Compiler fuzzing with Vyper
We’re partnered with Vyper to audit their compiler and develop differential fuzzing infrastructure.
FUZZING
Fuzzing is one of our core disciplines. Our work includes differential compiler fuzzers for Vyper, novel differential transactional fuzzers for Solana validators, rBPF JIT fuzzers, and Move VM bytecode fuzzers.
OUR AUDITING PROCESS
We discuss your goals, timeline, and security needs to see whether we’re a fit.
We begin the audit, share findings as they emerge, and ask questions as needed.
At completion, we send you a report with our findings and suggestions for fixes.
QUESTIONS
We pick the mix that fits yours: pentesting, formal verification, and fuzzing, which is one of our core disciplines.
WHERE FUZZING FITS
Different systems call for different techniques. We pick the mix that fits yours, from fuzzing and formal verification to white-box and black-box pentesting.
We’re partnered with Vyper to audit their compiler and develop differential fuzzing infrastructure.
Our fuzzing work spans Solana validators, the rBPF JIT, and Move VM bytecode.
We’ve built our own tooling, developed a novel verification framework for Solana, and worked with the Aptos core team to formally verify their standard library.
Our talk “Fuzzing, Formal Methods, and a Loss of Funds” covers why fuzzing and formal verification miss business logic exploits, and the mitigations that catch them.
GET AN AUDIT
We work with leading teams across multiple blockchains. Put the same collaborative approach to work on your protocol.
Get an audit