see there is simple formula for the teams I get bullish on
do you care enough
and guardian cares a lot about what they do
everyone I worked with cared about their output
anyways, congrats on the vanguard 🥂
more to come
Today, Guardian announces Vanguard.
A security audit designed to protect onchain teams facing unprecedented cyber risk.
Along with Vanguard, we are announcing $1,000,000 in security audit funding. 🧵
🚨 The Guardian x @LimitBreak AMM Defender Contest is now live!
45 days to hunt for $150,000 in rewards across Critical, High, and Medium severity findings.
Details on how to participate available below 👇
🚨 A new $150,000 Guardian Defender contest is coming soon.
Hunt for bugs in @limitbreak’s AMM — Critical, High, and Medium severities will all be eligible for payouts.
Full details and how to participate below 👇
Your favorite NFTs, now anywhere!
Bored Apes, Crypto Punks, and more are going omnichain, powered by @LayerZero_Core & secured by Guardian.
Guardian partnered with @YugaLabs to meticulously audit and bulletproof Shadow NFTs on Apechain.
Access the reports below.👇
Our audit of @GammaStrategies Uni V4 Limit Orders is live! 🔒
This upgrade enables Gamma users to place on-chain limit orders with automatic execution, and earn LP fees at the same time - bringing the CEX experience onchain.
Learn more about our findings in the report below ↓
What if a sportsbook let YOU be the house? 👀
@veryHighLander from @overtime_io walks us through how Overtime is giving users an edge that traditional sportsbooks just can't.
The new Permissionless Podcast full episode and YouTube link are available below!
this is why devex matters
kudos to @LayerZero_Core team
yes fees, latency matter for integrations but so does devex.
we (@dirtymic26) fuzzing layerzero receivers here 😉
Just wrapped up a 1.5-week engagement at @GuardianAudits , and it was a success!!
Reviewed SNX-XXX-YYY
This time, we also dug into the web2 parts of the app, including the keeper script.
Found some juicy stuff—major reason kim was all smiles yesterday
Web3 team: @zdravkohristov0@marqymarq10@arsen_bt@Udsen3
Our beloved fuzzer: @forkfork
Web2 team: @aidank1234@0xaudron
Real scenes from the field:
Team audits can be incredibly rewarding.
In a recent one with @osmanozdemir1, I started with an innocent question about slippage. That led us down a few rabbit holes — and eventually to a subtle quirk in the Uni V3/V4 routers: it hardcodes sqrtPriceLimitX96
https://t.co/Sma2RGPSgZ
This broke assumptions downstream that relied on the value being configurable — resulting in a High severity finding 🚨
It had slipped past two prior audits. Teamwork FTW 🤝
Web2 security engineers — we want you.
Guardian is building a new internal team and hiring security engineers with deep expertise in infrastructure, frontend, and OpSec.
If you're ready to help set a new standard in security, let's talk.
DMs open 👀
Happy to share that we're expanding our internal Web2 security team!
If you're excited about securing the entire application stack for a new global economy shoot me a DM!
I've put together a list of all public fuzzing campaigns that I know of.
I'm hoping this will help newcomers to get started, and seasoned fuzzers to gain some new insights.
If you notice anything (or anyone) missing from the list, please let me know or make a PR.