Defimon Alerts
Ir al canal en Telegram
⚠️ DeFi security alerts by @DecurityHQ 💎 Instant alerts @defimon_subscription_bot defimon.xyz
Mostrar másEl país no está especificadoCriptomonedas16 166
4 426
Suscriptores
+724 horas
+287 días
+7230 días
Carga de datos en curso...
Canales Similares
Sin datos
¿Algún problema? Por favor, actualice la página o contacte a nuestro gerente de soporte.
Nube de Etiquetas
Menciones Entrantes y Salientes
---
---
---
---
---
---
Atraer Suscriptores
julio '26
julio '26
+97
en 1 canales
junio '26
+139
en 3 canales
Get PRO
mayo '26
+234
en 1 canales
Get PRO
abril '26
+261
en 0 canales
Get PRO
marzo '26
+250
en 0 canales
Get PRO
febrero '26
+176
en 1 canales
Get PRO
enero '26
+434
en 1 canales
Get PRO
diciembre '25
+357
en 4 canales
Get PRO
noviembre '25
+368
en 0 canales
Get PRO
octubre '25
+541
en 3 canales
Get PRO
septiembre '25
+419
en 6 canales
Get PRO
agosto '25
+126
en 1 canales
Get PRO
julio '25
+172
en 3 canales
Get PRO
junio '25
+203
en 0 canales
Get PRO
mayo '25
+176
en 3 canales
Get PRO
abril '25
+221
en 3 canales
Get PRO
marzo '25
+248
en 1 canales
Get PRO
febrero '25
+724
en 0 canales
Get PRO
enero '250
en 0 canales
Get PRO
diciembre '24
+19
en 1 canales
| Fecha | Crecimiento de Suscriptores | Menciones | Canales | |
| 23 julio | +7 | |||
| 22 julio | +2 | |||
| 21 julio | +6 | |||
| 20 julio | +5 | |||
| 19 julio | +3 | |||
| 18 julio | +9 | |||
| 17 julio | +13 | |||
| 16 julio | +5 | |||
| 15 julio | +5 | |||
| 14 julio | +4 | |||
| 13 julio | +2 | |||
| 12 julio | +2 | |||
| 11 julio | +4 | |||
| 10 julio | +2 | |||
| 09 julio | +3 | |||
| 08 julio | +4 | |||
| 07 julio | +1 | |||
| 06 julio | +1 | |||
| 05 julio | +1 | |||
| 04 julio | +6 | |||
| 03 julio | +1 | |||
| 02 julio | +5 | |||
| 01 julio | +6 |
Publicaciones del Canal
💌 Onchain message:
Withdrawals are now open for afiUSD depositors who submitted redemption requests before the May 30, 2026 incident. Eligible users have 30 days from today to complete their withdrawals. Please withdraw your available funds within this window. If you have any questions or need assistance, please contact us on Telegram: @Oxriskyops.📤 From: 0xb05c3e305f414c8a68afdfbdd9e53b5654a62c1d 📥 To: 0xce223804c890d77dcd85649dbcf08e1944d0e8c5 🌎 Network: mainnet Etherscan
| 2 | 💌 Onchain message:
Withdrawals are now open for afiUSD depositors who submitted redemption requests before the May 30, 2026 incident.
Eligible users have 30 days from today to complete their withdrawals. Please withdraw your available funds within this window.
📤 From: 0xb05c3e305f414c8a68afdfbdd9e53b5654a62c1d
📥 To: 0xcbc18b4a6cd4aa71b294e0696c8b33952859d9d7
🌎 Network: mainnet
Etherscan | 363 |
| 3 | Exploit or rug? 🧐
https://www.defimon.xyz/blog/verus-bridge-hack-july-2026 | 528 |
| 4 | 🚨 verus.io - Loss $7.33M (2026-07-23)
Token: $VRSC
Network: Ethereum
Type: Forged Proof / Bridge Verification Bypass
The Verus<>Ethereum bridge Delegator (0x7151...7f63) was drained via a crafted submitImports() call. The attacker supplied forged cross-chain import/notarization proofs that passed VerusProof (0x54e0...d4ce) verification, letting them "release" reserves that were never locked on the Verus side. The bridge paid out ~1.14K ETH, 71.5 tBTC, 59.4 MKR, plus USDC/USDT/DAI/EUROC/scrvUSD (~$7.33M total) to attacker address 0xcfd0...2d54.
