user avatar
CertiK Alert
CertiK
@CertiKAlert
#CertiKInsight Insights, crypto hacks, crypto scams, flashloans. Turn on notifications for automatic alerts πŸ•΅πŸΌ @CertiK 🀝 @CertiKCommunity
Web3
Joined February 2022
  • Pinned
    user avatar
    #CertiKStatsAlert 🚨 Combining all the incidents in May we’ve confirmed ~$68.3M lost to exploits with ~$2.6M of the total attributed to phishing. After a particularly bad April, May is now the third month of 2026 to record losses under 100M$. More details below πŸ‘‡
  • user avatar
    #CertiKSkynetAlert 🚨 Beware of a fake BabyDogeCoin Twitter account promoting a phishing URL Do not interact with hxxps://babydogecoins.co/ URL connects to the same phishing contract we identified in a fake ChainLink site. Scammer has already stolen ~18 ETH Stay vigilant!
  • user avatar
    #CertiKSkynetAlert 🚨 Earlier today @Coredao_Org Discord Server was compromised with a fake phishing link in their announcements. We are currently working with them to secure their server and implement best practices to prevent future incidents.
    #CertiKSkynetAlert 🚨 @Coredao_Org Discord Server has been compromised with a fake phishing link that has been posted for a β€œfree giveaway CORE airdrop”. Do not click on any links until the team has confirmed they’ve regained control of the server. #Hack #Discord Stay safe!
  • user avatar
    #CertiKSkynetAlert 🚨 @Coredao_Org Discord Server has been compromised with a fake phishing link that has been posted for a β€œfree giveaway CORE airdrop”. Do not click on any links until the team has confirmed they’ve regained control of the server. #Hack #Discord Stay safe!
  • user avatar
    #CertiKInsight 🚨 We have detected multiple exploit transactions on @MoonwellDeFi lending contract. The exploiter was able to repeatedly borrow over 20 wstETH with only ~0.02 wrstETH flashloaned and deposited due to the faulty oracle that returns wrst price of ~5.8M$ and
  • user avatar
    #CertiKSkynetAlert 🚨 An upgrade on @safemoon contract introduced a burn vulnerability. This upgrade was not within the scope of our audit. Original attacker was front-run by EOA 0x286 who has reached out to the @safemoon deployer to return the ~$8m. Stay vigilant!
  • user avatar
    #CommunityAlert 🚨 CertiK’s highly skilled KYC & Fraud Investigation team's have delisted the #SAFUU Protocol project due to high risk indicators, concerning the SAFUU owner/team affiliation with previous high risk projects. We advise against interacting with this project
  • user avatar
    #CertiKSkynetAlert 🚨 We are seeing a price #slippage on Pi Network (PI), a probable copycat token. Contract Avax: 0x7455D436D5dAc4cf08cE5FeFcd17F757c1ba846C which has dropped 100%. Token should not be confused with other projects of a similar name
  • user avatar
    #CertiKSkynetAlert 🚨 No surprises, the Fake Pi Network token that we saw on Polygon has dropped 100% Poly: 0x476E85A1461ee597045806Cb8795CAC4b53d1e88 The @PiCoreTeam have confirmed that Pi hasn’t been authorized on any exchanges x.com/CertiKAlert/st…
    Replying to @CertiKAlert
    Owner address removes liquidity for ~$61K and bridges funds to Polygon Funds transferred to 0x765…da5fe which is the owner of a new copycat token called Pi Network Poly: 0x476E85A1461ee597045806Cb8795CAC4b53d1e88 Stay vigilant!
  • user avatar
    #CommunityAlert 🚨 At 12:13:14 PM UTC, an attacker claimed a large amount of #APECOIN in the airdrop event by flashloan using $BYAC tokens to redeem for #BAYC NFTs. The total profit of the attack is around ~ $820K (293 #ETH)
  • user avatar
    We are seeing a possible exploit on @BeanstalkFarms - symbol $BEAN which has dropped 100% #slippage Address: 0xdc59ac4fefa32293a95889dc396682858d52e5db0x48f33863b1defc7b294717498c634ba9a5fb58a7 Be careful out there!
  • user avatar
    #CertiKSkynetAlert 🚨 Beware of scammers impersonating #CertiK employees. We are aware that malicious actors are targeting victims of scams with fake recovery services.
  • user avatar
    Replying to @CertiKAlert
    Given the centralization risks and the fact that the $SAFUU founder is associated with high-risk projects Clever DeFi & Tagz Exchange found in the KYC investigation process, CertiK decided to delist SAFUU, terminate engagement, refund fees, and inform the community.
  • user avatar
    Replying to @CertiKAlert
    We found the $SAFUU contracts have serious centralization risks during the KYC and the initial auditing process. The "autoLiquidityReceiver" is an Externally Owned Account (address 0x5562640B953b6c2f79a655E930aFa68b2a65C627) that can remove $2.53M worth of tokens at any time.