# Web3 Security Audits, Monitoring, and Risk Prevention - BlockSec

> Markdown mirror of DialtoneApp's public top-site detail page for `blocksec.com`.

URL: https://dialtoneapp.com/top-sites/blocksec.com/index.md
Canonical HTML: https://dialtoneapp.com/top-sites/blocksec.com

## Summary

- Domain: `blocksec.com`
- Website: https://blocksec.com
- Description: ai readable | score 20 | purchase read only
- Label: ai_readable
- Payment surface: Not available
- Purchase boundary: read_only
- Control boundary: unknown
- Rank: 431288

## robots

~~~text
User-Agent: *
Allow: /
Disallow: /_next/
Disallow: /pdf/*/blocksec-compliance-handbook*.pdf
Disallow: /compliance-handbook/zh
Disallow: /cdn-cgi/l/email-protection

Sitemap: https://blocksec.com/sitemap.xml
~~~

## llms

~~~text
# BlockSec Website Index
This file contains an index of pages and blog posts from blocksec.com

## About BlockSec

BlockSec is the leading full-stack blockchain security and compliance provider, dedicated to ensuring a secure and seamless Web3 world. Established in 2021 by globally distinguished security experts, BlockSec offers end-to-end Web3 protection from pre-launch to post-launch, trusted by global enterprises and institutions.

**Key Statistics:**
- Assets Protected: $50B+
- Global Clients: 500+
- Hacks Blocked: 20+
- Funds Rescued: $20M+

BlockSec serves over 500 esteemed clients including MetaMask, Uniswap Foundation, Compound, Forta, and PancakeSwap, and has received tens of millions of US dollars in funding from preeminent investors including Matrix Partners, Vitalbridge Capital, and Fenbushi Capital.

## Products & Services

BlockSec provides a comprehensive suite of security and compliance solutions:

**Security Auditing**: Smart contract and EVM chain audits covering technical, business, and financial aspects. Comprehensive audits for smart contracts and EVM chains with actionable solutions and trusted quality.

**Phalcon Security**: Proactively detect threats, alert what matters, and block attacks in real-time. Features early detection at mempool stage, precise detection with 200+ attack characteristics, and automated actions using gas-bidding strategy to block attacks and prevent loss.

**Phalcon Compliance**: Identify illicit activities, manage risks, and ensure alignment with global crypto AML/CFT standards. Provides transaction screening (KYT), address screening (KYA), and real-time AML/CFT screening with risk scoring.

**STOP**: Sequencer-level defense platform for L2 chains, identifying and blocking malicious transactions to protect the ecosystem.

**Phalcon Explorer**: Visualize, simulate, and debug on-chain transactions with an intuitive interface for advanced transaction analysis.

**MetaSuites**: Enhance your blockchain explorer with 20+ integrated tools for advanced capabilities, supporting multiple blockchains including Solana.

**Safe{wallet} Monitor**: Monitor Safe{wallet} transactions and provide security alerts for multi-sig wallet operations.

**Research & Intelligence**: BlockSec conducts cutting-edge research in blockchain security, publishes security insights, and maintains a comprehensive security incident library.

## Pages

[Home](https://blocksec.com): BlockSec is the leading full-stack blockchain security and compliance provider, offering end-to-end Web3 protection from pre-launch to post-launch. Trusted by 500+ global clients including MetaMask, Uniswap Foundation, and Compound, with $50B+ in assets protected and $20M+ in funds rescued.

[Security Auditing](https://blocksec.com/audit): Expert security auditing services achieving 99% customer satisfaction through in-depth smart contract and EVM chain audits. Comprehensive audits cover technical, business, and financial aspects, providing actionable solutions and professional reports for identified issues.

[Audit Reports](https://blocksec.com/audit-report): View sample security audit reports from BlockSec. Access comprehensive audit reports covering smart contracts and EVM chains, demonstrating BlockSec's expertise and thorough analysis methodology.

[Audit Report: Security Audit Report For Sosovalue Index](https://blocksec.com/audit-report/Security-Audit-Report-for-SoSoValue-Index): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Audit Report Neo X](https://blocksec.com/audit-report/audit-report-neo-x): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Alpaca Delta Neutral Vault](https://blocksec.com/audit-report/security-audit-report-for-alpaca-delta-neutral-vault): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Aura](https://blocksec.com/audit-report/security-audit-report-for-aura): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Bridge V2 Contracts](https://blocksec.com/audit-report/security-audit-report-for-bridge-v2-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Burrow Land](https://blocksec.com/audit-report/security-audit-report-for-burrow-land): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Cakepie Contracts](https://blocksec.com/audit-report/security-audit-report-for-cakepie-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Delta Trade](https://blocksec.com/audit-report/security-audit-report-for-delta-trade): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Eos Evm](https://blocksec.com/audit-report/security-audit-report-for-eos-evm): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Halo](https://blocksec.com/audit-report/security-audit-report-for-halo): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Li Near 1](https://blocksec.com/audit-report/security-audit-report-for-li-near-1): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Magpie Radpie](https://blocksec.com/audit-report/security-audit-report-for-magpie-radpie): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Mellow Vaults](https://blocksec.com/audit-report/security-audit-report-for-mellow-vaults): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Multichain Ve Multi Contracts](https://blocksec.com/audit-report/security-audit-report-for-multichain-ve-multi-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Noah Dao](https://blocksec.com/audit-report/security-audit-report-for-noah-dao): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Octopus Restaking](https://blocksec.com/audit-report/security-audit-report-for-octopus-restaking): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Pancake Swap Cross Farming Contracts](https://blocksec.com/audit-report/security-audit-report-for-pancake-swap-cross-farming-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Pancake Swap Ve Cake](https://blocksec.com/audit-report/security-audit-report-for-pancake-swap-ve-cake): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Phoenix Bonds](https://blocksec.com/audit-report/security-audit-report-for-phoenix-bonds): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Poly Contracts](https://blocksec.com/audit-report/security-audit-report-for-poly-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Puffer Finance Puf Eth Contracts](https://blocksec.com/audit-report/security-audit-report-for-puffer-finance-puf-eth-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Pump Btc Contracts](https://blocksec.com/audit-report/security-audit-report-for-pump-btc-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Ref Exchange](https://blocksec.com/audit-report/security-audit-report-for-ref-exchange): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Side Protocol](https://blocksec.com/audit-report/security-audit-report-for-side-protocol): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Stake Together St V1 Contracts](https://blocksec.com/audit-report/security-audit-report-for-stake-together-st-v1-contracts): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Stratos Chain And Stratos Decentralized Storage Sds](https://blocksec.com/audit-report/security-audit-report-for-stratos-chain-and-stratos-decentralized-storage-sds): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Wen Core](https://blocksec.com/audit-report/security-audit-report-for-wen-core): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Windranger Auction Contract](https://blocksec.com/audit-report/security-audit-report-for-windranger-auction-contract): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Audit Report For Y Pool Smart Contract](https://blocksec.com/audit-report/security-audit-report-for-y-pool-smart-contract): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Audit Report: Security Testing Report For Radiant V2](https://blocksec.com/audit-report/security-testing-report-for-radiant-v2): Detailed security audit report documenting comprehensive analysis of smart contracts or EVM chain infrastructure. Includes vulnerability assessments, risk analysis, and actionable recommendations for security improvements.

[Blog](https://blocksec.com/blog): BlockSec blog featuring security insights, incident analysis, and industry updates. Explore in-depth technical analyses of security incidents, DeFi exploit post-mortems, security best practices, and the latest trends in blockchain security.

[Certificate Verification](https://blocksec.com/certificate-verification): BlockSec certificate verification portal. Verify the authenticity of BlockSec security audit certificates and compliance certifications.

[Compliance Handbook](https://blocksec.com/compliance-handbook): Crypto Payment Compliance Handbook: The Industry's First Comprehensive Compliance Guide For Crypto Payments. Download the complete guide covering AML/CFT standards, KYT/KYA best practices, and regulatory compliance for crypto payments.

[Customers](https://blocksec.com/customers): BlockSec customers and partners showcase. Trusted by 500+ clients, from Web3 leaders to global regulators, including MetaMask, Uniswap Foundation, Compound, Forta, PancakeSwap, and many more esteemed organizations.

[Disclaimer](https://blocksec.com/disclaimer): BlockSec website disclaimer and terms. Legal information, terms of service, and disclaimers regarding BlockSec's services and website usage.

[Employee Verification](https://blocksec.com/employee-verification): BlockSec employee verification portal. Verify the employment status and credentials of BlockSec team members.

[Expert Contact](https://blocksec.com/expert-contact): Contact BlockSec to request security audits and expert consultation. Get in touch with BlockSec's security experts to discuss your project's security needs, request audits, or book product demos.

[Phalcon Explorer](https://blocksec.com/explorer): Phalcon Explorer allows you to dive into transactions to act wisely. Visualize, simulate, and debug on-chain transactions with an intuitive interface. Features transaction analysis, simulation capabilities, and security incident tracking.

[MetaSuites](https://blocksec.com/metasuites): MetaSuites is the Swiss Army Knife for builders - a browser extension to generate fund flow, display address labels, download data with one-click, simulate transactions, view storage and proxy upgrades, along with more than 20 utilities on over ten blockchain browsers.

[Newsroom](https://blocksec.com/newsroom): Explore highlights from the press, news and featured stories about BlockSec. Media coverage, press releases, featured articles, and news about BlockSec's security solutions and achievements.

[Phalcon Compliance](https://blocksec.com/phalcon/crypto-compliance): Phalcon Compliance provides real-time AML, CFT, KYT, and KYA solutions for crypto compliance. Identify illicit activities, manage risks, and ensure alignment with global crypto AML/CFT standards. Features transaction screening (KYT), address screening (KYA), and real-time risk scoring to prevent illicit fund flows.

[Phalcon Security](https://blocksec.com/phalcon/security): Phalcon Security APP is designed for protocol security to see every threat and block every hack. The platform detects threats at the mempool stage, alerts you to what truly matters, and blocks attacks automatically using gas-bidding strategy. Features early detection, precise detection with 200+ attack characteristics, and automated actions.

[Research](https://blocksec.com/research): BlockSec research publications and security insights. Access cutting-edge blockchain security research, vulnerability analyses, and technical publications from BlockSec's security experts.

[Safe{wallet} Monitor](https://blocksec.com/safe-wallet-monitor): Monitor Safe{wallet} transactions and provide security alerts for multi-sig wallet operations. Real-time monitoring and automated intervention against attacks and other risks for Safe{wallet} users.

[Security Incident](https://blocksec.com/security-incident): Security incident library and analysis reports. Comprehensive database of blockchain security incidents, exploit analyses, and post-mortem reports to help the community learn from past security events.

[STOP](https://blocksec.com/stop): STOP (Sequencer Threat Overwatch Program) leverages Phalcon's attack detection engine to block attacks at the sequencer level for L2 chains. This sequencer-level defense platform identifies and blocks malicious transactions to protect the ecosystem, ensuring secure and confident user engagement.

