How did BlockSec Save $5M Worth of Crypto Assets in Successful ParaSpace Attack Blocking

How did BlockSec Save $5M Worth of Crypto Assets in Successful ParaSpace Attack Blocking

On 2023–03–17 05:48:59 (UTC), BlockSec successfully blocked an attack attempt on ParaSpace (a top NFT lending protocol) and protected crypto assets worth $5M.

As mentioned in the previous blog, we always believe a more proactive threat prevention solution can help to defend against the threats. We have deployed such a system internally in 2022. As of this writing, our system successfully blocked multiple attacks and saved around 14 million USD users’ assets.

See our perspective on proactive threat prevention in this article.

The feasibility and practice of our solution have been widely recognized by the community, and we have collaborated with some top-notch partners in the community. For example, we are working with Compound to develop a risk prevention system for Compound V3 smart contracts.

We always try to build blockchain security infrastructure for the Web3 community, including Phalcon Explorer (a transaction analysis tool for Web3 developers and security researchers), MetaDock (a security toolbox for Web3 users), and MetaSleuth (a fund tracing tool for Web3 users).

Phalcon Explorer
Phalcon Explorer
MetaDock
MetaDock
MetaSleuth
MetaSleuth

Learn more about BlockSec: Website | Document | Twitter | Medium | TG Group

Sign up for the latest updates
Weekly Web3 Security Incident Roundup | Feb 9 – Feb 15, 2026

Weekly Web3 Security Incident Roundup | Feb 9 – Feb 15, 2026

During the week of February 9 to February 15, 2026, three blockchain security incidents were reported with total losses of ~$657K. All incidents occurred on the BNB Smart Chain and involved flawed business logic in DeFi token contracts. The primary causes included an unchecked balance withdrawal from an intermediary contract that allowed donation-based inflation of a liquidity addition targeted by a sandwich attack, a post-swap deflationary clawback that returned sold tokens to the caller while draining pool reserves to create a repeatable price-manipulation primitive, and a token transfer override that burned tokens directly from a Uniswap V2 pair's balance and force-synced reserves within the same transaction to artificially inflate the token price.

Top 10 "Awesome" Security Incidents in 2025

Top 10 "Awesome" Security Incidents in 2025

To help the community learn from what happened, BlockSec selected ten incidents that stood out most this year. These cases were chosen not only for the scale of loss, but also for the distinct techniques involved, the unexpected twists in execution, and the new or underexplored attack surfaces they revealed.

#10 Panoptic Incident: XOR Linearity Breaks the Position Fingerprint Scheme

#10 Panoptic Incident: XOR Linearity Breaks the Position Fingerprint Scheme

On August 29, 2025, Panoptic disclosed a Cantina bounty finding and confirmed that, with support from Cantina and Seal911, it executed a rescue operation on August 25 to secure roughly $400K in funds. The issue stemmed from a flaw in Panoptic’s position fingerprint calculation algorithm, which could have enabled incorrect position identification and downstream fund risk.