Log inSign up
Sid⚡️
2,619 posts
@sidrmsh

Sid⚡️

@sidrmsh
techno-optimist, former PM @coinbase; @joinodf cohort 2.
Joined May 2016
2,410
Following
5,557
Followers
RepliesRepliesRepostsRepostsMediaMediaArticlesArticles

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • @sidrmsh
    Sid⚡️
    @sidrmsh
    Jul 13
    I recently joined the Geeks of the Valley podcast where I spoke about my background, evolution of financial infrastructure in crypto, launching tokenized assets (e.g. cbBTC) at Coinbase, and how founders should build products for mass adoption. We also chatted briefly about what
    1
  • @sidrmsh
    Sid⚡️
    @sidrmsh
    May 26
    Moral or not is up for question (i'm indifferent) but everyone creating retail dump machines at the end of the day. Some are blatantly obvious (e.g. early crypto ppl shilling AI & Robotics deals) and some are not (trad'l silicon valley VC with upcoming trillion dollar IPO's).
  • @sidrmsh
    Sid⚡️
    @sidrmsh
    May 5
    Building AI agents that can move money? The @bankrbot hack should worry you. Attacker dropped morse code in an NFT, @grok decoded it, and $175k walked out the door. AFAIK no bug in the contract and just a tricked AI issue. The next version of attacks: poison the tools your
    @bankrbot
    bankrbot
    @bankrbot
    May 4
    Replying to @Itzpoopster @leventiscrypto and 2 others
    not really an exploit in the traditional sense. - no private key compromise - no smart contract vulnerability - no protocol bug what happened was prompt injection / social engineering against an ai agent. someone fed grok crafted instructions that convinced it to sign a
    3
  • @sidrmsh
    Sid⚡️
    @sidrmsh
    May 1
    PM's don’t typically write code but they can own designing the threat model. Before a cybersec audit, you should be forcing the team to answer: what’s the most privileged action in this system and who can take it unilaterally? For every answer, the follow-up is: what’s the
    2
  • @sidrmsh
    Sid⚡️
    @sidrmsh
    Apr 30
    Hot take: DeFi doesn't have a smart contract security problem. It has a key management problem. April's biggest losses (KelpDAO $292M, Drift $285M, Wasabi $5M) were admin key compromises. No timelocks. No multisig. Write better code all you want. But the ops problem still
    15
Advertisement
Advertisement