• Articles: @officercia • Blog: officercia.mirror.xyz • X: x.com/officer_cia • Chat: t.me/+C6RfnbB33AYzNGIy
Math, Solidity & Gas Optimizations
• https://x.com/officer_cia/status/1942619535036596669?1
#audit #web3 #solidity
Spotted an excellent website for conducting Web2 penetration tests on domains, IP addresses, and more!
Link below ⬇️
• https://x.com/officer_cia/status/1942025151362580931?s=46
#web2
Re: recent bitcoin whale movements: https://x.com/officer_cia/status/1941247445603864902?s=46
#analysis
Arbitrary Calls Auditing Tips
• https://x.com/officer_cia/status/1941149544625877150?1
#audit #web3
Deck from Coatue’s EMW2025
MANY great insights about the dynamics of AI market 👀
• https://drive.google.com/file/d/1Srl8Y4pBoKtNVYZBxmfj2TEMYM5tp1mE/view
#ai
Web3 Security State 2025: https://x.com/officer_cia/status/1940195351384006974?s=46
#security #web3
DOJ Charge Fake North Korean Devs 'Embedding' In Crypto Startups
• https://decrypt.co/327942/doj-fake-north-korean-devs-embedding-crypto-startups
#security #investigation
Additionally. A list of knowledge a beginner - medium smart contract(Solidity) engineer should have - by @ohmysol ⬇️
• https://x.com/officer_cia/status/1939421679542763802?s=46
#security #audit
More cool stuff: https://x.com/officer_cia/status/1939120386559660370?s=46
#osint #offtopic
Read-only Reentrancy: In-Depth
• https://x.com/officer_cia/status/1939027625470566888?34
#audit #web3
Semantic Grep & Solidity: In-Depth
• https://x.com/officer_cia/status/1938611996867330413?12
#audit #web3
First ever cli coding agents battle royale!
6 contestants:
• claude-code
• anon-kode
• codex
• opencode
• ampcode
• gemini
They all get the same instructions:
Find and kill the other processes, last one standing wins!
3...
2...
1...
• https://x.com/officer_cia/status/1938504441600114702
#airdrop
Auditor’s Notes: Semantic Grep & Solidity
• https://x.com/officer_cia/status/1938239591946846266?1
#security #audit
Slither: An Auditor’s Cornucopia
• https://x.com/officer_cia/status/1937869848056394106?137
#audit #security
Fuzzing Solidity Smart Contracts with Echidna
• https://x.com/officer_cia/status/1937492411300643089?2
#security #audit
Attack on PeapodsFinance, 200k$ lost!
• https://x.com/officer_cia/status/1942573688810824190?1
Victim: 0xd1538a9d69801e57c937f3c64d8c4f57d2967257
Attacker: 0x277da2d1ce5601c0f0133515c19da314fc52a846
Exploit: 0x7212de58f97ad6c28623752479acaeb6b15ad006
EVM Limitations & Assembly Auditing Tips
• https://x.com/officer_cia/status/1941888977264398474?12
#audit #web3
Please support my work on OpSec & privacy!
I sincerely hope for your support. The best thing is to support me directly by donating to any address from the list below:0x1191b7d163bde5f51d4d2c1ac969d514fb4f4c62
or officercia.eth
- all supported EVM chains;17Ydx9m7vrhnx4XjZPuGPMqrhw3sDviNTU
or bc1q75zgp5jurtm96nltt9c9kzjnrt33uylr8uvdds
- Bitcoin;0zk1qydq9pg9m5x9qpa7ecp3gjauczjcg52t9z0zk7hsegq8yzq5f35q3rv7j6fe3z53l7za0lc7yx9nr08pj83q0gjv4kkpkfzsdwx4gunl0pmr3q8dj82eudk5d5v
- Railgun;TYWJoRenGB9JFD2QsdPSdrJtaT6CDoFQBN
- TRX;4AhpUrDtfVSWZMJcRMJkZoPwDSdVG6puYBE3ajQABQo6T533cVvx5vJRc5fX7sktJe67mXu1CcDmr7orn1CrGrqsT3ptfds
- XMR;BLyXANAw7ciS2Abd8SsN1Rc8J4QZZiJdBzkoyqEuvPAB
- Solana;DQhux6WzyWb9MWWNTXKbHKAxBnAwDWa3iD
- Doge
You can also support me via: mytiers.xyz/officercia.eth
Thank you!
Gas Gauge: Pressure Control
• https://x.com/officer_cia/status/1940783903926526096?1
#security #audit
Safeguard Your OpSec with These Vital Tips
• https://x.com/officer_cia/status/1940456818444325259?1
#opsec #security
Short Types in Solidity: Rare Tricks Uncovered
• https://x.com/officer_cia/status/1940081800493125990?1
#solidity #audit
Uniswap V4’s hooks are redefining protocol composability - and massively expanding the attack surface.
Join us for a reverse-engineering of how hooks work, how they break, and what it means for the future of onchain security.
P.S. Get ready for a Glider live demo.
🗓️ When: Wednesday, July 2
⏰Time: 14:00 GMT
📍Where: Remedy Community Events Channel
🎙️With: @mr_thankyou
Grab some coffee
Join on Discord
AMM (Automatic Market Makers) Integration Tips
• https://x.com/officer_cia/status/1939421043287789915
#security #audit
Current GPS jamming situation across the globe (picrelated) & additional GPS jamming resources: https://x.com/officer_cia/status/1939007257276018817?12
#osint #offtopic
PNG gets its first specification update in 20 years!
• https://x.com/officer_cia/status/1938691804246737156
#offtopic
The address that held the funds stolen from the Silo Finance project transferred 225.1 $ETH (equivalent to $548,000) to Tornado Cash.
• https://x.com/officer_cia/status/1938522136907239886?s=46
#investigation
2500 AI tools at one spot!
• Clear categorization;
• Easy search by name and function;
• Filter for free tools only;
• No registration required.
Save this link right now so you don't have to search later: allaitools.dev/tools
#ai
On June 26, 2025, the ResupplyFi experienced a security breach, resulting in a loss of approximately $9.3 million.
The attack was made possible by inflating the share token price of an empty crvUSD Vault through a donation attack, enabling the attacker to borrow $10 million in reUSD using just 1 wei of share token as collateral.
The project lost about 9.5M, and the attacker made a profit of about 9.3M
Attacker Address 1: 0x6D9f6E900ac2CE6770Fd9f04f98B7B0fc355E2EA
Attacker Address 2: 0x31129a5c13306A48E827e851D44E19Ca07d4928A
🚨 New malware called SparkKitty is stealing seed phrase screenshots from infected phones through crypto-themed apps on both iOS and Android, warns kaspersky 👀
Here are some important tips to stay safe:
1. Avoid downloading unfamiliar apps on your primary device!
2. Never store screenshots of your seed phrase in your photo gallery!
• https://x.com/officer_cia/status/1937512439395832230?12
#security #opsec
How can you operate multisig securely?
Start by taking these two excellent tests:
1. Keep Simple Awareness Test
2. Phishing Test by The Rekt Games
Next, check out these helpful guides:
1. How to Multisig
2. Crypto OpSec Self-Guard Roadmap on GitHub
Finally, consider implementing these tools:
1. Tenderly.co
2. Delegate.xyz
3. Site Sentry: t.co/OVcnCorLXu
#opsec #security