## Blog posts

[In-Depth Analysis: The Balancer V2 Exploit](https://blocksec.com/blog/in-depth-analysis-the-balancer-v2-exploit): On November 3, 2025, Balancer V2 and several forked projects were exploited, causing over $125 million in losses. This blog offers an in-depth technical analysis of the incident. (Nov 5 2025)

[Monthly Security Review: October 2024](https://blocksec.com/blog/monthly-security-review-october-2024): Security at a Glance 👀 Radiant: $58M On October 16th, Radiant Capital suffered a security breach on Arbitrum and BSC, resulting in losses exceeding $50M. (Nov 1 2024)

[Monthly Security Review: May 2024](https://blocksec.com/blog/monthly-security-review-may-2024): Security at a Glance 👀 DeFi Exploits - Gala Game On May 20, the private key of a Gala administrator was stolen, and the attacker minted 5 billion GALA tokens, exchanging them for $21M worth of tokens on the blockchain. (Jun 1 2024)

[How to Track a Solana Wallet](https://blocksec.com/blog/how-to-track-a-solana-wallet): Solana is a fast and scalable blockchain network that has gained significant popularity in cryptocurrency. As a Solana user, you may want to track your wallet’s activity and transactions for various reasons, such as monitoring your holdings,. (May 3 2024)

[Monthly Security Review: April 2024](https://blocksec.com/blog/monthly-security-review-april-2024): Security at a Glance 👀 In April 2024, security incidents related to DeFi vulnerability exploits resulted in a total loss of ~$5 million. (May 1 2024)

[The Analysis of Nerve Bridge Security Incident](https://blocksec.com/blog/the-analysis-of-nerve-bridge-security-incident): Exploring the similarities between the Nerve Bridge and Synapse incidents, shedding light on the attacker's modus operandi (Nov 18 2021)

[Blog/zklend Exploit Post Mortem Unraveling The Details And Clarifying Misunderstandings Of The 10m Flash Loan Attack](https://blocksec.com/blog/zklend-exploit-post-mortem-unraveling-the-details-and-clarifying-misunderstandings-of-the-10m-flash-loan-attack): This blog provides a detailed analysis of the zkLend incident to clarify the misunderstandings.

[Blog/yet Another Tragedy Of Precision Loss An In Depth Analysis Of The Kyber Swap Incident 1](https://blocksec.com/blog/yet-another-tragedy-of-precision-loss-an-in-depth-analysis-of-the-kyber-swap-incident-1): This article dives deep into the attacks targeting KyberSwap and gives a detailed analysis of the root cause of the issue: precision loss.

[Blog/why Is Automated Incident Response Crucial In Web3 Security](https://blocksec.com/blog/why-is-automated-incident-response-crucial-in-web3-security): In the world of DeFi, no project can guarantee itself to always be safe. However, this is not the reason for us to bury our heads in the sand. In the face of threats, we need to be well-prepared and continuously improve our incident response plans, and we should be able to respond swiftly and cut losses promptly when risks arise. However, manual interventions often prove to be too late, as seen in attacks on Nomad Bridge and KyberSwap where response times took hours. Phalcon can assist projects in automatically triggering preset incident response mechanisms, reducing response time from several hours to within one block time.

[Blog/when Safe Transfer Becomes Unsafe Lessons From The Q Bridge Security Incident](https://blocksec.com/blog/when-safe-transfer-becomes-unsafe-lessons-from-the-q-bridge-security-incident): The QBridge Exploit: How Non-Standard Code Practices Led to a Major Cryptocurrency Theft

[Blog/when Safe Mint Becomes Unsafe Lessons From The Hype Bears Security Incident](https://blocksec.com/blog/when-safe-mint-becomes-unsafe-lessons-from-the-hype-bears-security-incident): Understanding the security vulnerability of the 'SafeMint' function in ERC721 contracts.

[Blog/when Meta Dock Met Gpt See Through Every Transaction Like An Og](https://blocksec.com/blog/when-meta-dock-met-gpt-see-through-every-transaction-like-an-og): MetaDock is a powerful browser plugin that enhances blockchain exploration with useful tools and explanations for address labels, fund flows, and transaction analysis.

[Blog/what Should I Do If My Crypto Assets Were Stolen](https://blocksec.com/blog/what-should-i-do-if-my-crypto-assets-were-stolen): Here are some tips when you are phished by scammers or your assets were stolen. <iframe width="560" height="315" src="https://www.youtube.com/embed/UdaEJPq2mwE?si=_V4LcRmUftEi-F8z" title="YouTube video player" frameborder="0" allow="accelerometer;.

[Blog/what Is The Best De Fi Hack Detection And Prevention System](https://blocksec.com/blog/what-is-the-best-de-fi-hack-detection-and-prevention-system): Exploring vulnerabilities, attack types, and preventative strategies in DeFi protocols.

[Blog/what Is Block Sec Phalcon How Does Phalcon Accurately Identify And Rapidly Block Hacker Attacks](https://blocksec.com/blog/what-is-block-sec-phalcon-how-does-phalcon-accurately-identify-and-rapidly-block-hacker-attacks): What is BlockSec Phalcon? Why Protocols Need Phalcon? How Phalcon Works Technically? How Can I Subscribe to Phalcon? This article will tell you the answer.

[Blog/what Are The Security Risks Faced By De Fi Protocols And How To Ensure Protocol Security](https://blocksec.com/blog/what-are-the-security-risks-faced-by-de-fi-protocols-and-how-to-ensure-protocol-security): This article focuses on mitigating risks to ensure robust DeFi protocol security, covering aspects such as code vulnerabilities, operational threats, and external dependencies.

[Blog/web3 Smart Contract Evm Chain Audits Blocksec](https://blocksec.com/blog/web3-smart-contract-evm-chain-audits-blocksec): BlockSec secures Web3 with attacker-driven audits, chain reviews, and zero-day detection - battle-tested, blocking 20+ hacks and $20M+ losses.

[Blog/using Metasleuth To Track Smart Money On Solana](https://blocksec.com/blog/using-metasleuth-to-track-smart-money-on-solana): In this blog, we will show how to use MetaSleuth to track the "smart" money of the meme TIM token on Solana.

[Blog/usdt And Illicit Finance New Criminal Tactics And Compliance Solutions](https://blocksec.com/blog/usdt-and-illicit-finance-new-criminal-tactics-and-compliance-solutions): USDT Security faces new risks: Learn how cross-chain laundering, scams, and economic exploits misuse the stablecoin. Discover how Phalcon Compliance ensures USD

[Blog/unveiling Block Sec S Large Scale Tx Phish Website Detection System](https://blocksec.com/blog/unveiling-block-sec-s-large-scale-tx-phish-website-detection-system): BlockSec's latest study on transaction-based phishing on Ethereum has been accepted for full paper publication at ACM CCS!

[Blog/unlocking Web3 Security Battling The Dark Side 1](https://blocksec.com/blog/unlocking-web3-security-battling-the-dark-side-1): In the ever-evolving world of Web3, the significance of security cannot be overstated. Despite bear market conditions, the alarming surge in DeFi hacks and scams has raised concerns.

[Blog/tradeoff Between Convenience And Security Unlimited Approval In Erc 20](https://blocksec.com/blog/tradeoff-between-convenience-and-security-unlimited-approval-in-erc-20): Abstract In Ethereum, the ERC20 token is widely utilized by companies or users to construct decentralized applications (DApps).

[Blog/track Meme Coin In Solana With Meta Sleuth Dyor Crypto Investment Guide](https://blocksec.com/blog/track-meme-coin-in-solana-with-meta-sleuth-dyor-crypto-investment-guide): This blog demonstrates how to use MetaSleuth to track the Meme coin GME on Solana, showcasing its features for crypto tracking, fund flow visualization, and real-time transaction monitoring.

[Blog/tracing The Stolen Fund Of The Ronin Bridge](https://blocksec.com/blog/tracing-the-stolen-fund-of-the-ronin-bridge): Ronin Bridge security incident: Compromised private keys led to the theft of 173,600 ETH and 25,500,000 USDC. Stolen USDC swiftly swapped for ETH, with 6,250 ETH already transferred out.

[Blog/top Ten Awesome Security Incidents In 2023](https://blocksec.com/blog/top-ten-awesome-security-incidents-in-2023): In this series of articles, we will illustrate the top ten security incidents that are worth mentioning in 2023 and their reasons.

[Blog/tiny Rounding Down Big Fund Losses An In Depth Analysis Of The Recent Balancer Incident](https://blocksec.com/blog/tiny-rounding-down-big-fund-losses-an-in-depth-analysis-of-the-recent-balancer-incident): A comprehensive analysis of the Balancer attack, which occurred on August 27 2023

[Blog/thorns In The Rose Exploring Security Risks In Uniswap V4 S Novel Hook Mechanism](https://blocksec.com/blog/thorns-in-the-rose-exploring-security-risks-in-uniswap-v4-s-novel-hook-mechanism): This is the first article of our series exploring security risks in Uniswap v4’s hook mechanism! In this article, we provide a comprehensive overview and foundational understanding for our readers.

[Blog/the Two Sides Of The Private Tx Service On Binance Smart Chain](https://blocksec.com/blog/the-two-sides-of-the-private-tx-service-on-binance-smart-chain): The article explores privacy and security challenges of private transaction technologies in protecting users

[Blog/the Top 5 Solidity Audit Vendors In 2024 A Comprehensive Review](https://blocksec.com/blog/the-top-5-solidity-audit-vendors-in-2024-a-comprehensive-review): Explore the top 5 Solidity audit vendors in 2024 and BlockSec's advantages in offering unparalleled expertise, tailored solutions, and comprehensive security assessments for smart contracts.

[Blog/the Top 5 Smart Contract Auditors Block Sec Leading The Way](https://blocksec.com/blog/the-top-5-smart-contract-auditors-block-sec-leading-the-way): Explore the evolving landscape of smart contract audits in 2024 and discover the top five audit firms, including BlockSec, known for their comprehensive evaluations, professional reports, EVM chain expertise, and exceptional client satisfaction.

[Blog/the Short Analysis Of The Flashloan Attack To The Ape Air Drop](https://blocksec.com/blog/the-short-analysis-of-the-flashloan-attack-to-the-ape-air-drop): Analysis of an attack that manipulated the spot price of assets to profit from an APE token airdrop

[Blog/the Retrospection Of The Poly Network Hack From A Security Researcher Perspective](https://blocksec.com/blog/the-retrospection-of-the-poly-network-hack-from-a-security-researcher-perspective): An analysis of the Poly Network Hack and the lessons learned regarding security vulnerabilities in decentralized finance projects.

[Blog/the Real Root Cause Of The Vee Finance Security Incident](https://blocksec.com/blog/the-real-root-cause-of-the-vee-finance-security-incident): VEE finance has released a report about the recent security incident. In the report, they state that the main cause is “Manipulating the price of the Vee Finance oracle machine and the acquisition of the oracle machine price were not processed for.

[Blog/the Initial Analysis Of The Poly Network Hack](https://blocksec.com/blog/the-initial-analysis-of-the-poly-network-hack): PolyNetwork Hack: Exploit Analysis of the Root Cause of the 300 Million USDs Attack on Multiple Chains

[Blog/the Initial Analysis Of The B Zx Security Incident](https://blocksec.com/blog/the-initial-analysis-of-the-b-zx-security-incident): The article discusses the hacking incident on the bZX protocol, attributing it to a compromised developer's private key and emphasizing the significance of protecting private keys in DApp security.

