BlockThreat - Week 5, 2025

Geth | Lazarus | USDT0 | Remedy

BlockThreat - Week 5, 2025

Greetings!

This week, only a few low-TVL projects were compromised, with total losses around $10K. Quiet weeks like this are rare, so take the opportunity to enjoy a explore the latest research on Web3 exploitation and defense, CTFs, insightful interviews, and plenty of other peacetime content.

On a less positive note, more reports of cryptocurrency-related physical attacks have surfaced—from the kidnapping of Ledger leadership to a crypto influencer’s parent being held for ransom. It’s a stark reminder to maintain strong OPSEC and keep a low profile.

Let’s dive into the news!

News

Bounties

Crime

Policy

Phishing

Scams

Malware

Contests

Media

Research

Tools

  • Ape Titanoboa plugin. Integrating two powerful development and testing frameworks.
  • Argus by Jon Becker. A minimal, blazing fast contract storage introspection tool written in rust.
  • Quorum - A game-changer for DAO governance security by Certora. Repo.
  • Safe Hash Preview. This tool helps users verify Safe transaction hashes before signing them on hardware wallets. It calculates the domain, message, and Safe transaction hashes by retrieving transaction details from the Safe transaction service API and computing the hashes using the EIP-712 standard. It was created as a quick response to the Radiant exploit. The core script was developed by pcaversaccio, and we added a user-friendly interface to make it more accessible.
  • QuorumOS - a computation layer for running applications inside TEE enclave at modern cloud scale.
  • Secudoku by Statemind. A tool for shadow audits with AI-powered feedback.
  • Linkook by JackJuly. An OSINT tool for discovering linked/connected social accounts and associated emails across multiple platforms using a single username.
  • Moccasin Project algorithmic trading by s3bc40.
  • Online ABI Encoder by HashEx.

Hacks

Unkn_444156

Date: January 27, 2025
Attack Vector: Logic Error
Impact: $2,000
Chain: Ethereum

References:

https://x.com/TikkalaResearch/status/1883924600595308717

Exploit:

https://etherscan.io/tx/0xbdec39a74e620fc624f90483aff067b17044f81138e6c30038daf7f873159db4

Kingdom Raids

Date: January 30, 2025
Attack Vector: Stolen Private Keys
Impact: $2,000
Chain: BSC

References:

https://x.com/TikkalaResearch/status/1885031245358522786

Exploit:

https://bscscan.com/tx/0xf05ba58301edc59b6b96acdef2fc169f62caf2479790bd1092df49e1fdd3a9bc

Gold Reserve NFT

Date: February 02, 2025
Attack Vector: Reward Manipulation
Impact: $8,500
Chain: BSC

References:

https://x.com/TenArmorAlert/status/1885731757204353371

Exploit:

https://bscscan.com/tx/0x79c2e41b10462d374f21ecd4da048029cc71692e0c9ef275d4aad228e6f8afe0