
OtterSec
@osec_io
Followers
19K
Following
2K
Media
205
Statuses
1K
Audits that protect blockchain ideas.
Joined February 2022
Thread of interesting audits we have done, blog posts for a quick read, and more!.
26
90
253
RT @zi0Black: @AptosLabs + @osec_io are bringing #Move challenges to the @AppSec_Village CTF at #DEFCON33. 🗓 Starts Aug 8, 10 AM.🔗 https://….
0
4
0
Happening tomorrow, Aug 8th. Catch @brunomodificato speak about off-chain exploitation in Web3.
We’re excited to announce that Bruno Halltari (@BrunoModificato) will be speaking at the Bug Bounty Village at DEF CON 33!. Stay tuned for more details on their talk, you won’t want to miss it. #BugBounty #DEFCON #BBV #BugBountyVillage
0
1
11
NEW: Building on Cosmos?. We uncovered hidden bugs commonly overseen by developers, backed by real-world examples. Our latest blog explores these vulnerabilities and how you can address them. Read the breakdown 👇.
osec.io
From infinite loops and map determinism to AnteHandler missteps and storage key collisions, we highlight real-world vulnerabilities and actionable advice for building safer Cosmos-based projects.
0
15
59
RT @StellarOrg: SDF is raising the bar for smart contract security. Since last year, the Audit Bank supported 40+ audits and deployed $3M….
stellar.org
Discover how eligible Stellar Community Fund projects can access security audits, advanced tooling, and support from industry-leading firms to build secure blockchain applications.
0
50
0
Again, thanks to everyone who participated in making @SquadsProtocol even more secure!. And to @HeliusLabs and @SuperteamEarn for organizing such an incredible hackathon!.
0
0
2
And lastly, 5th prize - $500 goes to.@_DeepWood_ for Delves into advanced strategies for securing multisig transactions on Solana and addresses threats like signer deception and UI manipulation, emphasizing the importance of secure signing processes.
medium.com
Beyond the Audit: Analyzing Attack Vectors and Enhancing Operational Security for High-Value Transactions
1
1
4
4th prize - $500 goes to.@dorkydhruv for Squads-MCP is a secure MCP implementation for managing Squads multisig wallets on Solana. It enables local private key storage, permission separation, and safe LLM interactions.
github.com
MCP implementation for Squads Multisigs. Contribute to dorkydhruv/squads-mcp development by creating an account on GitHub.
1
0
0
🥉 3rd prize - $500 goes to.@haroonmulpk for Secure-squads is a Rust-based CLI for secure multisig wallet management on Solana. Ensures clear signer intent, robust transaction security, and supports Ledger hardware wallets.
1
0
0
🥈2nd prize - $1,000 goes to.Adetola Adedeji for Ensures secure signing, clear signer intent, and robust multisig safeguards, ideal for DAOs, teams, and Solana protocols seeking enhanced security.
github.com
Contribute to AdedejiAdetola/securing_squads development by creating an account on GitHub.
1
1
0
🥇 1st prize - $2,500 goes to.@bill_papas for Squads-Go aims to enhance client diversity, reducing single points of failure within Solana. It provides both a CLI and a SDK to facilitate the creation, approval, and execution of multisig transactions.
github.com
Contribute to hogyzen12/squads-go development by creating an account on GitHub.
1
0
1
We’ve announced the winners for our [REDACTED] hackathon track!. Huge thanks to everyone who contributed to Securing Squads, a challenge focused on strengthening the security of multisigs on Solana. Out of 19 submissions, 5 stood out!
earn.superteam.fun
3
1
15
We’re thrilled to have audited @PancakeSwap Infinity, resolving 2 high-impact vulnerabilities ahead of its launch!. Dive into the details in our full audit report:
🐰♾PancakeSwap Infinity is NOW LIVE! (Formerly PancakeSwap v4) 🔹Multiple pool types for capital efficiency & low price impact .🔹Customize fees & Hooks for better rewards .🔹Save gas on every transaction.🫵Swap & LP on Infinity, starting with @BNBCHAIN
6
12
67
Proud to use, audit, and invest in @SquadsProtocol. @SimkinStepan and team care deeply about security, and we’re thankful to have the opportunity to work with them.
We’re excited to announce two major milestones for Squads. • The launch of @tryaltitude — a stablecoin-native USD account for businesses to save, earn, and move dollars. • A strategic investment from @HaunVentures. The stablecoin era isn’t coming. It’s here ↓
0
0
5
NEW: The hidden dangers of lamport transfers. How many different ways can a lamport transfer fail on Solana? Read our new article to find out.
osec.io
Solana’s lamport transfer logic hides dangerous edge cases — from rent-exemption quirks to write-demotion traps. We dissect a deceptively simple smart contract game to expose how transfers to...
2
9
44
🤝.
Audit ✅. Our Solana Liquidity Lockers just passed audit with @osec_io. We now enable fee-collecting LP locks on AMM v4 — something not natively possible on @RaydiumProtocol. A first for @solana. CLMM, CPMM, and AMM v4 — all now fully supported 🔒. Non-custodial. Audited. Built
0
0
7
Submissions for the [REDACTED] hackathon have officially concluded. Our track, Securing Squads, aimed to ask the question: how can we strengthen the security of critical multisigs on @Solana?. We're excited to share that we received 19 submissions. Keep an eye out for the
2
3
20