[Blog/the Informal Security Review Of The Patch To Fix The Vulnerability Of The Poly Network Hack](https://blocksec.com/blog/the-informal-security-review-of-the-patch-to-fix-the-vulnerability-of-the-poly-network-hack): This blog presents an informal security review of the patch implemented to fix the recent vulnerability in Poly network, highlighting the use of allow lists and the resulting security properties.

[Blog/the Further Analysis Of The Poly Network Attack](https://blocksec.com/blog/the-further-analysis-of-the-poly-network-attack): Delve into the attack flow on Ethereum, revealing a cross-chain exploit spanning Ontology, Poly, and Ethereum chains

[Blog/the Butterfly Effect The Compound Security Incident Caused By A Bugfix](https://blocksec.com/blog/the-butterfly-effect-the-compound-security-incident-caused-by-a-bugfix): The article describes two bugs in the Compound protocol and their impact on the distribution of COMP tokens to users.

[Blog/the Analysis Of The Zerogoki Attack](https://blocksec.com/blog/the-analysis-of-the-zerogoki-attack): On Aug 08 2021 (Beijing Time, block height 12982491), Zerogoki was attacked, which caused a loss of 670K USD. After the investigation, we found that it’s related to the compromised price oracle.

[Blog/the Analysis Of The Sanshu Inu Security Incident](https://blocksec.com/blog/the-analysis-of-the-sanshu-inu-security-incident): Ethereum Blockchain Exploit: Sanshu Inu Suffers Smart Contract Attack Revealed by DeFiRanger

[Blog/the Analysis Of The Popsicle Finance Security Incident](https://blocksec.com/blog/the-analysis-of-the-popsicle-finance-security-incident): Attack Flow Unveiled: The Steps Taken by the Attacker to Exploit Popsicle Finance

[Blog/the Analysis Of The Dao Maker Attack](https://blocksec.com/blog/the-analysis-of-the-dao-maker-attack): Explore the step-by-step breakdown of the DAOMaker attack, examining the smart contract vulnerabilities that led to unauthorized admin role assignments and illicit fund withdrawals

[Blog/the Analysis Of The Array Finance Security Incident](https://blocksec.com/blog/the-analysis-of-the-array-finance-security-incident): Exploring the Array Finance Exploit: A Step-by-Step Attack Analysis" - A detailed breakdown of the malicious transactions that compromised Array Finance, offering insights into DeFi vulnerabilities

[Blog/the Analysis Of Indexed Finance Security Incident](https://blocksec.com/blog/the-analysis-of-indexed-finance-security-incident): Learn secure development practices in Move and create an Aptos application with this comprehensive guide

[Blog/the Analysis Of Fegtoken Security Incident Devils In The Details](https://blocksec.com/blog/the-analysis-of-fegtoken-security-incident-devils-in-the-details): How a Subtle Contract Flaw Led to a Million-Dollar FEGtoken Heist on Multiple Blockchains

[Blog/ten Most Frequently Asked Questions About Phalcon Block](https://blocksec.com/blog/ten-most-frequently-asked-questions-about-phalcon-block): Our automated attack monitoring and blocking system, BlockSec Phalcon, has been released for one month. During this time, we've held demo sessions with dozens of project teams and LPs, and found that the pain points and needs of users are generally.

[Blog/telcoin Security Incident In Depth Analysis](https://blocksec.com/blog/telcoin-security-incident-in-depth-analysis): A comprehensive post-mortem and analysis of the security breach Telcoin experienced on Christmas Day 2023.

[Blog/systematic Approach To Maintaining Evm Compatibility And Security 1](https://blocksec.com/blog/systematic-approach-to-maintaining-evm-compatibility-and-security-1): EVM (Ethereum Virtual Machine) compatible blockchains are designed to be compatible with the Ethereum blockchain’s smart contract functionality, programming language (Solidity), and tooling ecosystem.

[Blog/steps To Be Taken For Phishing Attack Victims 1](https://blocksec.com/blog/steps-to-be-taken-for-phishing-attack-victims-1): If it is a phishing incident, please read carefully on this page to understand actions that need to be performed to prevent further loss.

[Blog/solana Simplified Master Solana Core Concepts In One Read](https://blocksec.com/blog/solana-simplified-master-solana-core-concepts-in-one-read): In just 10 minutes, understand Solana's operating mechanism, account model, and transactions, and uncover the reasons behind its explosive growth.

[Blog/solana Simplified 02 Writing Your First Solana Smart Contract From Scratch](https://blocksec.com/blog/solana-simplified-02-writing-your-first-solana-smart-contract-from-scratch): Master writing Solana programs with just this one article! Covering everything from environment setup, contract logic, to program testing.

[Blog/solana Simplifed 03 Understand Solana Transactions In 5 Minutes](https://blocksec.com/blog/solana-simplifed-03-understand-solana-transactions-in-5-minutes): Comprehensive Guide to Solana Tokens & the Best Solana Blockchain Explorer Recommendation

[Blog/solana Guide](https://blocksec.com/blog/solana-guide): The series offers a concise guide to mastering Solana's core concepts, smart contract development in Rust, and transaction analysis with Phalcon Explorer, empowering you to participate in Solana's ecosystem.

[Blog/security Testing Report For Radiant V2](https://blocksec.com/blog/security-testing-report-for-radiant-v2): This is the security testing report that we conducted for Radiant V2 in March 2023.

[Blog/security Report Prismafi Munchables Paraswap](https://blocksec.com/blog/security-report-PrismaFi-Munchables-ParaSwap): Security at a Glance 👀 In March 2024, DeFi exploits resulted in losses of approximately $81 million. Fortunately, thanks to the efforts of all parties involved, most of the funds have been recovered, or negotiations are underway.

[Blog/security Practices In Move Development 2 Aptos Coin](https://blocksec.com/blog/security-practices-in-move-development-2-aptos-coin): Create and manage your own coin: Discover how to easily create and manage your own coin using the official standard module, coin.move, in Aptos.

[Blog/security Practices In Move Development 1 Hello World](https://blocksec.com/blog/security-practices-in-move-development-1-hello-world): Learn secure development practices in Move and create an Aptos application with this comprehensive guide

[Blog/security Incident On Seal Finance](https://blocksec.com/blog/security-incident-on-seal-finance): On 30th Nov, our security incident monitoring system ThunderForecast discovered an attack on Loopring protocol (Blog in EN, CN) through scanning history transactions among the Ethereum.

[Blog/security Check Do Evm Compatible Chains Hold Up](https://blocksec.com/blog/security-check-do-evm-compatible-chains-hold-up): Revealing Hidden Security Risks in the EVM: How BlockSec's Automated Tool Helps Take a Closer Look

[Blog/security Audit Report For Near Oin Dao](https://blocksec.com/blog/security-audit-report-for-near-oin-dao): This is the security audit report that we conducted for NearOinDao in December 2021.

[Blog/security Audit Report For Li Near](https://blocksec.com/blog/security-audit-report-for-li-near): Report Manifest | Item | Description | | ------ | ------------- | | Client | LiNEAR Protocol | | Target | LiNEAR | Version History Version | Date | Description ------- | -------------- | ------------ 1.0 | Apr 1st, 2022 | First Release 1.

[Blog/security Audit Report For Cakepie Contracts](https://blocksec.com/blog/security-audit-report-for-cakepie-contracts): This is the security audit report that we conducted for Cakepie Contracts in November 2023.

[Blog/securing Web3 Through Proactive Threat Prevention 1](https://blocksec.com/blog/securing-web3-through-proactive-threat-prevention-1): In the past three years, we have observed several security incidents in the DeFi ecosystem. To defend the threats, code-centric methods, e.g., static code auditing, smart contract scanning tool, or dynamic fuzzing, are adopted by the community.

[Blog/secure The Solana Ecosystem 7 Type Confusion](https://blocksec.com/blog/secure-the-solana-ecosystem-7-type-confusion): The article discusses the Type Confusion security issue in Solana, highlighting its impact on account deserialization/serialization and the potential for exploitation by attackers.

[Blog/secure The Solana Ecosystem 6 Multi Sig2](https://blocksec.com/blog/secure-the-solana-ecosystem-6-multi-sig2): The article discusses a general implementation of multisig on Solana, enabling on-chain transaction signing and providing code review and deployment details.

[Blog/secure The Solana Ecosystem 5 Multi Sig](https://blocksec.com/blog/secure-the-solana-ecosystem-5-multi-sig): In this post, we explore the implementation of multi-signature functionality in Solana, highlighting its significance in decentralized applications for bolstering security and safeguarding against private key exposure.

[Blog/secure The Solana Ecosystem 4 Account Validation](https://blocksec.com/blog/secure-the-solana-ecosystem-4-account-validation): The article discusses access control related problems in the context of Solana's programming environment, focusing on the importance of proper account validation and the potential security risks.

[Blog/secure The Solana Ecosystem 3 Program Upgrade](https://blocksec.com/blog/secure-the-solana-ecosystem-3-program-upgrade): This article provides a guide on program upgrade in Solana, covering the deployment of upgradable programs, code review of a sample contract, sending transactions, performing upgrades, and verifying the upgraded program.

[Blog/secure The Solana Ecosystem 2 Calling Between Programs](https://blocksec.com/blog/secure-the-solana-ecosystem-2-calling-between-programs): Master the art of cross-program invocation in Solana with our comprehensive guide and hands-on examples, taking your smart contract development to the next level

[Blog/secure The Solana Ecosystem 1 Hello Solana](https://blocksec.com/blog/secure-the-solana-ecosystem-1-hello-solana): BlockSec's Mission for a Secure DApp Ecosystem: Discover how BlockSec aims to enhance the security of the DApp ecosystem with a focus on Solana smart contract security.

[Blog/secure The Solana Ecosystem](https://blocksec.com/blog/secure-the-solana-ecosystem): In this series, explore detailed insights into securing Solana through deployment, upgrades, and complex functionalities.

[Blog/secure Smart Contract Development Code Reentrancy In Nft Contracts 1](https://blocksec.com/blog/secure-smart-contract-development-code-reentrancy-in-nft-contracts-1): Explore the critical security concerns in NFT smart contracts, focusing on the reentrancy vulnerability and its impact on the Ethereum ecosystem

[Blog/safe Wallet Security Monitor](https://blocksec.com/blog/safe-wallet-security-monitor): Displaying transaction information comprehensively, analyzing transaction risks, and simulating transaction outcomes to prevent asset loss.

[Blog/rustle The First Automatic Auditor For Near Community](https://blocksec.com/blog/rustle-the-first-automatic-auditor-for-near-community): Rustle, developed by BlockSec, is an automatic auditor for NEAR smart contracts, offering comprehensive vulnerability detection and analysis.

[Blog/revolutionizing L2 Chains Building Intrinsic Security From Sequencers](https://blocksec.com/blog/revolutionizing-l2-chains-building-intrinsic-security-from-sequencers): This article introduces the Sequencer Threat Overwatch Program (STOP), a groundbreaking Layer 2 security solution initiated by BlockSec and Manta.

