Slow Mist Cosine said that it has followed up the Infini hacking incident for the first time. The attacker is very technical and understands smart contract operations, so it is possible to steal the funds in its Vault and related strategies with a private key, stealing twice: 11,455,666 USDC and 38,060,996 USDC.
According to Slow Mist Cosine, in view of the fact that a large number of ETH has been washed out through eXch and replaced by BTC, XMR, etc., all platforms should upgrade the risk control level for funds from eXch. Previously, it was reported that eXch refused to intercept the stolen funds for Bybit.
On February 22, the founder of Slow Mist, Cosine, posted on social media that from a security perspective, the suggestion to urgently stop the wallet system in the case of unknown reasons is correct. Bybit's theft response speed is extremely fast, and the positioning problem is also extremely fast. SlowMist and some security teams immediately intervened in the communication, quickly identifying the problem and speculating on the hacker portrait. There is no problem with Bybit opening the withdra...
Slow Mist Cosine published an analysis on the X platform saying that although there is no conclusive evidence yet, the security incident of Bybit is in line with the characteristics of the North Korean hacker gang from the perspective of the attacker's intrusion method against Safe multi-signature and the current way of money laundering. Cosine cited the previous case of Radiant Capital being hacked by North Korea.
SlowMist posted on the X platform that its security team received reports from victims, revealing that someone posing as a SlowMist data scientist and acting as a Web3 recruiter committed fraud, tricking the victim into installing malicious software, resulting in the theft of the victim's wallet and X account. The SlowMist team has launched an investigation and disclosed some known details. At present, law enforcement in the German state of Baden-Württemberg has stepped in and advised the fraud...
SlowMist has issued a security alert saying that a reentry attack vulnerability related to Multiverse Insights has been detected. Please be vigilant.
Slow Mist Cosine posted on the X platform: "Kaito has just been launched, and all the scams found on the DEX Screener are Scam." It is reported that DEX Screener appears to have not yet managed this situation, reminding users to interact with caution.
According to a report by SlowMist, the security team has detected potentially suspicious activity related to BOLT tokens, and SlowMist warns users to remain vigilant.
On February 18th, the founder of Slow Mist, Cosine (Cos), posted on the X platform that the address doodo... kqg7 "tested" the following 3 CAs one after another after Argentine President Millet tweeted. Ordinary people may think this is nothing to doubt, but what's interesting is that these 3 CAs actually come from the same person (the relationship cannot be directly seen on the chain, and our various data are crossed). So I said that the owner of this address should know what happened, maybe it...
SlowMist Cosine said in an X post that the group theft incident disclosed by GoPlus today involved more than 800 tokens on multiple Ethereum Virtual Machine (EVM) compatible chains, and the attacker has made a profit of 1.24 million US dollars. It is worth noting that he pointed out that the victim group may mainly be the "wool group" (participants active in multiple project airdrop tasks).
Slow Mist Technology Chief Information Security Officer 23pds issued a warning that the latest version of Phantom wallet may have security bugs, and the victim has explained the risk of Phantom Profile: when a user imports a mnemonic from an unknown source, if the mnemonic has been associated with Phantom Profile, the wallet will automatically log in to the account system, putting the user's assets at risk of theft. According to the victim's description, when a user who does not open the Phantom...
In response to 23pds, the chief information security officer of Slow Mist Technology, reminding the trading tool DeBot to upgrade the security level, the DeBot team responded that the emergency upgrade has been completed as soon as possible. Previously reported, the SlowMist CISO said it recommended that the trading tool Debot upgrade its security level.
On January 25th, SlowMist founder Cosine posted on social media that the AdsPower fingerprint browser had disclosed a hacking incident transparently. If you are using AdsPower and have installed an extension wallet or manually updated an extension wallet from 18:00 on January 21st to 18:00 on January 24th (UTC + 8), then the extension wallet on your Ads Power (such as MetaMask, etc.) may be the version with a backdoor, which will steal your mnemonic/private key. At present, through our intervent...
According to SlowMist, a fake Trump account carried out a scam of about $1.25 million. The fake account posted at least 4 meme coins in the tweets, which were deleted within minutes of sharing, and only the accounts mentioned in these tweets were allowed to comment.