Bartosz Barwikowski
@bbarwik
Web3 hacker
I did it. I found first "real critical issue" on @HackenProof . I am looking forward to presenting story behind it on @ETHWarsaw 😄 By the way, you can meet me today (30.06) in Cannes on lu.ma/app26j6x event and later on EthCC

I was recommending to do it during SuiSummit in Denver, I am glad they finally did it! I hope that other protocol will do the same.
While our bug bounty today focuses on Sui core infrastructure and does not cover protocols, applications, or smart contracts built on it, we’re expanding it over the next six months to pay additional bounties for any protocol with more than $50M TVL, helping incentivize bounty…
While our bug bounty today focuses on Sui core infrastructure and does not cover protocols, applications, or smart contracts built on it, we’re expanding it over the next six months to pay additional bounties for any protocol with more than $50M TVL, helping incentivize bounty…
This will be a pretty good deal in my opinion, I am going to stake 200K $HAI
🔥 Our first-ever security prediction market with @HackenProof is live! Stake $HAI, support top-tier audits and earn real yield. The first pool with @NodeTerminal is dropping soon. Up to 115% APY Explore the platform & prepare your $HAI on Base: pools.hacken.io
Next week, our L1 Researcher & Auditor @bbarwik breaks down a $1.1M bug that almost slipped by. Don’t miss the key lessons and expert tips to safeguard your own project. Save your spot 👉 hackenio.cc/inside-a-1m-bug
Today @HackenProof finally updated leaderboard so it includes my bugs from February. Top 3 secured 🥉. The goal is the same - #1 place, so lets wait for issues from March and April to be finally resolved 📷 I'll be posting about them soon, two criticals are waiting. Stay tuned!

On Feb 17 2025 I reported a critical vulnerability to @Scroll_ZKP. $100m+ in TVL was at risk for more than 2 months. Anyone could force Scroll L2 into an indefinite re-org, halting the chain so that no user transactions would be included in blocks and the chain would not move…
I've found another issue on @HackenProof! I'm getting closer to be in top 3 hackers on HackenProof 😁 One day I'll write what was the issue and how I found it, stay tuned!

Got another bug bounty on @HackenProof! My bug bounty journey continues 😁 My goal for this year is to be no. 1 hacker on HackenProof leaderboard

🔥 This week at #ETHDenver, our @bbarwik took the stage to break down The Unseen Threat: Why Attackers See What Developers Miss. A deep dive into why vulnerabilities slip past devs but are crystal clear to hackers. Let’s recap some key insights! 🧵👇
⚡️ @EthereumDenver is ON, and Booth #506 is the place to be! Come by for good vibes, great convos, and maybe a little something extra. See you there! 🔥
The Unseen Threat: Why Attackers See What Developers Miss by @bbarwik from @HackenProof! The main idea of this speech is to share some insights from Bartosz's experience and showcase the scenarios where a developer most likely can make a mistake. Full video below 👇🧵
I got my first bug bounty from @HackenProof. I'm officially starting my bug hunter journey 😁 By the way, tomorrow I fly to Denver for @EthereumDenver and @Sui_Summit - see you there ;)

Checkout here: app.weft.finance Learn more here: medium.com/@weft_finance/…
Hear me out. The perfect combo for the next 2 biggest @ethereum events: 1. @EFDevconnect 2025 in Buenos Aires 🇦🇷 2. @EFDevcon 2026 in Warsaw 🇵🇱 That would be an epic sequence. Who's in?
#Devcon2024 was amazing 🔥. I’m glad I could be a part of it and talk about one of the most interesting issues l’ve found so far! @EFDevcon
Our rockstar @bbarwik just took the stage at #Devcon2024 to explain how to steal $1.1M in 15 minutes (theoretically, of course 😉). Here’s a sneak peek—intrigued? Watch the full talk starting at 5:34:26 🎥👇 youtube.com/watch?v=dNR5Tu…
.@EFDevcon, we’re coming in hot… with relaxation! 🌿💆♂️ Join our Web3 Retreat for some much-needed downtime—free massages, wellness drinks, and a perfect spot to relax with Web3’s finest. Because who says networking can’t be relaxing? 🗓 Dates to remember: Nov 12:…
Our team has touched down in Bangkok and is set for an incredible week of events! 🇹🇭 Catch us at @summit_defi, @EntEthAlliance Industry Day, #GeckoCon2024, and of course, at our booth S19 at #WOWSummitBangkok2024. Come by for chats, connections, and some exclusive goodies! And…
I staked 111200 $HAI, maximum possible value
⚡️ The Flash Pool with @Portikus_ (infrastructure behind @ParaSwap Delta) is now live! 📈 Up to 125% APY ⏳ 35-day staking period 🔒 10% staking limit per wallet Stake your $HAI now and unlock rewards: pools.hacken.io
🔥 Something big is coming for $HAI holders! We’re introducing DualDefense Flash Pools – the unique combo of Real Yield and prediction markets. Stake your $HAI and earn up to 180% APY, all while securing the Web3 space. 📢 Flash Pools launching soon, stay tuned!