Sigma | Web3 Security
2 months
0
3
13
@asymmetric_re
asymmetric research
2 months
New post: @RelayProtocol’s contracts trusted Ed25519 verification without validating offsets, opening the door to forged allocator signatures and potential double-spends. @_fel1x details the bug, the risks it posed to cross-chain liquidity, and how the issue was addressed.
6
16
110
@pks_eth
pks_
2 months
Expecting something coming.
@immunefi
Immunefi
2 months
Stablecoins are now at $200b, Wall Street is ready, and trillions are waiting to come onchain, but they’re SCARED. This is why the Immunefi Foundation (@immunefiFdn) just launched today. Visit the Foundation site below to watch the upcoming livestream announcement that will
0
0
2
@VulsightSec
VulSight
2 months
2
21
104
@asymmetric_re
asymmetric research
2 months
Threat Contained: marginfi Flash Loan Vulnerability by @_fel1x A new instruction broke the flash loan logic, creating a way to borrow without repaying and putting $160M at risk. We explain the vulnerability, potential impact, and how it was fixed. Full post below ↓
6
30
153
@pks_eth
pks_
2 months
Very solid codebase, congrats to everyone!🫡
@immunefi
Immunefi
2 months
The $30K @FolksFinance Audit Competition is a wrap! 🎉 100% of the reward pool has been paid out! 💰 🏆 Top Winners: 1. @pks_eth – $7,308 2. @4mj3x – $4,413 3. danvinci_20 – $2,613 4. @_uhudo – $2,313 5. @0xenzo_eth – $1,308 Congrats to all participants & winners! Your valuable
3
0
34
@pks_eth
pks_
3 months
lol🤣
@PicturesFoIder
non aesthetic things
3 months
Chinese streamer selling dresses live
0
0
0
@0xriptide
riptide
4 months
don't let this be you anon
7
4
88
@osec_io
OtterSec
4 months
NEW: What looks like a normal Solidity compilation ends in a crash. In our latest post, we trace the issue to a 12-year-old G++ bug and explain exactly how this can happen. Full breakdown + recommended fixes 👇 https://t.co/8XIC7uNnT0
Tweet card summary image
osec.io
A subtle G++ bug from 2012, C++20's new comparison rules, and legacy Boost code can collide to crash Solidity's compiler on valid code. We unpack the surprising chain reaction and how to fix it.
3
15
80
@0xzak
zak.eth
4 months
I've been in crypto for over 10 years and I’ve Never been hacked. Perfect OpSec record. Yesterday, my wallet was drained by a malicious @cursor_ai extension for the first time. If it can happen to me, it can happen to you. Here’s a full breakdown. 🧵👇
542
1K
9K