People ask what it will take for DeFi to reach the mainstream
One quote that's always stuck with me is Elon saying self driving cars need to be 10x safer than human drivers before people will trust them
DeFi faces the same challenge. We're not going to onboard the world by telling people to "DYOR" and hope for the best. We need better tooling, better transparency, better risk visibility, and stronger security across every layer of the stack
That means attacking the problem from all fronts. One piece of that puzzle is transparency. Users shouldn't have to dig through dozens of dashboards, audit reports, and risk providers to understand what they're interacting with
That's why we're looking for a team to build a neutral, open source DeFi risk intelligence aggregator that brings existing risk data together in one place
If you're the team to build it, apply below 👇
Google dramatically lowered the estimated resources needed for a Shor-based attack on ECDSA earlier this year. The https://t.co/yoNkoQndKg team is now another 16% beyond that estimate, they're pushing the frontier and still going.
A fascinating example of what AI-guided research can accomplish when paired with strong engineering and verification. Congrats to the team.
Compromised signers, multisig mismanagement, DNS takeovers, leaked credentials, missing incident response. The recurring shape of incidents this cycle, and the part a code audit will not catch.
SEAL Certification fills that gap. We are part of the first cohort. 🤝
THIS!!
The vast majority of exploits are NOT "DeFi" exploits but "CeFi" exploits as they are failures in centralised access-control and opsec.
These types of exploits are unlikely in redundant, decentralised, or immutable systems. What is actually DEFI.
Did an interview with CCN and ended up answering some pretty tricky questions, including which teams in crypto I think genuinely put security first
We also talked about how Design Reviews started and why formal verification feels very different from a traditional audit.
83% of defi "hacks" are access-control related.
This is a solvable problem.
Some things being worked on:
1. A new standard for secure execution
2. New primitives for redundancy
3. Expanding auditing surface areas and drift analysis
4. Transparency via live monitoring
5. Automated mechanisms i.e. circuit breakers
Along with several other large projects this is our major effort right now.
Security Stance
This year's wave of DeFi exploits has repriced security, where Lido has been putting in the work for years.
• Zero staking user funds lost in protocol history.
• 100+ audits: one of the most audited protocols in DeFi.
• Seven layers of defence for safety of users.
I just got my @EFDevcon ticket — paid for with ETH!
Next stop: Mumbai 🇮🇳 Join me at Devcon 8 from November 3–6, 2026 for four days of big ideas, technical depth, community, and the people building the future of open source technology.
https://t.co/VeHSsPl4VS
I just got my @EFDevcon ticket — paid for with ETH!
Next stop: Mumbai 🇮🇳 Join me at Devcon 8 from November 3–6, 2026 for four days of big ideas, technical depth, community, and the people building the future of open source technology.
https://t.co/27gBukzRY9
that’s exactly how lido ceremony worked. we all got airgapped machines and they could only talk to each other via animated qr codes. as you can imagine, laptop cameras are not very good, so you could barely transmit at 10 fps, and it still took several loops to read each message.
Introducing the Monastery for AI-native founders.
A single builder can now outperform a publicly traded company.
$2 million. 12 weeks. Do the impossible.
if you ever need to verify a CoW TWAP Safe multisig transaction, i put together a short verification guide: https://t.co/LJNQ286hpw
sometimes i really wonder if i'm the only one verifying this shit in detail because i was not able to find any other verification guide that goes into this much depth.