Back to Blog

BlockSec携手IOC与AЯMRD,提升Web3.0安全

Code Auditing
January 17, 2024
2 min read

简介:

在飞速发展的区块链技术领域,安全始终是重中之重。随着 Web 3.0 的采用率不断增长,对强大安全措施的需求变得更加迫切。为应对这一挑战,进行前沿研究、提供可靠安全服务并构建富有洞察力工具的 BlockSec,已正式同意与 Intelligence On Chain (IOC) 全新系列服务“AЯMRD”合作。

IOC 将 AЯMRD 定位为终极 Web 3.0 服务台,为新老加密项目提供端到端安全的全方位服务。

BlockSec、IOC 和 AЯMRD 之间的合作标志着加强去中心化应用程序基础的重要一步。通过利用尖端工具和高质量的审计服务,该合作伙伴关系有望为区块链领域的安全树立新标准,为 Web 3.0 确保一个更安全、更可靠的未来。

合作伙伴关系:

BlockSec 已与 IOC 和 AЯMRD 建立战略合作伙伴关系,在 AЯMRD 生态系统中提供先进的审计服务,并利用其创新工具增强安全性。此次合作旨在通过在智能合约的设计和上线阶段主动防范攻击,使 Web 3.0 领域更加安全。

利用 BlockSec 的智能合约审计服务:

BlockSec 的智能合约审计服务在保护智能合约方面发挥着关键作用。通过彻底审查代码库并识别漏洞,BlockSec 确保智能合约能够抵御潜在的漏洞利用。这种积极主动的方法对于防止可能损害去中心化应用程序 (DApp) 的完整性的安全漏洞至关重要。

Phalcon:一项尖端的安全解决方案:

作为此次合作的一部分,BlockSec 将把 BlockSec Phalcon 集成到 Web 3.0 服务台 AЯMRD 中,使 IOC 能够为其协议提供攻击检测和自动防御服务。Phalcon 采用最先进的技术来识别和缓解潜在威胁,在它们发生时以及在被攻击者在区块链上确认之前进行处理,从而显著降低了智能合约中漏洞的影响。Phalcon 将与 AЯMRD 中的许多其他产品结合使用,并通过订阅模式提供。

IOC 承诺独家使用 MetaSleuth:

为了提供全方位、全面的安全套件,IOC 已同意独家使用 MetaSleuth 作为其以太坊虚拟机 (EVM) 可视化工具,该工具在跨链分析、智能显示关键路径和匹配闪电贷交易方面具有独特的优势。如果客户遭受黑客攻击或漏洞利用,IOC 将使用 MetaSleuth(一种长期以来备受青睐的工具)来追捕攻击者。

让 Web 3.0 更安全:

BlockSec、IOC 和 AЯMRD 的共同努力标志着在让 Web 3.0 对用户和开发人员来说更安全方面迈出了重要一步。通过整合智能合约审计服务、Phalcon 等先进的安全工具以及 MetaSleuth 的实时可视化,该合作伙伴关系旨在创建一个能够抵御潜在攻击的弹性区块链生态系统。

Sign up for the latest updates
~$15.9M Lost: Trusted Volumes & More | BlockSec Weekly
Security Insights

~$15.9M Lost: Trusted Volumes & More | BlockSec Weekly

This BlockSec bi-weekly security report covers 11 notable attack incidents identified between April 27 and May 10, 2026, across Sui, Ethereum, BNB Chain, Base, Blast, and Berachain, with total estimated losses of approximately $15.9M. Three incidents are analyzed in detail: the highlighted $1.14M Aftermath Finance exploit on Sui, where a signed/unsigned semantic mismatch in the builder-fee validation allowed an attacker to inject a negative fee that was converted into positive collateral during settlement; the $5.87M Trusted Volumes RFQ authorization mismatch on Ethereum; and the $5.7M Wasabi Protocol infrastructure-to-contract-control compromise across multiple EVM chains.

Newsletter - April 2026
Security Insights

Newsletter - April 2026

In April 2026, the DeFi ecosystem experienced three major security incidents. KelpDAO lost ~$290M due to an insecure 1-of-1 DVN bridge configuration exploited via RPC infrastructure compromise, Drift Protocol suffered ~$285M from a multisig governance takeover leveraging Solana's durable nonce mechanism, and Rhea Finance incurred ~$18.4M following a business logic flaw in its margin-trading module that allowed circular swap path manipulatio

~$7.04M Lost: GiddyDefi, Volo Vault & More | BlockSec Weekly
Security Insights

~$7.04M Lost: GiddyDefi, Volo Vault & More | BlockSec Weekly

This BlockSec weekly security report covers eight attack incidents detected between April 20 and April 26, 2026, across Ethereum, Avalanche, Sui, Base, HyperLiquid, and MegaETH, with total estimated losses of approximately $7.04M. The highlighted incident is the $1.3M GiddyDefi exploit, where the attacker did not break any cryptography or use a flash loan but simply replayed an existing on-chain EIP-712 signature with the unsigned `aggregator` and `fromToken` fields swapped out for a malicious contract, demonstrating how partial signature coverage turns any historical signature into a generic permit. Other incidents include a $3.5M Volo Vault operator key compromise on Sui, a $1.5M Purrlend privileged-role takeover, a $413K SingularityFinance oracle misconfiguration, a $142.7K Scallop cross-pool index injection, a $72.35K Kipseli Router decimal mismatch, a $50.7K REVLoans (Juicebox) accounting pollution, and a $64K Custom Rebalancer arbitrary-call exploit.

Best Security Auditor for Web3

Validate design, code, and business logic before launch. Aligned with the highest industry security standards.

BlockSec Audit