Defimon and Glider partnership enables detection of smart contract vulnerabilities exploitable via the same attack vector, with a one-week responsible disclosure delay before public alerts.
Security & Exploits ·
Glider and Defimon have begun operating an automated detection system that identifies smart contracts vulnerable to the same attack patterns caught on-chain. When an exploit is observed, the system logs it and publishes a summary one week later—a deliberate delay intended to allow affected teams time to remediate before public disclosure. If a vulnerability remains active, the disclosure is withheld further or not released at all.
In the past week, the partnership flagged three notable exploits: a $201K vulnerability labeled exploit_in_initcode affecting 众环CRC and USDT contracts, found in 49 additional contracts across Binance Smart Chain and Ethereum; a $132K suspicious_contract_call_with_profit pattern in RWT/USDT detected in 9 more contracts; and a $6K exploit_in_initcode in CEther affecting 2 additional Ethereum contracts. The team has worked to identify all affected contracts and contact the teams responsible.
It remains unclear whether all identified contract teams have responded, or how many vulnerabilities have been patched versus held from public release under the extended disclosure policy.