Latest posts

July 16, 2024
Outline Investment - Case Study
The primary goal was to develop a systematic approach for evaluating the risks associated with stablecoin pools, which Outline Investment…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

December 19, 2023
Uniswap V4: Liquidity Theft via Hook Fee
This article is one of a series where we present some implementations of "Bad Hooks" as part of our research supported by the Uniswap…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

October 17, 2023
INSIDER! Impersonating others on GitHub
Do you know it is easy to impersonate other users on GitHub if you have write access to any repository? I will show you an example, and how…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

January 23, 2024
Uniswap V4: Bad hook with broken access control
The threat scenario covered in this article is "attacker calls hooks directly on the hook contract". The example illustrating such a…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

December 07, 2023
Uniswap V4: Re-Initialization Leading to Funds Locked
This article is one of a series where we present some implementations of “Bad Hooks” as part of our research supported by the Uniswap…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

September 19, 2023
Secure integration with LayerZero
A few weeks ago we reviewed a project that was integrating with LayerZero Omnichain Tokens. We were not able to find an all-in-one security…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

January 02, 2024
Uniswap V4: Oracle hook with malicious owner
The threat scenario covered in this article is "malicious hook owner updates the oracle parameters resulting in invalid price". The example…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

November 28, 2023
Threats for UniswapV4 hooks
Uniswap Foundation Grant Uniswap is undoubtedly the OG and trendsetter in the crypto ecosystem. The new Uniswap update is the largest yet…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor

August 22, 2023
ETHWarsaw 2022 - Security Panel
Join us in revisiting the first edition of ETHWarsaw, where Damian Rusinek, as a representative of Composable Security, alongside esteemed…

Damian Rusinek
Managing Partner & Smart Contract Security Auditor