Web3 Security
How the attacks actually work: threat actors, techniques, exploits and what to do about them.
-
Drainer-as-a-service: the affiliate model behind crypto phishing
The person who writes a wallet drainer and the person who finds you are almost never the same person, and a smart contract pays them both…
-
Blind signing: what your wallet shows you, and what you actually sign
Every signature a wallet produces commits to a 32-byte digest, and whether the wallet can turn that digest back into a readable sentence is decided by…
-
Approval phishing and the drainer economy
An ERC-20 approval is a standing permission to take tokens out of a wallet later, and it is a separate thing from a transfer.
-
Bybit: the largest theft in the asset class, and the signing interface behind it
On 21 February 2025 roughly $1.46 billion left one of Bybit’s Ethereum cold wallets in a single transaction carrying three valid signatures from the wallet’s own…
-
Clipper Malware: The Invisible Threat Hijacking Crypto Transactions
A form of malware threatens cryptocurrency users worldwide. It has caused major financial losses with a simple, deceptive trick.
-
Clipper Malware: The Invisible Threat Hijacking Crypto Transactions
A form of malware threatens cryptocurrency users worldwide. It has caused major financial losses with a simple, deceptive trick. Known as “Clipper malware,” this software exploits…