TX: https://etherscan.io/tx/0xa1f1e65c1cea4dba4ae439cd4dcdba6cc2dbda0ed1228e61f29ae9c9324eb099
Attacker: https://etherscan.io/address/0xcfd0a20703cd11e0b9f665e1c3f1ef989c142d54
Victim: https://etherscan.io/address/0x71518580f36feceffe0721f06ba4703218cd7f63
X: https://x.com/VerusCoin
@defimon_subscription_bot | 575 |
| 5 | 💌 Onchain message:
AFX is extending a white hat settlement offer to the party responsible for the recent bridge incident.
Return 70% of the stolen assets to the following address:
0x222Bd8dbc0d71972f880DAb5D69cdCFD903D9f1B
You may retain the remaining 30% as a white hat bounty.
Our priority is the recovery of user assets and a swift resolution for the community.
We encourage you to act in good faith. This offer is available for a limited time.
📤 From: 0x20e96a897a073e44d2e3e0e95df7a916252c7730
📥 To: 0x627654b2782bfc57580ecd11d40869b350b6ebac
🌎 Network: arbitrum
Etherscan | 849 |
| 6 | 💌 Onchain message:
The 2.3657 WETH you swept from 0x1656bd18dFAF7E0f88505550604125799eDdf1aF (tx 0x8679272bc0f2dd0c5411dc26bab0182083cd8a909486d03802e7b953af468f68) was research capital for an authorized Uniswap v4 security disclosure, not a stray. We will gladly pay a 10% bounty for its return to 0xd43acB82b54fC72fC85BaeA2168e469cE7cabEC7. Thank you.
📤 From: 0xd43acb82b54fc72fc85baea2168e469ce7cabec7
📥 To: c0ffeebabe.eth
🌎 Network: mainnet
Etherscan | 635 |
| 7 | 💌 Onchain message:
Hi bro I have $2m in the project you exploited please it's my life, anyway I can get them back?
Thank you
📤 From: 0xec3257085ea55d58414ed9f05f5ae7ea4240d865
📥 To: 0x627654b2782bfc57580ecd11d40869b350b6ebac
🌎 Network: mainnet
Etherscan | 612 |
| 8 | 💌 Onchain message:
Message from the BSquaredNetwork team:
We have detected the draining of 8.591M $B2. If you return at least 10% of the stolen funds (approximately 386,000 USD) within the next 24 hours to this address, we will consider this a gesture of good faith and will not initiate legal proceedings.
After this deadline, we will launch all possible legal procedures (reporting to authorities, on-chain tracing, collaboration with exchanges and law enforcement).
The choice is yours.
📤 From: 0x3ce2572cc2e8f279dc53009106a7cf315382c248
📥 To: 0xf977427ec8e583c55d413061fc205bcd57e8bf6d
🌎 Network: bsc
Etherscan | 635 |
| 9 | 💌 Onchain message:
Return 70% of the funds to 0xBdc77a0c69f13207aCB70a6981Cad60B4c1D1942 (the Hinkal owner address, which you can verify) and keep 30%. If you do, we treat it as a white-hat recovery, take no civil action, and describe it publicly as a return rather than an attack. This ends here.
The funds are also difficult to move without exposure, and that only grows over time. Do it within 24 hours, by 23 July at 23:59 UTC.
If you want to talk it through, we're at recover@hinkal.pro.
请将70%的资金退还至 0xBdc77a0c69f13207aCB70a6981Cad60B4c1D1942(Hinkal 所有者的地址,你可以自行核实),其余30%可由你保留。如果你这样做,我们将把此事视为白帽追回,不采取任何民事法律行动,并在公开说明中将其描述为资金返还,而非攻击。此事到此为止。
此外,要在不暴露身份的情况下转移这些资金也很困难,而且随着时间推移,暴露的风险只会越来越大。请在24小时内完成,即最迟于7月23日23:59(UTC)之前。
如果你希望进一步沟通,请发送邮件至 recover@hinkal.pro。
📤 From: 0xbdc77a0c69f13207acb70a6981cad60b4c1d1942
📥 To: 0x892eb71069fc8df4f7a6c3d4456075f2bb3bf317
🌎 Network: mainnet
Etherscan | 633 |
| 10 | Defimon.xyz + Glide.r.xyz = find contracts vulnerable to the same attack the moment an exploit happens
https://x.com/glider_xyz/status/2079574892769374364 | 804 |
| 11 | 💌 Onchain message:
This is the Allbridge team. We have identified this wallet as connected to the July 19, 2026 Allbridge Core exploit ($1.65M+). We are formally offering a white-hat agreement: return 80% of the funds to this address within 48 hours. In exchange, you may keep the remaining 20% as a bounty, and we will not pursue further legal action or share identifying information with law enforcement. If we do not hear from you, we will proceed with full on-chain forensic tracing, exchange notifications, and law enforcement referral.
