Blog
Some of our latest writing.
Vulnerability research, engineering notes, and incident write-ups from the team.
Latest
11 min read
Under the Hood: Engineering Commonware Fuzzing
Fuzzing Commonware isn't a pile of one-off harnesses. It's engineered: deterministic runtime, controlled randomness, reviewable fuzz targets, reproducible crashes, promoted regressions.
Denis Kolegov
Earlier posts
Understanding Agents: Code Coverage for Coding Agents
Liam WachterSolana Vulnerabilities That Aren’t: Unpacking Common Misreports
John SaigleWrong Offset: Bypassing Signature Verification in Relay
Felix WilhelmThreat Contained: marginfi Flash Loan Vulnerability
Felix WilhelmBehind the Scenes of a Blocked Phishing Attempt
John BottomsBoredom Over Beauty: Why Code Quality is Code Security
John SaigleFinding Fractures: An Intro to Differential Fuzzing in Rust
Anthony Laou Hine Tsuei, Nick LangInvocation Security: Navigating Vulnerabilities in Solana CPIs
Maxwell DulinCorrupt Commitments: Proposer Equivocation Bug in Helix MEV Relay
Troy SargentGhost in the Block: Ethereum Consensus Vulnerability
Giuseppe CocomazziCircle's CCTP Noble Mint Bug
Ruslan HabalovEvmos Precompile State Commit Infinite Mint
Jason MatthyserCosmos IBC Reentrancy Infinite Mint
Maxwell DulinEthereum Log Confusion in Polygon's Heimdall
Felix WilhelmSubscribe to be notified whenever we publish new security research.
Get the latest