Log inSign up
ScaleBit
583 posts
ScaleBit profile banner
@scalebit_

ScaleBit

@scalebit_
Sub-brand of @0xbitslab. We're a Blockchain Security Team that Provides Proficient Audit Solutions for the Mass Adoption of Web3
📧[email protected]
scalebit.xyz
Joined June 2023
249
Following
3,625
Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • @scalebit_
    ScaleBit
    @scalebit_
    Aug 31
    How an EVM–Cosmos SDK Balance Mismatch Turned Into a $5.7M Exploit
    @0xbitslab
    BitsLab
    @0xbitslab
    Aug 31
    In BitsLab’s security analysis of cross-VM systems, precompiles, and native modules, this type of state mismatch is a key area of focus.
    Article cover image
    Article
    One Balance Mismatch, 6 Chains Hit: Inside the $5.7M Cosmos EVM Exploit
    Between August 20 and August 25, 2026, attackers exploited a balance-handling flaw in Cosmos EVM across multiple Cosmos-based networks. Cosmos Labs later confirmed that six networks were exploited....
  • @scalebit_
    ScaleBit
    @scalebit_
    Aug 19
    1/3 🛡️A hardware wallet doesn’t need to leak your seed phrase to put your funds at risk. BitBox just patched 2⃣ severe firmware vulnerabilities. ✅One could lead to arbitrary code execution. ✅The other could lock funds to an unintended address.
    1
  • @scalebit_
    ScaleBit
    @scalebit_
    Aug 13
    💡A valid transaction is not always a valid bridge deposit.
    @MoveBit_
    MoveBit
    @MoveBit_
    Aug 13
    A secure destination-chain contract can still receive incorrect state from off-chain relayers.
    Article cover image
    Article
    The XRPL–Coreum Bridge Vulnerability: How the Wrong Payment Became Valid Deposit Evidence
    The issue in the XRPL–Coreum bridge incident appears straightforward: when identifying inbound XRPL transfers, the relayer failed to verify whether the Payment Destination was the bridge address....
  • @scalebit_
    ScaleBit
    @scalebit_
    Aug 11
    ⚠️Smart contracts aren’t always targets. ‼️Sometimes they become attacker infrastructure. 🔘Unit 42 analyzed Aeternum, which uses a Polygon contract as an on-chain C2 resolver. slot 0 → admin slot 1 → encrypted C2 0xb68d1809 → getDomain() 0xb249cd2d → updateDomain()
    1
  • @scalebit_
    ScaleBit
    @scalebit_
    Aug 6
    🔔Your assets may still be lost if the wallet’s underlying cryptographic implementation is flawed!
    @MoveBit_
    MoveBit
    @MoveBit_
    Aug 6
    Article cover image
    Article
    Beyond Seed Phrases: The Hidden Cryptographic Risks Behind Wallet Security
    In digital asset security, “whoever controls the private key controls the assets” has long been treated as an industry-wide principle. However, BitsLab’s latest research reveals a frequently...
Advertisement
Advertisement