📤 From: 0xabcf3f27aa91abda8865125c43c095bb9cf9732d
📥 To: 0x651591b68a9c9650fb23f642162353306281ffde
🌎 Network: mainnet
Etherscan | 853 |
| 12 | 💌 Onchain message:
SECURITY ALERT (whitehat): BarnBridge SmartYield CompoundProvider 0xdaa037f99d168b552c0c61b7fb64cf7819d78310 has a hijacked controller. Your USDC allowance to it is still live and (~25 019 USDC) drainable. Protect your funds, REVOKE ALL YOUR ALLOWANCES RIGHT NOW nano XBankStaking.sol! This is a free warning - no funds, links or bounty requested. @beacon302 aka DK27ss
📤 From: 0x622b4c078f1175c9aee10e9e79572f19cfedfeaf
📥 To: 0x71f12a5b0e60d2ff8a87fd34e7dcff3c10c914b0
🌎 Network: mainnet
Etherscan | 15 |
| 13 | 💌 Onchain message:
SECURITY ALERT (whitehat): BarnBridge SmartYield CompoundProvider 0xdaa037f99d168b552c0c61b7fb64cf7819d78310 has a hijacked controller. Your USDC allowance to it is still live and (~25 019 USDC) drainable. Protect your funds, REVOKE ALL YOUR ALLOWANCES RIGHT NOW nano XBankStaking.sol! This is a free warning - no funds, links or bounty requested.
📤 From: 0x622b4c078f1175c9aee10e9e79572f19cfedfeaf
📥 To: 0x71f12a5b0e60d2ff8a87fd34e7dcff3c10c914b0
🌎 Network: mainnet
Etherscan | 7 |
| 14 | 💌 Onchain message:
Hi — I’m the whitehat who found and escalated the old BarnBridge proposal #15 approval risk that affected your wallet.
Your address appeared to be the largest at-risk wallet, with roughly $3.2M exposed. I couldn’t reach you directly, so I escalated through SEAL 911. My understanding is that the warning reached you and the funds were protected.
I’m very glad the funds were saved. I’m reaching out now to ask whether you would consider a voluntary bounty/recognition for the investigation and urgent escalation work.
You can verify my role with SEAL 911. I’m not asking you to click links or send funds blindly.
If open to discussing, please reply here or contact me on X: @onechesss
📤 From: 0xda9d65086a986624cbf71989118938f0cf9a0c68
📥 To: 0xae911067fed8f7adf93ee5c1a14757f2d06b7dd0
🌎 Network: mainnet
Etherscan | 772 |
| 15 | 💌 Onchain message:
URGENT RETURN REQUEST
The 145,965.658533 USDC received by this address was transferred without my authorization from:
0x66666f3364cf650699299f08e37b5d5cedae6d29
Arbitrum transaction:
0xb611485b646d1c0b9c30d5266d724334c2479b10d235c459e3e6bc48828058a6
The incident and both addresses have been reported to Hyperliquid, Circle and blockchain security teams. The funds are being traced, and preservation and freezing requests are being prepared for exchanges, bridges and law enforcement.
Please return the full amount to my NEW secure address:
0xafc9e1ef02df2c99447272f1619689ca1db02c59
If this was intended as a white-hat action, contact me through Blockscan Chat. A reasonable recovery bounty can be discussed only after the funds are safely returned.
I will not make any advance payment or disclose any private information.
📤 From: 0xefdcbf40d383c479ae807a4a405c5ad45ab4ce13
📥 To: 0x1eb488919fcf5e6f658725370e2f635c3fc47f73
🌎 Network: arbitrum
Etherscan | 717 |
| 16 | 💌 Onchain message:
This address received approximately 145,965.658038 USDT stolen from my wallet in transaction [TX HASH]. All evidence has been preserved, and tracing and preservation requests are being submitted to law enforcement and relevant exchanges. Please return the full amount to this new secure address: [0xafc9e1ef02df2c99447272f1619689ca1db02c59]. If this was an accidental or white-hat action, reply through Blockscan Chat.
