Bug writeups, audit methods, and cryptography security notes.
Public vulnerability analyses and review notes focused on proof systems, zkVMs, and security-critical protocol behavior.
Featured writing
Browse all writing
A logic flaw in GOAT Network's slash fraction calculations allowing negative slashing, validator inflation, and token siphoning.
A comprehensive checklist of common security pitfalls and vulnerability patterns in Cairo smart contracts on Starknet.
An analysis of the most critical vulnerability classes in ZK-SNARK systems, their root causes, and how to reason about them during an audit.
A deep dive into Nova's recursive proof system and CycleFold's cycle-of-curves folding scheme — how they work, their security assumptions, and trade-offs.
A structured checklist for auditing Fully Homomorphic Encryption protocols — covering parameter selection, noise budgets, circuit correctness, and implementation pitfalls.