Back to Blog

BlockSec携手IOC与AЯMRD,提升Web3.0安全

Code Auditing
January 17, 2024
2 min read

简介:

在飞速发展的区块链技术领域,安全始终是重中之重。随着 Web 3.0 的采用率不断增长,对强大安全措施的需求变得更加迫切。为应对这一挑战,进行前沿研究、提供可靠安全服务并构建富有洞察力工具的 BlockSec,已正式同意与 Intelligence On Chain (IOC) 全新系列服务“AЯMRD”合作。

IOC 将 AЯMRD 定位为终极 Web 3.0 服务台,为新老加密项目提供端到端安全的全方位服务。

BlockSec、IOC 和 AЯMRD 之间的合作标志着加强去中心化应用程序基础的重要一步。通过利用尖端工具和高质量的审计服务,该合作伙伴关系有望为区块链领域的安全树立新标准,为 Web 3.0 确保一个更安全、更可靠的未来。

合作伙伴关系:

BlockSec 已与 IOC 和 AЯMRD 建立战略合作伙伴关系,在 AЯMRD 生态系统中提供先进的审计服务,并利用其创新工具增强安全性。此次合作旨在通过在智能合约的设计和上线阶段主动防范攻击,使 Web 3.0 领域更加安全。

利用 BlockSec 的智能合约审计服务:

BlockSec 的智能合约审计服务在保护智能合约方面发挥着关键作用。通过彻底审查代码库并识别漏洞,BlockSec 确保智能合约能够抵御潜在的漏洞利用。这种积极主动的方法对于防止可能损害去中心化应用程序 (DApp) 的完整性的安全漏洞至关重要。

Phalcon:一项尖端的安全解决方案:

作为此次合作的一部分,BlockSec 将把 BlockSec Phalcon 集成到 Web 3.0 服务台 AЯMRD 中,使 IOC 能够为其协议提供攻击检测和自动防御服务。Phalcon 采用最先进的技术来识别和缓解潜在威胁,在它们发生时以及在被攻击者在区块链上确认之前进行处理,从而显著降低了智能合约中漏洞的影响。Phalcon 将与 AЯMRD 中的许多其他产品结合使用,并通过订阅模式提供。

IOC 承诺独家使用 MetaSleuth:

为了提供全方位、全面的安全套件,IOC 已同意独家使用 MetaSleuth 作为其以太坊虚拟机 (EVM) 可视化工具,该工具在跨链分析、智能显示关键路径和匹配闪电贷交易方面具有独特的优势。如果客户遭受黑客攻击或漏洞利用,IOC 将使用 MetaSleuth(一种长期以来备受青睐的工具)来追捕攻击者。

让 Web 3.0 更安全:

BlockSec、IOC 和 AЯMRD 的共同努力标志着在让 Web 3.0 对用户和开发人员来说更安全方面迈出了重要一步。通过整合智能合约审计服务、Phalcon 等先进的安全工具以及 MetaSleuth 的实时可视化,该合作伙伴关系旨在创建一个能够抵御潜在攻击的弹性区块链生态系统。

Sign up for the latest updates
The Decentralization Dilemma: Cascading Risk and Emergency Power in the KelpDAO Crisis
Security Insights

The Decentralization Dilemma: Cascading Risk and Emergency Power in the KelpDAO Crisis

This BlockSec deep-dive analyzes the KelpDAO $290M rsETH cross-chain bridge exploit (April 18, 2026), attributed to the Lazarus Group, tracing a causal chain across three layers: how a single-point DVN dependency enabled the attack, how DeFi composability cascaded the damage through Aave V3 lending markets to freeze WETH liquidity exceeding $6.7B across Ethereum, Arbitrum, Base, Mantle, and Linea, and how the crisis forced decentralized governance to exercise centralized emergency powers. The article examines three parameters that shaped the cascade's severity (LTV, pool depth, and cross-chain deployment count) and provides an exclusive technical breakdown of Arbitrum Security Council's forced state transition, an atomic contract upgrade that moved 30,766 ETH without the holder's signature.

Weekly Web3 Security Incident Roundup | Apr 13 – Apr 19, 2026
Security Insights

Weekly Web3 Security Incident Roundup | Apr 13 – Apr 19, 2026

This BlockSec weekly security report covers four attack incidents detected between April 13 and April 19, 2026, across multiple chains such as Ethereum, Unichain, Arbitrum, and NEAR, with total estimated losses of approximately $310M. The highlighted incident is the $290M KelpDAO rsETH bridge exploit, where an attacker poisoned the RPC infrastructure of the sole LayerZero DVN to fabricate a cross-chain message, triggering a cascading WETH freeze across five chains and an Arbitrum Security Council forced state transition that raises questions about the actual trust boundaries of decentralized systems. Other incidents include a $242K MMR proof forgery on Hyperbridge, a $1.5M signed integer abuse on Dango, and an $18.4M circular swap path exploit on Rhea Finance's Burrowland protocol.

Weekly Web3 Security Incident Roundup | Apr 6 – Apr 12, 2026
Security Insights

Weekly Web3 Security Incident Roundup | Apr 6 – Apr 12, 2026

This BlockSec weekly security report covers four DeFi attack incidents detected between April 6 and April 12, 2026, across Linea, BNB Chain, Arbitrum, Optimism, Avalanche, and Base, with total estimated losses of approximately $928.6K. Notable incidents include a $517K approval-related exploit where a user mistakenly approved a permissionless SquidMulticall contract enabling arbitrary external calls, a $193K business logic flaw in the HB token's reward-settlement logic that allowed direct AMM reserve manipulation, a $165.6K exploit in Denaria's perpetual DEX caused by a rounding asymmetry compounded with an unsafe cast, and a $53K access control issue in XBITVault caused by an initialization-dependent check that failed open. The report provides detailed vulnerability analysis and attack transaction breakdowns for each incident.

Best Security Auditor for Web3

Validate design, code, and business logic before launch. Aligned with the highest industry security standards.

BlockSec Audit