Smart Contract Security
for the Decentralized Future

We identify critical vulnerabilities before attackers do. Comprehensive auditing, penetration testing, and responsible disclosure for DeFi protocols.

47
Audits Completed
$2.1B
TVL Secured
156
Vulns Found

What We Do

🔎

Smart Contract Audits

Manual line-by-line review combined with automated analysis using Slither, Mythril, and custom detection rules. Solidity, Vyper, Cairo, Move.

🔐

Penetration Testing

Full-spectrum adversary emulation covering web, API, infrastructure, and social engineering attack vectors.

⚠️

Responsible Disclosure

Independent security research with coordinated disclosure. We find vulnerabilities in live protocols and work with teams to remediate.

Recent Advisories

VL-2026-041 | veNFT Lending Protocol — Unauthenticated API

Off-chain vote manipulation via unauthenticated API endpoints. Coordinated disclosure in progress.

CRITICAL

VL-2026-038 | Cross-Chain Bridge — Signature Replay

EIP-712 signature replay across chains due to missing chainId validation. Fixed in v2.1.4.

CRITICAL

VL-2026-035 | DEX Aggregator — Oracle Manipulation

TWAP oracle manipulation via flash loan in low-liquidity pools. Mitigated with price bounds.

HIGH

VL-2026-032 | Yield Vault — ERC4626 Inflation Attack

First depositor share inflation vulnerability. Fixed with virtual shares implementation.

HIGH

VL-2025-028 | Governance — Flash Loan Voting

Governance manipulation via flash-borrowed voting power. Mitigated with snapshot-based voting.

MEDIUM

Our Team

MK

Marcus Kim

Founder & Lead Researcher
Ex-Trail of Bits. 8+ years in smart contract security. Focus on DeFi protocol analysis and formal verification.
SR

Sarah Rodriguez

Senior Security Engineer
Ex-OpenZeppelin. Specializes in EVM bytecode analysis, proxy patterns, and upgrade safety.
JT

James Thompson

Offensive Security Lead
OSCP, OSCE. Web3 penetration testing, social engineering, and infrastructure security.

Get in Touch

Interested in an audit or want to discuss a responsible disclosure?

contact@veridian-labs.xyz