Guides
The Whitehat Safe Harbor initiative is a framework in which protocols can offer legal protection to whitehats who help recover assets during an active exploit. Let’s dive deeper into why it was created and how it works. Why? Imagine a whitehat finds a vulnerability in a DeFi protocol, and they can not contact the team […]
Pablo Sabbatella
·
6 May 2024
·
6 MIN
Guides
The CIA triad, also known as the AIC triad in cybersecurity, is an acronym that stands for what are considered the three fundamental components of security: Confidentiality, Integrity, and Availability. It is an organizational model widely adopted to guide security measures, controls, and overall strategy to protect information within organizations. Each component of the CIA […]
Pablo Sabbatella
·
24 Apr 2024
·
13 MIN
Crypto Incidents
TL;DR March 2024 was a pretty quiet month with a relatively low amount of stolen funds ($124M vs. $398M in February), even more so when considering that $62 million from the Munchables hack was returned by the attacker, lowering the total losses for March to $62 million. The Munchables attack was particularly interesting due to […]
Pablo Sabbatella
·
2 Apr 2024
·
4 MIN
Crypto Incidents
TL;DR Blockfence recently discovered a rug pull scam carried out through the Telegram group “NoLiquids”, where the scammers promoted fake tokens that included hidden malicious functions designed to deceive investors.This investigation unveils the operation of the group, the technical aspects of the malicious tokens, and finally, the trace of around 300 ETH of stolen funds that […]
Pablo Sabbatella
·
13 Mar 2024
·
6 MIN
Guides
In the evolving landscape of cybersecurity, zero-knowledge proofs (ZKPs) have emerged as a revolutionary concept, offering a way to prove the veracity of a statement without revealing any information beyond the statement’s validity. This article delves into the intricate world of zero-knowledge proofs, exploring their origins, workings, types, and practical applications in today’s digital environment. […]
Pablo Sabbatella
·
9 Feb 2024
·
12 MIN
Crypto Incidents
TL;DR January 2024 began as a relatively quiet month with no significant attacks involving lost funds. However, it concluded with a notable incident: the theft of 213 million XRP (equivalent to USD 112.5 million) from Chris Larsen, Ripple’s Co-Founder, due to compromised private keys. Attack vectors As highlighted in our recent investigation (link), there is […]
Pablo Sabbatella
·
9 Feb 2024
·
4 MIN
Crypto Incidents
The following is a research investigation conducted by Blockfence, which resulted in the following: The following research will provide a detailed analysis of how the scammers carried out a series of rug pulls and their deceptive techniques to mislead traders while avoiding detection by the most advanced security tools. We also noticed some funds used […]
Pablo Sabbatella
·
12 Jan 2024
·
16 MIN
Crypto Incidents
November has emerged as the second most significant month of the year in terms of lost funds, with a total of $369M. The two most significant incidents were the Poloniex and HTX hacks, both incidents involving compromised private keys. This confirms a trend we have been seeing for the whole year: a new wave of […]
Pablo Sabbatella
·
13 Dec 2023
·
3 MIN
Guides
Designed for beginners and experienced alike, this article will serve as your guide to understanding the intricate world of private keys, delving into their definitions, mechanics, and best practices for secure usage. However, to truly grasp the concept of private keys, we must first embark on a broader exploration of cryptographic systems, starting with the […]
Pablo Sabbatella
·
5 Nov 2023
·
15 MIN