Latest posts
January 02, 2024
Uniswap V4: Oracle hook with malicious owner
The threat scenario covered in this article is "malicious hook owner updates the oracle parameters resulting in invalid price". The example…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
November 28, 2023
Threats for UniswapV4 hooks
Uniswap Foundation Grant Uniswap is undoubtedly the OG and trendsetter in the crypto ecosystem. The new Uniswap update is the largest yet…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
September 19, 2023
Secure integration with LayerZero
A few weeks ago we reviewed a project that was integrating with LayerZero Omnichain Tokens. We were not able to find an all-in-one security…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
December 19, 2023
Uniswap V4: Liquidity Theft via Hook Fee
This article is one of a series where we present some implementations of "Bad Hooks" as part of our research supported by the Uniswap…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
October 31, 2023
How to choose the best smart contract auditing firm?
Choosing the right smart contract auditor is not as easy as it may seem. After all, the success of the whole project in a big part depends…
Zuzanna Jelska
Marketing Manager
September 05, 2023
White hack policy
We've all seen more than one situation where a black hat "turned out" to be a "white hat" and when someone meant well, it turned out badly…
Paweł Kuryłowicz
Managing Partner & Smart Contract Security Auditor
December 07, 2023
Uniswap V4: Re-Initialization Leading to Funds Locked
This article is one of a series where we present some implementations of “Bad Hooks” as part of our research supported by the Uniswap…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
October 17, 2023
INSIDER! Impersonating others on GitHub
Do you know it is easy to impersonate other users on GitHub if you have write access to any repository? I will show you an example, and how…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor
August 22, 2023
ETHWarsaw 2022 - Security Panel
Join us in revisiting the first edition of ETHWarsaw, where Damian Rusinek, as a representative of Composable Security, alongside esteemed…
Damian Rusinek
Managing Partner & Smart Contract Security Auditor