[Blog/revisiting The Wormhole Attacks](https://blocksec.com/blog/revisiting-the-wormhole-attacks): An in-depth analysis of the Wormhole attack reveals vulnerabilities in the signature verification process, allowing an attacker to mint 120,000 ETH on Solana without locking any assets on Ethereum.

[Blog/revisiting The Cashio App Security Incident](https://blocksec.com/blog/revisiting-the-cashio-app-security-incident): CashioApp was exploited due to insufficient input account validation, resulting in the unauthorized minting of $CASH tokens using fake collateral and Saber accounts.

[Blog/revest Finance Vulnerabilities More Than Re Entrancy](https://blocksec.com/blog/revest-finance-vulnerabilities-more-than-re-entrancy): Securing the Future of DeFi: Lessons Learned from Revest Finance's Vulnerabilities

[Blog/reveal The Message Replay Attacks On Ethereum Po W](https://blocksec.com/blog/reveal-the-message-replay-attacks-on-ethereum-po-w): Learn about recent attacks on EthereumPoW involving message replay, highlighting the vulnerability in the Omni bridge and the need for chainId verification

[Blog/reflecting On Reflection Tokens A Security Perspective](https://blocksec.com/blog/reflecting-on-reflection-tokens-a-security-perspective): In this blog, our primary focus is on sharing security-related insights from our research on the reflection token mechanism.

[Blog/recent De Fi Hacks How Phalcon Block Could Protect User Assets Worth Millions](https://blocksec.com/blog/recent-de-fi-hacks-how-phalcon-block-could-protect-user-assets-worth-millions): Recent Hacks Highlight Need for Around-the-Clock Blockchain Security Through Automation

[Blog/pump Dump Shar Metasleuth](https://blocksec.com/blog/pump-dump-shar-MetaSleuth): In this case study, MetaSleuth, an on-chain fund tracking and investigation tool, was used to trace the stolen funds, providing a clear view of the impact and fund flow.

[Blog/public Transfer Vulnerability Of The Tether Gold Smart Contract](https://blocksec.com/blog/public-transfer-vulnerability-of-the-tether-gold-smart-contract): Our internal analysis tool found a bug in Tether Gold contract on April 5th, which allows an attacker to transfer anyone’s XAUt (Tether Gold) token to a predefined address.

[Blog/protecting Your Assets Safeguarding Against Phishing Scams In Web3](https://blocksec.com/blog/protecting-your-assets-safeguarding-against-phishing-scams-in-web3): The blog post summarizes phishing tactics in Web3 and advises caution with websites, careful address verification, and the use of secure wallets for asset protection.

[Blog/proactive Threat Prevention A New Web3 Security Paradigm 1](https://blocksec.com/blog/proactive-threat-prevention-a-new-web3-security-paradigm-1): On 2023–03–17 05:48:59 (UTC), BlockSec successfully blocked an attack attempt on ParaSpace (a top NFT lending protocol) and protected crypto assets worth $5M.

[Blog/price Manipulation Attack In Reality Again Rari Capital Incident](https://blocksec.com/blog/price-manipulation-attack-in-reality-again-rari-capital-incident): On May 8th, Peckshield reported a security incident about RariCapital. After careful investigation, we found that it's a type of price manipulation attack (indirect one) that was described in our paper: DeFiRanger: Detecting Price Manipulation.

[Blog/podcast How Block Sec Intercepted 15 M Of Web3 Exploits In Real Time 1](https://blocksec.com/blog/podcast-how-block-sec-intercepted-15-m-of-web3-exploits-in-real-time-1): Andy Zhou, as a guest on the Scraping Bits podcast, discusses how to block attacks in the Web3 area.

[Blog/phishing Contracts](https://blocksec.com/blog/phishing-contracts): Scammers are no longer relying solely on Externally Owned Accounts (EOAs). Instead, they've shifted toward deploying smart contracts.

[Blog/phalcon Virtual Experience Join Our Free Hack Defense Game And Block Real Attacks With Phalcon](https://blocksec.com/blog/phalcon-virtual-experience-join-our-free-hack-defense-game-and-block-real-attacks-with-phalcon): <center> In a forest shrouded in mist and darkness, every soul is enveloped in an indescribable premonition. Unknown fears rustle with the wind, as if an unforeseen dark force could descend at any moment.

[Blog/phalcon Security The Proactive Defense Ending Zero Day Web3 Attacks](https://blocksec.com/blog/phalcon-security-the-proactive-defense-ending-zero-day-web3-attacks): Discover how Phalcon Security spots and stops attacks in the mempool automatically. This shifts Web3 defense from reacting to being proactive.

[Blog/phalcon S 2023 Year End Recap](https://blocksec.com/blog/phalcon-s-2023-year-end-recap): Through the story of Phalcon, let's explore the relentless efforts made by BlockSec to advance Web3 security in 2023.

[Blog/phalcon Overview Of The Web3 Security Landscape In 2023](https://blocksec.com/blog/phalcon-overview-of-the-web3-security-landscape-in-2023): In 2023, losses ranging from $100K to $200M occurred across 69 hacking incidents caused by the exploitation of vulnerabilities.

[Blog/phalcon Oracle Monitor](https://blocksec.com/blog/phalcon-oracle-monitor): Mango Markets lost $116 million, Venus lost $11.2 million, and Rho Markets lost $7.6 million—but all of these losses could have been completely avoided.

[Blog/phalcon Explorer Now Fully Supports Solana](https://blocksec.com/blog/phalcon-explorer-now-fully-supports-solana): In 2024, Solana has emerged as one of the most popular blockchains. Its lightning-fast speed and low fees provide an exceptional user experience, while its high throughput and low latency make it the preferred platform for decentralized applications.

[Blog/phalcon Explorer Next Gen Web3 Transaction Analysis Tool 1](https://blocksec.com/blog/phalcon-explorer-next-gen-web3-transaction-analysis-tool-1): BlockSec's Phalcon Explorer upgrades Web3 blockchain transaction analysis with call traces, debugger, simulator, fuzzy/event search, 26+ chains, 100K+ users

[Blog/phalcon Explorer Empowering Tvl Growth For The Evm Chain 1](https://blocksec.com/blog/phalcon-explorer-empowering-tvl-growth-for-the-evm-chain-1): L1/L2 competition is becoming increasingly fierce. According to DefiLlama, there are currently over 200 chains, with 120 of them being EVM chains, including star projects like Arbitrum, Optimism, and Base.

[Blog/phalcon Enhances Mantle Security](https://blocksec.com/blog/phalcon-enhances-mantle-security): Phalcon enhances Mantle Network by offering advanced attack monitoring and automatic blocking capabilities, ensuring robust post-launch security for the ecosystem and its participants.

[Blog/phalcon Compliance Launches Self Service Platform Making On Chain Aml Accessible For All](https://blocksec.com/blog/phalcon-compliance-launches-self-service-platform-making-on-chain-aml-accessible-for-all): The Self-Service Platform enables individuals and SMEs to perform instant KYT/KYA screening — meeting global AML/CFT standards with BlockSec’s powerful compliance technology.

[Blog/phalcon Compliance App](https://blocksec.com/blog/phalcon-compliance-app): We are excited to announce the launch of the Phalcon Compliance APP, a brand-new addition to the BlockSec Phalcon suite.

[Blog/paraspace Incident A Race Against Time To Thwart The Industrys Most Critical Attack Yet](https://blocksec.com/blog/paraspace-incident-a-race-against-time-to-thwart-the-industrys-most-critical-attack-yet): ParaSpace Incident: A Race Against Time to Thwart the Industry's Most Critical Attack Yet

[Blog/our Take On The Inverse Finance Security Incident Price Manipulation Attack](https://blocksec.com/blog/our-take-on-the-inverse-finance-security-incident-price-manipulation-attack): Flashloan Exploit in Inverse Finance: Attacker Profits Nearly $100k USDT and 53.2 WBTC

[Blog/our Short Analysis Of The Profanity Tool Vulnerability](https://blocksec.com/blog/our-short-analysis-of-the-profanity-tool-vulnerability): The Wintermute has been exploited for more than 160M loss. The root cause is that the private key of the Wintermute project was compromised due to a vulnerability in the Profanity tool, which was used by Wintermute to generate the private key and.

[Blog/our Short Analysis Of The Accusation Of The Wintermute Project 1](https://blocksec.com/blog/our-short-analysis-of-the-accusation-of-the-wintermute-project-1): BlockSec's investigation challenges the accusations made in the report analyzing the Wintermute Hack, questioning the solidity of the claims against the Wintermute project.

[Blog/our Short Analysis Of The Accusation Of The Wintermute Project](https://blocksec.com/blog/our-short-analysis-of-the-accusation-of-the-wintermute-project): After investigating the report named Analysis of the Wintermute Hack: An Inside Job published by James Edwards (@libreshash), we believe that the accusation of the Wintermute project is not as solid as the author claimed.

[Blog/not All Tokens Are Good The Quick Analysis Of The Paraluni Attack](https://blocksec.com/blog/not-all-tokens-are-good-the-quick-analysis-of-the-paraluni-attack): The article provides a detailed analysis of an attack on the Paraluni project, highlighting vulnerabilities related to token verification and reentrancy, and emphasizing the importance of security measures in the emerging Web3 world.

[Blog/new Website Unveiled Block Sec Safeguards Protocol S Lifecycle Security](https://blocksec.com/blog/new-website-unveiled-block-sec-safeguards-protocol-s-lifecycle-security): BlockSec launches the new website, unveiling a new era of full-stack, lifecycle blockchain security services.🙌

[Blog/new Integer Overflow Bug Discovered In Solana R Bpf](https://blocksec.com/blog/new-integer-overflow-bug-discovered-in-solana-r-bpf): Integer Overflow Bug Found in Solana's Virtual Machine That Puts the Network at Risk

[Blog/monthly Security Review June 2024 1](https://blocksec.com/blog/monthly-security-review-june-2024-1): Security at a Glance 👀 DeFi Sector - UwU Lend Hacks On June 10 and 13, UwU Lend suffered attacks resulting in losses exceeding $23M.

[Blog/monthly Security Review February 2024](https://blocksec.com/blog/monthly-security-review-february-2024): Security at a Glance 👀 In February 2024, DeFi exploits have led to losses of around $8 million. Numerous malicious proposals have been detected, signaling a cautionary note for DAOs.

[Blog/meta Suites 5 0 Extends Full Support To Solana Scans](https://blocksec.com/blog/meta-suites-5-0-extends-full-support-to-solana-scans): Exploring boundless possibilities: MetaSuites 5.0 integrates major Solana scans and supports cross-site local labels.

[Blog/meta Dock Breaks Through 6 K Users](https://blocksec.com/blog/meta-dock-breaks-through-6-k-users): MetaDock, a web3 browser extension, reaches 6000 users, enhancing blockchain explorers with seamless integration and prioritizing user privacy and security.

