After careful consideration, we’ve made the decision to wind down @code4rena. This community has meant a great deal to everyone who has been part of building it, and sharing this news is not easy.
‼️ MAJOR ANNOUNCEMENT
TLDR:
- Trust Security is now TrustSec. New name, new logo, new website.
- We’re setting industry standards on how security teams communicate their work. Our entire portfolio is now on open display - every audit, bounty, contest win. Full transparency, zero gatekeeping.
- Going further, we present every competitor audit ran in parallel to us, on same commit. No cherry picking. It’s a pure measure of skill, and the results are conclusive.
- Same team, same standard, same depth. The quality never changed. Now the visibility catches up. Everything's in place to hit entirely new ceilings.
Full breakdown below ⤵️
A landmark moment in onchain security.
@Coinbase has launched a $5M bug bounty on Cantina, a new program focusing exclusively on all its onchain products and @base’s smart contracts. It sets a new standard for securing Web3 organizations at scale. Details below.
1/ On the day samczsun left Paradigm. Through @_SEAL_Org, I reported a critical vulnerability in Cosmos’ ecosystem—affecting explorer framework. I worked with @pcaversaccio to tackle it. This one’s a gut punch. Let’s dive in. 🧵👇
To demonstrate @burraSec's expertise, we’re offering a free full-day security review/consultation for projects integrating with LayerZero or Arbitrum—whether you’re already deployed or still in development.
We’ll thoroughly review:
LayerZero: Configuration (DVNs, Executor, and overall integration), functionality (LzRead, OFTs, vanilla OApps, and more).
Arbitrum: Native bridge or token bridge integrations, use of retryable tickets, or custom Orbit chains (e.g., custom gas tokens, USDC bridge standard).
DM me to schedule your review!
The @eigencloud $2,500,000 competition is now open 🪐
The biggest security competition yet, all in the pursuit of the highest possible security standards. Are you ready?
💰 $2,500,000 USDC
📆 Live now - March 28th
🔗 Below
The next chapter of @ethereum security begins 🪐
Today marks the beginning of a new competition: a comprehensive review of Pectra, in partnership with the @ethereumfndn.
💰 $2,000,000 USDC
📆 Live now - March 24th
🔗 Below
2024 was another amazing year for TrustSec! Super proud of the impact the team has made year-round.
We've done a bit of everything:
- Solo audits
- Team audits
- Public contests
- Bounties
- Bounty coaching
- Retainer services
- Consultation
- Mathematical modelling
- Gas audit
- Test audit
- R&D outsourcing
- Emergency services
- Judging
- In-house contests
Total revenue for the year is $4,646,000, with ~$1,450,000 paid to other members for their exceptional work. This is a serious step up⬆️.
We thank our clients for trusting us with their most sensitive assets in an increasingly competitive security landscape. We express our gratitude through the quality we bring to each and every engagement 🙏.
Below are some of the projects that we directly impacted in 2024, we want to name them as they are now part of the TrustSec family tree, each in their own way.
- @aave - Bounty
- @zksync - Audit
- @Uniswap - C4 Contest top #3, Bounty
- @Optimism - Audit, Sherlock contest top #1, bounty
- @reserveprotocol - Strategic retainer & audits
- @Curvance - Strategic retainer, contest judging
- @Juice_Finance - Strategic retainer, audits, R&D, in-house contest
- @graphprotocol - Audit
- @StoryProtocol - Strategic retainer & audits
- @AbstractChain - Audits
- @MIM_Spell - C4 Contest top #1
- @THORChain - Audit, contest judging
- @withAUSD - Audit
- @OlympusDAO - Audits
- @0xSplits - Bounty
- @StakeDAOHQ - Audits
- @perpprotocol - Bounty
- @AgoraGovernance - Audits
- @linkpoolio - Audits
- @HookProtocol - Audit
- @zerolendxyz - Immunefi Contest top #1
- @heylunchbreak - Audit
- @LairFinance - Audit
- @CloberDEX - Audits
- @dHedgeOrg - Audit
- @BaselineMarkets - Audit
- @3_finance_ - Audit
- @sentimentxyz - Bounty
- @hypercerts - Audit
- @onchainheroes - Audit
- @squeeze_dot_it - Audit
- @sigmatrading - Audit
- @Mozaic_Fi - Audits
- @prtyDAO - Audit
- @sommfinance - Bounty
- @PhenomPokerApp - Audit
- @KAYEN_Protocol - Audits
- @xeal_ai - Audit
- @tenderize_me - Audit
- @y2kfinance - Bounty
- @degenexpress69 - Audit
- @CashmereLabs - Mathematical modelling
- @UniversalSwaps - Audit
Throughout the year, we've kept looking for ways to optimize our team's processes and hive mind strategy, as that is one of the defining factors of a team audit's success. We've also searched for industry-wide soft spots, going at times where no one has stepped before. With the high demand, we've also strengthened our lines with rising stars, who swiftly proved their great skills.
In 2025, we aim to strengthen our existing bonds with clients while expanding our network through new partnerships. We'll also try to find more ways of sharing our expertise with the community, something we did not allocate sufficient time to this year.
So here’s to a New Year filled with growth, collaboration, and success - together, let’s make 2025 the most secure year yet!
The biggest bug bounty in history is now live. @Uniswap just raised the standard of building in public 🪐
With $15.5M on the line, it's an unprecedented testament to the rigorous security of v4. Think you can find a critical bug? Give it a shot.
🔗 Bounty link below
We’re excited to announce that Code4rena and Zellic are joining forces ⚡️
Why?
Our mission has always been to bring the highest security outcomes to Web3
Combining consultative + competitive audits is the next level 👇 (1/12)
We’re excited to announce that Code4rena and Zellic are joining forces ⚡️
Why?
Our mission has always been to bring the highest security outcomes to Web3
Combining consultative + competitive audits is the next level 👇 (1/12)
My first @gitcoin grant proposal on Optimism is live!
If anyone is considering donating for @defendersdao, you can do it here!
Thank you!
https://t.co/gMNf73aFSR
I'm building a project called @defendersdao
Defenders Den: a community for web3 security people AND boosting your journey to mastery in web3 security
Join discord: https://t.co/S85ArK87Gn
six-weeks journey: 835 people -> 937 people
cc @_buildspace@_nightsweekends@FarzaTV
Blast Catina was an excellent comtest, but I didn't have enough time to complete since it coincided with the Lunar New Year holiday. I miscalculated the workload, and after returning from vacation, I had only 5 days left. Many of the 10 issues I submitted were low/info. I feel sorry for myself, but thank guys @hellocccz@hrkrshnn shared the invite code with me.🫡
💥Goat Dapp Mainnet is live on @arbitrum 🔗https://t.co/lepLwHjhEf
✅ Goat Dapp - First Gamified On-chain Reputation
🛡SAFU | 🛡AUDIT | ⭐️HIGH RETURN
Login to https://t.co/lepLwHjhEf, ask around for an Invite Code to earn +5% bonus on Mainnet Points
🔗Guidelines: https://t.co/uAbI4fvtgm
Welcome... to the new largest competition in history with @eulerfinance!
💰 $1,250,000 USDC
🗓️ May 20th - June 17th
📍 @cantinaxyz
Invite only. Don't have one? Details below: