Hey everyone 🙋♂️, I want to share my career journey (as a smart contract auditor 🕵️♂️) interviewed by DittoETH, @dittoproj.
.
If you are a smart contract auditor or want to become one, this interview might be worth reading.
medium.com/@serial_coder/…
Article dittoeth.com/interviews/5_p…
Phuwanai took part in the exclusive Code4rena audit invitational for DittoETH this July, showcasing his expertise in the field. You can continue to follow his contributions on X @0x_serial_coder or read his writings at: serial-coder.com.
🚀 Featured auditor this week: Phuwanai Thummavet (@0x_serial_coder), ranked #46 in 2024 & #173 all-time on @code4rena! Read here as he discusses the future of Ethereum with Account Abstraction, new oracle models, and the crypto scene from his country of Thailand!
The results of the Ditto invitational audit are in!
Thank you to d3e4, @0x_serial_coder, @NonseOdion, and @0xbepresent for helping secure the Ditto codebase!
Much respect to @dittoproj for their unwavering commitment to the highest security outcomes 🫡
the $13,100 invitational audit with @code4rena has finished! audited a host of new features. one of which is redemption mechanism, read about it in this latest released blog post
thank you @NonseOdion, @0x_serial_coder, @0xbepresent and d3e4 for participating in this sec. audit!
@ValixConsulting proudly presents an article series: “Solidity Security By Example.”
.
Here is the 13th episode of the series. We explain the attack: “Double Spending #2” in the Solidity smart contract.
.
medium.com/valixconsultin…
Smart contract security Cross-Function Reentrancy
Cross-function reentrancy is another level of reentrancy in terms of complexity.
Author by @br1gh7n4ry
#bugbounty#offensivesecurity
@ValixConsulting proudly presents an article series: “Solidity Security By Example.”
.
Here is the 12th episode of the series. We explain the attack: “Amplification Attack (Double Spending #1)” in the Solidity smart contract.
.
medium.com/valixconsultin…
Valix Consulting proudly presents an article series: “Solidity Security By Example.”
.
Here is the 11th episode of the series. We explain the attack: “Denial of Service With Induction Variable Overflow” in the Solidity smart contract.
.
medium.com/valixconsultin…
@ValixConsulting proudly presents an article series: "Solidity Security By Example."
.
Here is the 10th episode of the series. We explain the attack: "Denial of Service With Gas Limit" in the Solidity smart contract.
.
Link: medium.com/valixconsultin…
.
medium.com/valixconsultin…
Cross-Contract Reentrancy explained
The root cause of cross-contract reentrancy attack is typically caused by having multiple contracts mutually sharing the same state variable, and some of them update that variable insecurely.
1) The Vulnerability
2) The Attack
3) The Solution
@ValixConsulting proudly presents an article series: "Solidity Security By Example."
.
Here is the 9th episode of the series. We explain the attack: "Denial of Service With Revert" in the Solidity smart contract.
.
Link: medium.com/valixconsultin…
🧵𝗩𝘂𝗹𝗻 𝗼𝗳 𝘁𝗵𝗲 𝗗𝗮𝘆 | 𝗖𝗿𝗼𝘀𝘀-𝗰𝗼𝗻𝘁𝗿𝗮𝗰𝘁 𝗥𝗲𝗲𝗻𝘁𝗿𝗮𝗻𝗰𝘆
6⃣ of 100 | Solidity Vulnerability Rolodex
💡𝗪𝗵𝗮𝘁? Explain a unique vuln every day for 100 days
🎯𝗪𝗵𝘆? The ultimate reference for solidity auditors
medium.com/valixconsultin…
51 Followers 786 FollowingPassionate Web3 developer and meticulous auditor, committed to pushing the boundaries of decentralized technology while ensuring its integrity and security.
680 Followers 6K FollowingIf you participate, you'll be one step closer to your dream. Do It Yourself, Consistency, and Repetition are the mother of all skills.
15K Followers 1K FollowingHacking all the things since 1997 • @PwnieAwards Winner • Created Mythril • Hunting Bugs for @Spearbit • AI Research Lead @SherlockDefi
193K Followers 111 FollowingWe're sharing/showcasing best of @github projects/repos. Follow to stay in loop. Promoting Open-Source Contributions. UNOFFICIAL, but followed by github
712 Followers 93 FollowingSolo auditors, made mainstream.
Commission-free, vetted network of top SRs.
Browse, filter, connect — or ask us to matchmake.
👇👇👇
21K Followers 264 FollowingMake crypto your everyday currency with Cypher 💳. Instantly top up from any non-custodial wallet with 1000+ tokens across 25+ chains. TGE OCT 5th 2025
1K Followers 259 FollowingSecurity Researcher | Resident at @cantinaxyz | From math to breaking Web3 with invariants
🐾 Occasionally just a cat staring at DeFi chaos
7K Followers 78 FollowingSwarming adversarial AI agents delivering AGI-grade security for Web3 & AI systems || Building the trust layer for the open agentic web.
4K Followers 20 FollowingA unique annual event for education and technical advances in securing blockchain decentralized applications.
Nov 20-21, 2025
📍La Rural, Buenos Aires
13K Followers 132 FollowingDetect and neutralize Web3 threats in real time. 200+ dApps, chains, wallets, and financial institutions rely on Hypernative to prevent hacks, exploits & fraud.
4K Followers 217 FollowingWeb3/Web2 Security & Building Company. Trusted by Dinero, Multipli, Etherspot, Ambire, Colb, Pear, Hana and more. Book an audit: https://t.co/Jf6SO3wlMP
8K Followers 3 FollowingNew approach to cybersecurity solutions. Indisputable skills and a unique super-focused perspective on every single case are the value we create.
5K Followers 244 FollowingJoin https://t.co/YR6oIDfjA9, the Leading Web3 Cybersecurity Community with exclusive bug bounties, innovative open-source tools, and endless opportunities to level up.
2K Followers 188 FollowingSolidified is one of the oldest smart contract auditing firms in the world, operating since 2017.
Part of the @SecurityOak company.