[Blog/meme Shar](https://blocksec.com/blog/meme-shar): 背景 10月23日UTC时间下午2点，SHAR以戏剧性的表现登场，其价格从开盘的0.00056美元飙升至0.05986美元，市值在短短一小时内飙升至6000万美元，增长了近100倍。在接下来的几个小时里，有关SHAR团队的负面消息开始浮现，有推主指控其涉嫌操纵KOL以吸引投资。因为负面舆论，SHAR的价格在接下来的三小时里下跌至0.02393美元，市值最低跌至不到高点的一半。但尽管有负面消息，许多买家相信这不会对SHAR项目造成重大影响，因为一些知名的KOL在价格低点继续大量购买，并对SHAR的.

[Blog/mastering Digital Signatures In Nft Smart Contracts For Enhanced Security And Efficiency](https://blocksec.com/blog/mastering-digital-signatures-in-nft-smart-contracts-for-enhanced-security-and-efficiency): Ensuring NFT Authenticity with Digital Signatures: Learn how digital signatures provide authenticity and integrity in NFT smart contract development

[Blog/major Upgrades To Block Sec Phalcon S Storage Analysis And Monitoring Functions](https://blocksec.com/blog/major-upgrades-to-block-sec-phalcon-s-storage-analysis-and-monitoring-functions): BlockSec is pleased to announce a significant upgrade to our crypto hack monitoring and blocking system Phalcon's storage analysis and monitoring capabilities.

[Blog/loopring Lrc Protocol Incident](https://blocksec.com/blog/loopring-lrc-protocol-incident): In November 2020, lots of DeFi platforms in Ethereum encounters a security incident, such as Pickle Finance, 88mph. To detect the security incidents that happened in DeFi, we developed the ThunderForecast system.

[Blog/lifi Illicit Metasleuth](https://blocksec.com/blog/lifi-illicit-metasleuth): 事件背景 2024年7月16日，著名的链桥(cross-chain bridge)和去中心化交易所聚合器(DEX aggregator) Li.Fi 遭遇了重大的安全攻击。黑客利用了 Li.Fi Diamond Contract，其用户的价值约 1160 万美元的加密货币资产(包含多种稳定币)被盗。向被攻击合约进行过无限制 Approve 操作的用户地址几乎完全被黑客抽干。 - 攻击者以太坊地址: 0x8b3cb6bf982798fba233bca56749e22eec42dcf3 - 有漏洞的.

[Blog/li Fi Attack A Cross Chain Bridge Vulnerability No It S Due To Unchecked External Call](https://blocksec.com/blog/li-fi-attack-a-cross-chain-bridge-vulnerability-no-it-s-due-to-unchecked-external-call): "LI.FI's Cross-Chain Bridge Vulnerability: A Lesson in External Call Security for DeFi" - Offering insights into the need for better security practices in DeFi coding

[Blog/lethal Integration Vulnerabilities In Hooks Due To Risky Interactions](https://blocksec.com/blog/lethal-integration-vulnerabilities-in-hooks-due-to-risky-interactions): In this article, we explore the vulnerabilities that arise during hook interaction logic, specifically concentrating on two scenarios: flawed access control and improper input validation.

[Blog/lead In Uniswap V4 Hook Risks](https://blocksec.com/blog/lead-in-uniswap-v4-hook-risks): Exploring and addressing security risks in Uniswap v4's hook mechanisms through detailed analysis and mitigation strategies.

[Blog/lead In Secure Smart Contract Development](https://blocksec.com/blog/lead-in-secure-smart-contract-development): Our series explores essential security practices for developing secure, efficient smart contracts, especially NFTs.

[Blog/lead In Phalcon S Hack Blocking Saga](https://blocksec.com/blog/lead-in-phalcon-s-hack-blocking-saga): In this series, explore how BlockSec Phalcon, the world's first crypto hack monitoring and blocking system, innovatively saved millions in assets.

[Blog/lead In De Fi Risk Mitigation Guide 2](https://blocksec.com/blog/lead-in-de-fi-risk-mitigation-guide-2): In this series, explore detailed main DeFi risk types, how to assess project risk, user security tips, and how DeFi Project teams can ensure security

[Blog/kyberswap Incident Masterful Exploitation Of Rounding Errors With Exceedingly Subtle Calculations](https://blocksec.com/blog/kyberswap-incident-masterful-exploitation-of-rounding-errors-with-exceedingly-subtle-calculations): KyberSwap Incident: Masterful Exploitation of Rounding Errors with Exceedingly Subtle Calculations

[Blog/key Highlights Of Evm Chain Audits In 2024 Insights From Block Sec](https://blocksec.com/blog/key-highlights-of-evm-chain-audits-in-2024-insights-from-block-sec): Discover the key trends in EVM Chain audits for 2024 —— BlockSec provides comprehensive solutions to address security concerns and provide actionable recommendations, ensuring the robustness and reliability of blockchain projects.

[Blog/is Ethena The Upgraded Luna Stablecoins](https://blocksec.com/blog/is-ethena-the-upgraded-luna-stablecoins): This article examines stablecoins, defining their role in digital currencies and using USDe from Ethena to study operational mechanisms and risks in the competitive landscape.

[Blog/interlace Boosts Crypto Payment Compliance With Block Sec](https://blocksec.com/blog/interlace-boosts-crypto-payment-compliance-with-block-sec): Interlace boosts crypto payment compliance with BlockSec's Phalcon Compliance: real-time KYA/KYT screening, tiered risk controls, safer deposits & withdrawals.

[Blog/instant Crypto Exchanges Money Laundering](https://blocksec.com/blog/instant-crypto-exchanges-money-laundering): While ICE offers efficiency and convenience, it has also quietly opened the door to illicit activities such as money laundering.

[Blog/instant Crypto Compliance Software Blocksec Phalcon 3 1](https://blocksec.com/blog/instant-crypto-compliance-software-blocksec-phalcon-3-1): Phalcon Compliance 3.1 speeds crypto AML/KYT: instant wallet screening, lite scans, hot risk intel, flexible pay-as-you-go credits, multi-chain support.

[Blog/inside Ethereum S Shadow Economy New Research Unmasks The 135 M Drainer As A Service Industry](https://blocksec.com/blog/inside-ethereum-s-shadow-economy-new-research-unmasks-the-135-m-drainer-as-a-service-industry): A new academic study, co-authored by a BlockSec intern, reveals how “Drainer-as-a-Service” industrialized crypto phishing—stealing over $135M. Explore how these profit-sharing scams work and the security blind spots they expose.

[Blog/in Depth Analysis And Reflections On The Resupply Protocol Attack Incident](https://blocksec.com/blog/in-depth-analysis-and-reflections-on-the-resupply-protocol-attack-incident): This article will provide a more detailed analysis on the resupply stable coin security incident.

[Blog/illicit Fund Flow Case Study Phishing](https://blocksec.com/blog/illicit-fund-flow-case-study-phishing): In this case study, MetaSleuth, an on-chain fund tracking and investigation tool, was used to trace the stolen funds, providing a clear view of the attack’s impact and fund flow.

[Blog/illicit Fund Flow Case Study Lifi Attack Metasleuth](https://blocksec.com/blog/illicit-fund-flow-case-study-lifi-attack-metasleuth): In the LiFi attack case study, MetaSleuth, an on-chain fund tracking and investigation tool, was used to trace the stolen funds, providing a clear view of the attack’s impact and fund flow.

[Blog/how We Recover The Stolen Funds For Transitswap And Babyswap](https://blocksec.com/blog/how-we-recover-the-stolen-funds-for-transitswap-and-babyswap): Swift Recovery of Stolen Funds: How we efficiently recovered stolen funds from the TransitSwap and BabySwap attack on the BSC network using a vulnerability in the attacker's bot

[Blog/how We Recover The Stolen Funds For Transit Swap And Baby Swap](https://blocksec.com/blog/how-we-recover-the-stolen-funds-for-transit-swap-and-baby-swap): BabySwap and TransitSwap on BSC experienced attacks on October 1, with a vulnerable bot being front-run and its private key recovered, resulting in the successful transfer of funds to a secure account.

[Blog/how Unchecked Mapping Makes 200 M Losses Of Nomad Bridge](https://blocksec.com/blog/how-unchecked-mapping-makes-200-M-losses-of-nomad-bridge): How Nomad Bridge's Security Was Compromised: Analysis of the code that led to Nomad Bridge's vulnerability and the subsequent exploit of nearly $200M

[Blog/how To Verify A Signature In A Wrong Way The Association Nft Case 1](https://blocksec.com/blog/how-to-verify-a-signature-in-a-wrong-way-the-association-nft-case-1): The article discusses a serious vulnerability in the NBA's Association NFT sale contract, highlighting the importance of implementing proper security measures in popular blockchain projects.

[Blog/how To Use Phalcon Debug To Dive Into A Transaction 1](https://blocksec.com/blog/how-to-use-phalcon-debug-to-dive-into-a-transaction-1): Phalcon supports the debugging of a transaction, a powerful feature that can significantly improve the analysis efficiency for complex transactions.

[Blog/how To Use Meta Sleuth To Analyze A Phishing Attack 1](https://blocksec.com/blog/how-to-use-meta-sleuth-to-analyze-a-phishing-attack-1): This blog will show how to use MetaSleuth (@MetaSleuth) to analyze a phishing attack. Involved Addresses For better illustration, we show the involved addresses and their abbreviations in the following.

[Blog/how To Track Solana Whale With Block Sec S Crypto Wallet Tracker Meta Sleuth](https://blocksec.com/blog/how-to-track-solana-whale-with-block-sec-s-crypto-wallet-tracker-meta-sleuth): Discover how BlockSec's MetaSleuth, a top crypto wallet tracker, revolutionizes the monitoring of Solana's influential crypto whales. Gain insights into using MetaSleuth for advanced blockchain analysis and real-time transaction tracking.

[Blog/how To Track Smart Money On Solana Blockchain Using Meta Sleuth](https://blocksec.com/blog/how-to-track-smart-money-on-solana-blockchain-using-meta-sleuth): MetaSleuth provides key tools for tracking smart money on Solana, offering powerful analytics, a user-friendly interface, and robust collaboration features to help investors uncover sophisticated blockchain strategies.

[Blog/how To Play Four Meme Without Getting Sandwiched](https://blocksec.com/blog/how-to-play-four-meme-without-getting-sandwiched): How to use BlockSec Anti-MEV RPC to avoid getting “sandwiched” when playing Four.meme.

[Blog/how To Optimize Your Earnings In The Solana Ecosystem With Meta Sleuth](https://blocksec.com/blog/how-to-optimize-your-earnings-in-the-solana-ecosystem-with-meta-sleuth): Learn about the Solana Watcher dashboard and Solana Advanced Analyze features to optimize your earnings

[Blog/how To Mitigate Smart Contract Risks A Comprehensive Guide To Secure Blockchain Operations](https://blocksec.com/blog/how-to-mitigate-smart-contract-risks-a-comprehensive-guide-to-secure-blockchain-operations): Learn to mitigate smart contract risks and protect your blockchain operations with BlockSec's comprehensive solutions and expertise.

[Blog/how To Make The Blockchain Attack Blockable](https://blocksec.com/blog/how-to-make-the-blockchain-attack-blockable): In the past two years, we have observed a couple of security incidents in the DeFi ecosystem. Not surprisingly, there exist several cases of attacked contracts that have been audited by multiple companies.