📤 From: 0xefdcbf40d383c479ae807a4a405c5ad45ab4ce13
📥 To: 0x1eb488919fcf5e6f658725370e2f635c3fc47f73
🌎 Network: arbitrum
Etherscan | 725 |
| 17 | 🚨 BSC NFT Auction Marketplace - Loss ~$8.3K (2026-07-19)
Network: BNB Chain
Type: Logic Error (double-settlement / delist refund)
An NFT auction/marketplace proxy (0x46c9…1e09, impl 0x3735…044d, unverified) allows a listing to be both settled and cancelled. The attacker minted a throwaway NFT, listed it, then in a single flash-loaned tx (Moolah/Lista WBNB) called buyNow→completeAuction — which pays the seller from the sent value — and immediately delist, which refunds the same ~2.2176 BNB payment from the contract's escrow pool. Because completeAuction never clears the sale's paid/bid state, delist double-pays, draining ~4.4 BNB of other users' escrowed funds. Attacker was both seller and buyer, netting ~2.173 BNB (~$4.06K) profit; marketplace lost ~4.44 BNB (~$8.3K).
TX: https://bscscan.com/tx/0x79dbf5d676c1f1d89cabc046743746b828fc0fa4ed70854c8b77335cd1c194df
Attacker: https://bscscan.com/address/0xeaaf475db34fb66f098e51cbf0eeeff76f496974
Victim: https://bscscan.com/address/0x46c958a169b9f2688e126080c4ec422956621e09 (unverified impl)
@defimon_subscription_bot | 725 |
| 18 | 🚨 RWT Token - Loss ~$118K (2026-07-19)
Token: $RWT @ $0.00144
Network: BNB Chain
Type: Logic Error (deflationary burn-from-pair price manipulation + Flash Loan)
An unverified "sell" contract (0x8812) exposes an unprotected sell() that, each call, swaps RWT→USDT into the RWT/USDT PancakePair, adds liquidity, then burns ~72M RWT directly out of the pair's reserves (RWT.burn is onlyOwner and the sell contract holds that role) and sync()s. Repeatedly burning the pool's RWT collapses its reserve and inflates RWT's USDT price, letting the caller extract USDT from the LP far above fair value. The attacker flash-loaned 1M USDT and looped the routine 18×, draining the PancakePair (−158.6K USDT / −110M RWT) and netting ~118K USDT.
TX: https://bscscan.com/tx/0x22300140e7c44899c2602382a6e7a4a34a70f47f9736721744bc6434c07171dc
Attacker: https://bscscan.com/address/0x84dd3a5d4de44c8ad0ce032beab8bc3f01d1dcf7
Victim: https://bscscan.com/address/0xc1c2ef25372f12ce18d35044446064b720c4aa27
@defimon_subscription_bot | 795 |
| 19 | 💌 Onchain message:
Hello Phisher.You directly stole my bounty secret note.Please return the funds.Thank you
📤 From: 0x61e6301614178a2ca21bfa0fbb30aba06acc2d1c
📥 To: 0x6659659b8518f53f7a8d9b73ca4f4bd4e4ae824f
🌎 Network: mainnet
Etherscan | 850 |
| 20 | 🚨 perp.com - Loss $3,062 (2026-07-16)
Token: $vETH (Perpetual Protocol)
Network: Optimism
Type: Access Control / Missing Permission Check
Perpetual Protocol's OrderBook exposes updateFundingGrowthAndLiquidityCoefficientInFundingPayment() as an unprotected external function (OrderBook.sol:232) — it lacks the _requireOnlyClearingHouse() guard used by its sibling functions. The attacker opened a tiny liquidity order, then called it directly with a fabricated funding growth (twPremiumX96 = 1e70), corrupting their order's cached funding-growth state. On settleAllFunding the corrupted cache produced a bogus funding payment (~1.46e36), inflating the account's realized PnL, which was then withdrawn as USDC — draining the vaults of ~$3,062.
TX: https://optimistic.etherscan.io/tx/0xb0a8a3cc76fb17bf965ab1dee3b76b62f79ca72def31e12f8ad8b1711625df08
Attacker: https://optimistic.etherscan.io/address/0x957c6cF5E0F69597dB7A8065c94af1A48aBCA47d
Victim: https://optimistic.etherscan.io/address/0x772f48f073c1f328c264619fc3bba28e3efdefb0
X: https://x.com/perpprotocol
@defimon_subscription_bot | 823 |