[Blog/how To Exploit The Same Vulnerability Of Meta Pool In Two Different Ways Nerve Bridge Saddle Finance What You See Is Not What You Get](https://blocksec.com/blog/how-to-exploit-the-same-vulnerability-of-meta-pool-in-two-different-ways-nerve-bridge-saddle-finance-what-you-see-is-not-what-you-get): Exploring the Repeat Exploitation of MetaPool's Flaw in Nerve Bridge and Saddle Finance Incidents" – uncovering the persistence of a crypto vulnerability

[Blog/how To Evaluate Project Security Through Security Audit Report](https://blocksec.com/blog/how-to-evaluate-project-security-through-security-audit-report): Explore the power of security audit reports in ensuring blockchain project security, and how BlockSec's comprehensive methodology delivers accurate assessments through automated scans, manual verification, and business logic analysis.

[Blog/how To Dyor For Investing In Solana Ecosystem Tokens With Crypto Tracker Meta Sleuth](https://blocksec.com/blog/how-to-dyor-for-investing-in-solana-ecosystem-tokens-with-crypto-tracker-meta-sleuth): Master DYOR in the Solana ecosystem with MetaSleuth, explore Solana's investment potential and leverage MetaSleuth's game-changing features for comprehensive analysis and informed decision-making.

[Blog/how To Dyor For Cryptocurrency Investments Using Meta Sleuth A Comprehensive Guide On Tracking Smart Money In The Solana Ecosystem](https://blocksec.com/blog/how-to-dyor-for-cryptocurrency-investments-using-meta-sleuth-a-comprehensive-guide-on-tracking-smart-money-in-the-solana-ecosystem): In this blog, we will demonstrate how to use MetaSleuth to track the "smart money" on Solana.

[Blog/how To Choose The Right Security Monitoring Platform For Your Protocols](https://blocksec.com/blog/how-to-choose-the-right-security-monitoring-platform-for-your-protocols): Discover the importance of security monitoring for blockchain projects and the factors worth considering when choosing a security monitoring platform for your protocol

[Blog/how To Choose The Ideal Security Audit Company For Your Protocol A Comprehensive Guide](https://blocksec.com/blog/how-to-choose-the-ideal-security-audit-company-for-your-protocol-a-comprehensive-guide): Discover the key factors to consider when choosing a security audit company for your blockchain project and explore how BlockSec offers unique security audit solutions and security products Phalcon to ensure the life-cycle safety of projects.

[Blog/how To Check The Security Of Cosmos Bridge A Comprehensive Guide](https://blocksec.com/blog/how-to-check-the-security-of-cosmos-bridge-a-comprehensive-guide): Explore the significance of securing Cosmos Bridge, learn how to assess Cosmos Bridge's security and discover BlockSec's expertise in providing tailored security audits for cross-chain transactions.

[Blog/how To Become A Smart Contract Auditor Your Guide To Mastering Blockchain Security](https://blocksec.com/blog/how-to-become-a-smart-contract-auditor-your-guide-to-mastering-blockchain-security): Discover the essential steps to mastering smart contract audits with our comprehensive guide. Learn the skills, tools, and best practices needed to excel in blockchain security and become a pivotal player in the world of DeFi and NFTs

[Blog/how To Avoid Smart Contract Hacks With Fuzzing Technology](https://blocksec.com/blog/how-to-avoid-smart-contract-hacks-with-fuzzing-technology): Explore how fuzzing technology and BlockSec's expertise in blockchain security can help prevent smart contract hacks and protect your assets in the ever-evolving blockchain ecosystem.

[Blog/how To Avoid Being A Web3 Phishing Victim](https://blocksec.com/blog/how-to-avoid-being-a-web3-phishing-victim): In this blog, we present popular phishing methods, and how how to avoid being a phishing victim.

[Blog/how The U S Traced 110 M Crypto Money Laundering Cases Block Sec](https://blocksec.com/blog/how-the-u-s-traced-110-m-crypto-money-laundering-cases-block-sec): U.S. authorities exposed $110M crypto money laundering tied to human trafficking scams. BlockSec’s MetaSleuth traces flows via Deltec Bank, revealing compliance gaps and lessons for exchanges, regulators, and investors.

[Blog/how The Mirror Protocol Got Exploited](https://blocksec.com/blog/how-the-mirror-protocol-got-exploited): Revealing How an Attacker Exploited Mirror Protocol by Manipulating mETH and USTC Values

[Blog/how Phlacon Block Helped Loot Block 1 M Usd Hack](https://blocksec.com/blog/how-phlacon-block-helped-loot-block-1-m-usd-hack): The comprehensive process of how Phalcon saved more than 1 Million USD for Loot.

[Blog/how Phishing Websites Bypass Wallet Security Alerts Strategies Unveiled](https://blocksec.com/blog/how-phishing-websites-bypass-wallet-security-alerts-strategies-unveiled): Explore the two common methods phishing websites use to circumvent the blacklist mechanism of Web3 security wallets.

[Blog/how Is The Performance Of Bsc After Full Implementation Of Pbs](https://blocksec.com/blog/how-is-the-performance-of-bsc-after-full-implementation-of-pbs): BSC's adoption of PBS (BEP-322) has reshaped its ecosystem, driving Builder market growth while increasing centralization risks and MEV attacks, such as sandwich attacks, spurring the creation of privacy RPC solutions for better transaction security.

[Blog/how Can Block Sec Phalcon Prevent Hacker Attacks On De Fi Protocols By Using Front Running Techniques](https://blocksec.com/blog/how-can-block-sec-phalcon-prevent-hacker-attacks-on-de-fi-protocols-by-using-front-running-techniques): Explore how front-running techniques can be used to prevent hacker attacks and enhance the security of DeFi protocols.

[Blog/how Blocksec Rescued Stolen Funds From Technical Perspectives Of Three Representative Cases](https://blocksec.com/blog/how-blocksec-rescued-stolen-funds-from-technical-perspectives-of-three-representative-cases): Discover how BlockSec's innovative technical strategies successfully recovered millions in stolen DeFi funds, setting a new standard for asset recovery in the blockchain space

[Blog/how Akutar Nft Loses 34 M Usd](https://blocksec.com/blog/how-akutar-nft-loses-34-m-usd): Uncovering serious logic vulnerabilities in @AkuDreams contracts, leading to a potential DoS attack and permanent locking of project funds

[Blog/how A Vulnerability Is Silently Fixed By Coin98](https://blocksec.com/blog/how-a-vulnerability-is-silently-fixed-by-coin98): The article highlights a recent attack on the Coin98 smart contract on the Binance Smart Chain (BSC) and the subsequent fix implemented by the project owner to address the vulnerability.

[Blog/how A Critical Bug In Solana Network Was Detected And Timely Patched](https://blocksec.com/blog/how-a-critical-bug-in-solana-network-was-detected-and-timely-patched): In April, our vulnerability detection system discovered an issue in the rBPF of Solana (i.e., the virtual machine where all the Solana dApps are running on: https://github.com/solana-labs/rbpf).

[Blog/how L2 Blockchains Can Do Better To Protect Their Users](https://blocksec.com/blog/how-L2-blockchains-can-do-better-to-protect-their-users): How layer 2 (L2) chains can implement several measures to enhance the security of top protocols and protect users' assets on the chain.

[Blog/harvesting Mev Bots By Exploiting Vulnerabilities In Flashbots Relay](https://blocksec.com/blog/harvesting-mev-bots-by-exploiting-vulnerabilities-in-flashbots-relay): MEV bots were exploited due to Flashbots relay vulnerability, the number one security incident in the top ten "awesome" security incidents in 2023.

[Blog/getting Started With Phalcon 2 0 2](https://blocksec.com/blog/getting-started-with-phalcon-2-0-2): Phalcon is a powerful transaction explorer designed for DeFi community. It provides comprehensive data on invocation flow, balance changes, and fund flows for transactions. It also supports transaction simulation.

[Blog/fsb 2025 Assessment Stablecoin Regulatory Fragmentation Intensifies Arbitrage Risks](https://blocksec.com/blog/fsb-2025-assessment-stablecoin-regulatory-fragmentation-intensifies-arbitrage-risks): The FSB's latest assessment reveals worrying fragmentation in global stablecoin regulation. Uneven rules create risks and allow some to take advantage. This shows we need global standards.

[Blog/following The Frozen An On Chain Analysis Of Usdt Blacklisting And Its Links To Terrorist Financing](https://blocksec.com/blog/following-the-frozen-an-on-chain-analysis-of-usdt-blacklisting-and-its-links-to-terrorist-financing): This report analyzes USDT blacklisting patterns and their links to terrorist financing, revealing laundering loops, cross-chain flows, and enforcement delays.

[Blog/flash Loan Attack On Plouto Vault](https://blocksec.com/blog/flash-loan-attack-on-plouto-vault): BlockSec Team analyzes a malicious attack on Plouto Vault, where flash loans were utilized to manipulate liquidity, resulting in a gain of $698,775.32 USD.

[Blog/factors Making Web3 More Vulnerable To Hacks And Our Mitigation Strategies](https://blocksec.com/blog/factors-making-web3-more-vulnerable-to-hacks-and-our-mitigation-strategies): In a world where blockchain hacks and capital exploitation seem to occur almost weekly, the question arises: Can we effectively prevent these security breaches?

[Blog/exploring The Tradeoff Between Convenience And Security In Unlimited Approval Erc 20 Tokens](https://blocksec.com/blog/exploring-the-tradeoff-between-convenience-and-security-in-unlimited-approval-erc-20-tokens): Discover the delicate balance between ease of use and security in the world of ERC20 tokens with unlimited approval and its impact on the blockchain ecosystem

[Blog/examining Eigenlayer And Restaking From The Security Perspective](https://blocksec.com/blog/examining-eigenlayer-and-restaking-from-the-security-perspective): This blog presents EigenLayer's basic idea and illustrates the new security threats in the restaking ecosystem.

[Blog/euler Finance Incident The Largest Hack Of 2023](https://blocksec.com/blog/euler-finance-incident-the-largest-hack-of-2023): On March 13, 2023, our system detected that Euler Finance's lending pool had suffered a flash loan attack, resulting in losses of $197 million.

[Blog/enhancing Web3 Security Exploring The Top 5 Security Monitoring Platforms In 2024](https://blocksec.com/blog/enhancing-web3-security-exploring-the-top-5-security-monitoring-platforms-in-2024): Discover the top 5 security monitoring platforms in blockchain and experience the advantages of BlockSec Phalcon. With early attack detection and customizable rules, Phalcon secures web3 applications effectively.

[Blog/enhancing Security And Trust In Evm Compatible Chains Insights From Block Sec S 2024 Audits](https://blocksec.com/blog/enhancing-security-and-trust-in-evm-compatible-chains-insights-from-block-sec-s-2024-audits): Gain valuable insights into BlockSec's 2024 audits for enhancing security and trust in EVM-compatible chains, including proactive measures, specialized expertise, and advanced countermeasures.

[Blog/enhancing Blockchain Security The Role Of Smart Contract Auditors](https://blocksec.com/blog/enhancing-blockchain-security-the-role-of-smart-contract-auditors): Discover the crucial role of smart contract auditors in blockchain security, safeguarding DeFi and NFT platforms from vulnerabilities and financial losses

[Blog/enhance Your Onboarding Process With Meta Sleuth A Tornado Cash Case Study](https://blocksec.com/blog/enhance-your-onboarding-process-with-meta-sleuth-a-tornado-cash-case-study): The blog highlights MetaSleuth's key role in tracking illegal cryptocurrency transactions, particularly with Tornado Cash, for legal and enforcement entities.

[Blog/eigenlayer Competitor Symbiotic](https://blocksec.com/blog/eigenlayer-competitor-symbiotic): Symbiotic, the rising star in the restaking sector, has quickly gained market attention by surpassing $1 billion in TVL within a month.

[Blog/doj Seizes 15b Bitcoin In Global Crypto Crime Crackdown](https://blocksec.com/blog/doj-seizes-15b-bitcoin-in-global-crypto-crime-crackdown): Global crackdown: DOJ seizes $15B Bitcoin; US-UK sanction Huione and Prince Group. BlockSec Phalcon enables instant on-chain risk screening.

[Blog/deposit Less Get More Y Credit Attack Details](https://blocksec.com/blog/deposit-less-get-more-y-credit-attack-details): Exploiting yCREDIT: How Attackers Minted Excess Tokens for Profit" – Discover the vulnerability that disrupted yCREDIT's token balance

[Blog/demystifying Rop In Web3 Phishing](https://blocksec.com/blog/demystifying-rop-in-web3-phishing): In this blog, we will show a new type of Web3 phishing and provide suggestions for how to avoid being phished.

[Blog/demystifying Profit Sharing In Inferno Drainer 2](https://blocksec.com/blog/demystifying-profit-sharing-in-inferno-drainer-2): The blog exposes the "Inferno Drainer" phishing scam that causes substantial losses and advises users to transact cautiously to avoid such frauds.

[Blog/demystifying Hacking Incidents By Drainers](https://blocksec.com/blog/demystifying-hacking-incidents-by-drainers): The blog provides an overview of drainer-related hacking incidents targeting Web3 users, highlighting the methods employed by hackers and aiming to enhance users' awareness and protection against these tactics.

[Blog/demystify The Access Control Mechanism In Puffer Protocol](https://blocksec.com/blog/demystify-the-access-control-mechanism-in-puffer-protocol): We reviewed the whole architecture of the access control mechanism and its current configuration in the Puffer protocol.

[Blog/defi Security Landscape](https://blocksec.com/blog/defi-security-landscape): Explore leading vendors and products shaping DeFi security, from pre-launch and post-launch to attack response.

[Blog/de Fi Risk Mitigation Guide 04 Security Practices For De Fi Project Team 1](https://blocksec.com/blog/de-fi-risk-mitigation-guide-04-security-practices-for-de-fi-project-team-1): This part introduce conduct thorough audits, adopt multi-signature wallets, establish bug bounty programs, and communicate transparently with the community to ensure the security of the platform For DeFi project teams

[Blog/de Fi Risk Mitigation Guide 03 Safety Tips For De Fi Users](https://blocksec.com/blog/de-fi-risk-mitigation-guide-03-safety-tips-for-de-fi-users): This series of articles, excerpted from the "Security Special Edition 05" co-curated by OKX Web3 and BlockSec, addresses the security concerns faced by DeFi users and DeFi project teams.

[Blog/de Fi Risk Mitigation Guide 02 How De Fi Users Can Assess Risks](https://blocksec.com/blog/de-fi-risk-mitigation-guide-02-how-de-fi-users-can-assess-risks): This part aims to reveal the importance of reading audit reports, researching project teams, analyzing liquidity and token economics and so on, to effectively assess the risks of DeFi projects

[Blog/de Fi Risk Mitigation Guide 01 Identifying Types Of Risks De Fi Users Face 1](https://blocksec.com/blog/de-fi-risk-mitigation-guide-01-identifying-types-of-risks-de-fi-users-face-1): This part aims to enhance DeFi Users safety awareness through real-life cases, helping users protect their private keys and wallet assets.

[Blog/de Fi Exploit Analysis The Root Cause Of Euler S 200 M Loss](https://blocksec.com/blog/de-fi-exploit-analysis-the-root-cause-of-euler-s-200-m-loss): On March 13, 2023, Euler Finance's lending pool suffered a flash loan attack, resulting in losses of approximately $200 million.

[Blog/de Fi And Stablecoin Security A Discussion With Dr Andy Zhou Ceo Of Bloc Sec](https://blocksec.com/blog/de-fi-and-stablecoin-security-a-discussion-with-dr-andy-zhou-ceo-of-bloc-sec): Hear BlockSec CEO Dr. Andy Zhou on Chaintech discuss leadership, Web3, finance, and the future of fintech.

[Blog/curve Incident Compiler Error Produces Faulty Bytecode From Innocent Source Code](https://blocksec.com/blog/curve-incident-compiler-error-produces-faulty-bytecode-from-innocent-source-code): Curve Incident: Compiler Error Produces Faulty Bytecode from Innocent Source Code

[Blog/crypto Tracking Starting With A Transaction 1](https://blocksec.com/blog/crypto-tracking-starting-with-a-transaction-1): This tutorial will cover using MetaSleuth to trace and analyze funds from a phishing incident, highlighting its tracking and monitoring capabilities.

[Blog/crypto Crashed To Zero How To Spot A Rug Pull](https://blocksec.com/blog/crypto-crashed-to-zero-how-to-spot-a-rug-pull): The blog provides guidance on using crypto analytical tools and due diligence to identify and avoid cryptocurrency scams like Rug Pulls.

[Blog/crypto Atms Under Global Scrutiny Fin Cen And Austrac Tighten Controls Amid Rising Fraud And Money Laundering Risks](https://blocksec.com/blog/crypto-atms-under-global-scrutiny-fin-cen-and-austrac-tighten-controls-amid-rising-fraud-and-money-laundering-risks): Australia and the U.S. tighten oversight of cryptocurrency ATMs as fraud and laundering surge. AUSTRAC reports 85% of large crypto ATM transactions involve illicit funds, while FinCEN issues new rules to strengthen AML reporting for CVC kiosks.

[Blog/copycats Of The Popsicle Finance Attack](https://blocksec.com/blog/copycats-of-the-popsicle-finance-attack): The article presents a list of transactions that have called the "collectFees(0,0)" function of the SorbettoFragola contract, along with their corresponding timestamps and transaction hashes.

[Blog/conceptual Full Analysis A Rise Of Bitcoin With Inscription](https://blocksec.com/blog/conceptual-full-analysis-a-rise-of-bitcoin-with-inscription): The new concept closely associated with Bitcoin - Inscriptions, frequently presents itself to investors worldwide. What exactly are Inscriptions, and how are they implemented? This blog will provide you with a comprehensive explanation.

[Blog/bybit 1 5 B Hack In Depth Analysis Of The Malicious Safe Wallet Upgrade Attack](https://blocksec.com/blog/bybit-1-5-b-hack-in-depth-analysis-of-the-malicious-safe-wallet-upgrade-attack): This blog offers a comprehensive technical breakdown of the attack process and essential security lessons for digital asset protection. Learn effective strategies to bolster blockchain security and prevent similar exploits.

[Blog/btc Cross Chain Monitoring Por](https://blocksec.com/blog/btc-cross-chain-monitoring-por): How do BTC-wrapped assets unlock the liquidity of Bitcoin? What are the main risks involved in this process? How can the security of these assets be enhanced? This article will tell you the answers.

[Blog/bonq Dao Exploited On Polygon 120 M Stolen Due To Flawed Logic](https://blocksec.com/blog/bonq-dao-exploited-on-polygon-120-m-stolen-due-to-flawed-logic): BonqDAO on Polygon suffered a $120M attack due to flawed logic, resulting in significant losses and highlighting the importance of DeFi security.

[Blog/blocksec Supports Btc Ecosystem](https://blocksec.com/blog/blocksec-supports-btc-ecosystem): BlockSec proudly supports the flourishing Bitcoin ecosystem, enhancing blockchain security. Discover how BlockSec safeguards the entire lifecycle of Bitcoin projects, addressing diverse needs at every stage.

[Blog/blocksec Retrospective On Defi Protocol Security In 2023](https://blocksec.com/blog/blocksec-retrospective-on-defi-protocol-security-in-2023): New trends in DeFi protocol security in 2023 and BlockSec's perspective on how to secure DeFi protocols

[Blog/blocksec Phalcon Supports Solana](https://blocksec.com/blog/blocksec-phalcon-supports-solana): Protocols building on Solana can now leverage Phalcon's detection capabilities to monitor potential security threats in real time and implement proactive measures to prevent losses.

[Blog/blocksec Phalcon Safeguards Yei Finance 140m Assets In Real Time](https://blocksec.com/blog/blocksec-phalcon-safeguards-yei-finance-140m-assets-in-real-time): BlockSec Phalcon provides Yei Finance with 24/7 real-time monitoring and automated intervention against attacks and other risks.

[Blog/blocksec Phalcon 2.0 Hack Monitoring Prevention Platform](https://blocksec.com/blog/blocksec-phalcon-2.0-hack-monitoring-prevention-platform): BlockSec Phalcon, the world’s first crypto hack monitoring and blocking system, has launched its 2.0 version, ushering in a new era of fighting against hackers in the Web3 world.

[Blog/blocksec Perspectives And Solutions On The Security Of L2 Blockchains](https://blocksec.com/blog/blocksec-perspectives-and-solutions-on-the-security-of-l2-blockchains): We will first systematically review the security challenges of L2 blockchains and then propose our solutions.

[Blog/blocksec Neo X Audit Collaboration](https://blocksec.com/blog/blocksec-neo-x-audit-collaboration): BlockSec has completed the security audit for Neo X, the EVM-compatible and MEV-resistant sidechain of Neo.

[Blog/blocksec Blockscout Metasuites Phalcon Partnership](https://blocksec.com/blog/blocksec-blockscout-metasuites-phalcon-partnership): The Blockscout blockchain explorer has integrated MetaSuites' address labels (Ethereum, Polygon, Gnosis, Optimism and Base) and GPT-powered transaction explanation (Ethereum) feature, and has also added quick access to Phalcon Explorer.

[Blog/blocksec And Go Plus Reached Strategy Partnership To Explore The Field Of Web 3 0 Security](https://blocksec.com/blog/blocksec-and-go-plus-reached-strategy-partnership-to-explore-the-field-of-web-3-0-security): BlockSec and GoPlus partner to revolutionize Web 3.0 Security with their strategic collaboration

[Blog/blocked Transit Swap Attack Industry S First Hacking Back To Rescue 300 000](https://blocksec.com/blog/blocked-transit-swap-attack-industry-s-first-hacking-back-to-rescue-300-000): Since BlockSec’s debut in 2021, we have long maintained that code auditing alone cannot solve Web3 security issues. Therefore, we have been investing in exploring new paradigms for Web3 security.

[Blog/blocked Saddle Finance Attack Industry S First Influential Blocking To Rescue 3 800 000](https://blocksec.com/blog/blocked-saddle-finance-attack-industry-s-first-influential-blocking-to-rescue-3-800-000): Let's take a look at the industry's first influential blocking that rescued $3,800,000.

[Blog/blocked Platypus Attack Industry S First Counter Exploitation Of A Hacker S Contract](https://blocksec.com/blog/blocked-platypus-attack-industry-s-first-counter-exploitation-of-a-hacker-s-contract): Let's take a look at the industry's first counter-exploitation of a hacker's contract.

[Blog/blocked Paraspace Attack Industry S Most Important Block That Rescued 5 000 000](https://blocksec.com/blog/blocked-paraspace-attack-industry-s-most-important-block-that-rescued-5-000-000): Let's take a look at the industry's industry's most important block that rescued $5,000,000.

[Blog/blocked Home Coin Attack The Industry S First Successful Blocking Story](https://blocksec.com/blog/blocked-home-coin-attack-the-industry-s-first-successful-blocking-story): Let's learn about the game-changing story in Web3: the industry's first successful defense against hacks.

[Blog/blockchain Transaction Security Monitoring Tool With The Lowest False Positive Rate](https://blocksec.com/blog/blockchain-transaction-security-monitoring-tool-with-the-lowest-false-positive-rate): This article explains the importance of low false positive rates in hack monitoring systems and introduces Phalcon, a platform known for its accuracy in threat monitoring and attack-blocking capabilities.

[Blog/block Sec September Business Travel Plans](https://blocksec.com/blog/block-sec-september-business-travel-plans): BlockSec announces its travel itinerary for September, with visits to Singapore, Berlin, and Shanghai, where they will be participating in various events and conferences to share their expertise in Web3 security and usability.

[Blog/block Sec S Perspective On The Jump Counter Exploit Does The Vulnerability Really Exist](https://blocksec.com/blog/block-sec-s-perspective-on-the-jump-counter-exploit-does-the-vulnerability-really-exist): The article provides a detailed analysis of the Jump counter exploit, explaining the steps involved and highlighting the fundamental differences between this exploit and the Platypus case.

[Blog/block Sec Partners With Okx Explorer To Strengthen On Chain Data Compliance](https://blocksec.com/blog/block-sec-partners-with-okx-explorer-to-strengthen-on-chain-data-compliance): BlockSec and OKX Explorer have reached a partnership to jointly enhance the security and compliance levels of on-chain data.

[Blog/block Sec Partners With Ioc And A Ya Mrd To Enhance Web 3 0 Security](https://blocksec.com/blog/block-sec-partners-with-ioc-and-a-ya-mrd-to-enhance-web-3-0-security): BlockSec and Intelligence On Chain (IOC) have partnered to provide the 'AЯMRD' suite, delivering robust security solutions for Web 3.0 projects in the evolving blockchain landscape.

[Blog/block Sec Launches Phalcon Block The World S First Crypto Hack Blocking System For Web3 Security](https://blocksec.com/blog/block-sec-launches-phalcon-block-the-world-s-first-crypto-hack-blocking-system-for-web3-security): BlockSec Phalcon will revolutionize the fight against hackers in the Web3 world.

[Blog/block Sec Has Closed The Seed Funding Raising](https://blocksec.com/blog/block-sec-has-closed-the-seed-funding-raising): BlockSec has closed the seed funding raising that was led by Fenbushi Capital, with participation from A&T Capital, Qulian, Impossible Finance, Incuba Alpha and NEAR MetaWeb Ventures.

[Blog/block Sec Enhancing Blockchain Security Audits With Fuzzing Techniques](https://blocksec.com/blog/block-sec-enhancing-blockchain-security-audits-with-fuzzing-techniques): Explore the application of fuzzing in blockchain security audits and how BlockSec utilizes this technique to proactively identify and mitigate vulnerabilities in smart contracts and EVM chains, ensuring comprehensive assessments for blockchain system.

[Blog/block Sec Closes Seed Plus Funding Round With 8 M Raised](https://blocksec.com/blog/block-sec-closes-seed-plus-funding-round-with-8-m-raised): Blockchain security provider BlockSec has raised $8 million in a funding round led by Vitalbridge Capital and Matrix Partners, aiming to enhance decentralized application security.

[Blog/block Sec And Tokenlon Reached Strategy Partnership](https://blocksec.com/blog/block-sec-and-tokenlon-reached-strategy-partnership): BlockSec and Tokenlon join forces to enhance crypto assets security and risk management

[Blog/block Sec And Fbi Tracking Illicit Funds From Human Trafficking](https://blocksec.com/blog/block-sec-and-fbi-tracking-illicit-funds-from-human-trafficking): As the only Chinese firm invited to the FBI’s Virtual Asset Exchange, BlockSec revealed its groundbreaking research on how crypto “guarantee platforms” fuel human trafficking.

[Blog/beyond 7 Days Exploring The Endless Possibilities Of Phalcon Beyond 7 Days Exploring The Endless Possibilities Of Phalcon](https://blocksec.com/blog/beyond-7-days-exploring-the-endless-possibilities-of-phalcon-beyond-7-days-exploring-the-endless-possibilities-of-phalcon): We were thrilled to receive so much positive feedback and engagement from both longtime users and new followers after launching our 7 Days of Phalcon journey on Twitter.

[Blog/best Wallet Tracker In 2024 How To Use Meta Sleuth To Track Stolen Funds](https://blocksec.com/blog/best-wallet-tracker-in-2024-how-to-use-meta-sleuth-to-track-stolen-funds): This tutorial will cover using best wallet tracker MetaSleuth to trace and analyze funds from a phishing incident, highlighting its tracking and monitoring capabilities.

[Blog/best Solana Transaction Visualization Tool](https://blocksec.com/blog/best-solana-transaction-visualization-tool): MetaSleuth has integrated Solana to provide robust tracking and analysis tools for the expanding Solana ecosystem, aiding in fund tracking and insightful investigations of blockchain activities.

[Blog/best Practices For Smart Contract Security Ensuring Trust And Confidence](https://blocksec.com/blog/best-practices-for-smart-contract-security-ensuring-trust-and-confidence): Discover the best practices and innovative solutions provided by BlockSec, a leading blockchain security company, to safeguard your smart contracts from potential hacks and ensure trust in the blockchain ecosystem.

[Blog/before Profits Fade Your Essential Guide To Inscription Fraud Prevention](https://blocksec.com/blog/before-profits-fade-your-essential-guide-to-inscription-fraud-prevention): This post outlines Bitcoin inscription security risks such as scams, accidental transfers, and tool centralization. It advises using trusted sources, separate wallets, and credible platforms for safety.

[Blog/as An Lp How To Withdraw Funds Timely Before Protocol Pauses](https://blocksec.com/blog/as-an-lp-how-to-withdraw-funds-timely-before-protocol-pauses): BlockSec and Cobo have collaborated to develop a solution that assists LPs in withdrawing funds before the protocol pauses and the liquidity pool freezes.

[Blog/agent Native Crypto Compliance Build Kya Kyt With X402](https://blocksec.com/blog/agent-native-crypto-compliance-build-kya-kyt-with-x402): Discover how BlockSec enables AI agents to run KYA/KYT checks with X402—a stateless, pay-per-call crypto compliance protocol.

[Blog/advanced Analysis Lightweight Fund Tracking](https://blocksec.com/blog/advanced-analysis-lightweight-fund-tracking): In this guide, we'll explore MetaSleuth's fund-tracking feature, which simplifies monitoring outgoing transactions from a specific address.

[Blog/a Short Analysis Of The Wild Exploitation Of Cve 2021 39137](https://blocksec.com/blog/a-short-analysis-of-the-wild-exploitation-of-cve-2021-39137): Explore the security breakdown of the CVE-2021-39137 exploit and its impact on Ethereum's blockchain

[Blog/a New Memory Overwrite Vulnerability Discovered In Wyvern Protocol](https://blocksec.com/blog/a-new-memory-overwrite-vulnerability-discovered-in-wyvern-protocol): Wyvern Protocol Vulnerability Alert: Potential for Exploit Leads to Security Concerns

[Blog/a Logic Bug Identified In Sushiswaps Kashi Pair Medium Risk V1 Contract 1](https://blocksec.com/blog/a-logic-bug-identified-in-sushiswaps-kashi-pair-medium-risk-v1-contract-1): Understanding the Impact of SushiSwap's Contract Flaw: Dozens of pools on Ethereum and BSC were at risk due to the KashiPairMediumRiskV1 contract's logic bug

[Blog/anyswap Rescue Analysis Lessons From A Defi Security Triumph](https://blocksec.com/blog/AnySwap-Rescue-Analysis-Lessons-from-a-DeFi-Security-Triumph): Discover the critical insights from AnySwap's emergency rescue operation against a smart contract attack and the lessons learned for DeFi security

[Blog/9 Mev Bot 0xd61492 From Predator To Prey In An Ingenious Exploit](https://blocksec.com/blog/9-mev-bot-0xd61492-from-predator-to-prey-in-an-ingenious-exploit): On August 3, 2023, an MEV Bot on Arbitrum was attacked, resulting in $800K in loss. The root cause of this attack was **Insufficient User Input Verification**.

[Blog/8 Sushi Swap Incident A Clumsy Rescue Attempt Leads To A Series Of Copycat Attacks](https://blocksec.com/blog/8-sushi-swap-incident-a-clumsy-rescue-attempt-leads-to-a-series-of-copycat-attacks): On April 9, 2023, SushiSwap became the target of an exploit due to an Unverified External Parameter. The total loss is about $3.3 million.

[Blog/6 Hundred Finance Incident Catalyzing The Wave Of Precision Related Exploits In Vulnerable Forked Protocols](https://blocksec.com/blog/6-hundred-finance-incident-catalyzing-the-wave-of-precision-related-exploits-in-vulnerable-forked-protocols): On April 16th, 2023, Hundred Finance, a Compound V2 fork, was attacked, leading to a loss of about $7.4 million.

[Blog/55 M Dai Metasleuth](https://blocksec.com/blog/55-m-dai-metasleuth): 事件背景 2024年8月20日，以太坊上的一起钓鱼交易获利超过了5400万稳定币DAI。被抽空资金的地址是一个vault，由地址0xf2b8在2020年建立并由Gemini提供资金支持。网络钓鱼者诱骗受害者（该vault的原所有者）签名并发送了钓鱼交易，将vault的所有权更改为钓鱼者控制的地址。随后，钓鱼者然后又通过执行一笔交易将vault内的资金转出。 - 钓鱼地址（钓鱼者诱骗受害者将vault的所有权更改为该地址）: 0x0000db5c8b030ae20308ac975898e09741.

[Blog/5 Platypus Finance Surviving Three Attacks With A Stroke Of Luck](https://blocksec.com/blog/5-platypus-finance-surviving-three-attacks-with-a-stroke-of-luck): We show the three attacks to Platypus Finance and how BlockSec rescued 2.4 Million USDC for the protocol.

[Blog/10 Third Web Incident Incompatibility Between Trusted Modules Exposes Vulnerability](https://blocksec.com/blog/10-third-web-incident-incompatibility-between-trusted-modules-exposes-vulnerability): This blog shows the vulnerability and attack caused by Incompatibility of commonly used modules.

## Optional

- [robots.txt](https://blocksec.com/robots.txt)
- [sitemap.xml](https://blocksec.com/sitemap.xml)
~~~

## llms-full

Not found.