VulSight (@vulsightsec) 's Twitter Profile
VulSight

@vulsightsec

Audits for Move, Rust, EVM. Oracle/DeFi focus. And full-stack cyber—pentests, red team, DFIR. Book via DM.

ID: 1965110759337398272

calendar_today08-09-2025 17:51:49

3 Tweet

118 Followers

1 Following

VulSight (@vulsightsec) 's Twitter Profile Photo

🔴 VulSight has arrived. We started in traditional cybersecurity — delivering 200+ penetration tests & security assessments that taught us discipline, process, and rigor. Now we bring that foundation to Web3 security — protecting protocols in Move, Rust & EVM ecosystems.

VulSight (@vulsightsec) 's Twitter Profile Photo

Our team is composed of members with exceptional record in Bug Bounty and Competitions within Web3 Security. We’ve achieved top bounties, ranked top on leaderboards, and helped ship fixes that protected real TVL. If you’re forking blue-chip protocols or launching new primitives,

VulSight (@vulsightsec) 's Twitter Profile Photo

Our Lead Security Researcher would be speaking on Move Security in DSS. The VulSight team would be present at Devconnect ARG - the first Ethereum World’s Fair Buenos Aires for the entire devconnect week. Feel free to connect with us.

VulSight (@vulsightsec) 's Twitter Profile Photo

Our Lead Security Research Zero Cipher gave a talk on Move Security in Defi Security Summit This talk focused around on building a solid audit mindset for Move Contracts. The speaker used their own real-world Move Security experience in discussing solid approaches related to Move

Our Lead Security Research <a href="/zerocipher002/">Zero Cipher</a> gave a talk on Move Security in <a href="/summit_defi/">Defi Security Summit</a> 
This talk focused around on building a solid audit mindset for Move Contracts. The speaker used their own real-world Move Security experience in discussing solid approaches related to Move
Zero Cipher (@zerocipher002) 's Twitter Profile Photo

People at DevConnect had been asking me how I was able to secure 103% of the H/M pot (65,000 USDC) in the USDaf Contest on Cantina which was a Liquity v2 Fork and how did I spot a vulnerability that every single person missed. There are a multitude of reasons for this. I can

People at DevConnect had been asking me how I was able to secure 103% of the H/M pot (65,000 USDC) in the USDaf Contest on Cantina which was a Liquity v2 Fork and how did I spot a vulnerability that every single person missed.

There are a multitude of reasons for this. I can
Zero Cipher (@zerocipher002) 's Twitter Profile Photo

Hot take: Remote audit teams miss more bugs. Here's why. Auditor A finds something suspicious. Slacks Auditor B. Auditor B is asleep. Different timezone. 12 hours of back-and-forth later, the train of thought is gone. We built a on-site team instead. Same room. Same time.

Zero Cipher (@zerocipher002) 's Twitter Profile Photo

Finding a bug is half the job. The other half: verifying the fix didn't create a new one. I've seen teams patch a vulnerability under pressure. Deploy without re-verification. The patch itself becomes the exploit. Every fix we recommend gets verified after implementation.

VulSight (@vulsightsec) 's Twitter Profile Photo

VulSight just secured a $50,000 High severity bug bounty on HackenProof, and finally making such that we have now successfully landed multiple 5 to 6 figure bug bounties across HackenProof / Immunefi / Cantina. If you want your protocol to be safe from criticals/highs, hire the

VulSight just secured a $50,000 High severity bug bounty on <a href="/HackenProof/">HackenProof</a>, and finally making such that we have now successfully landed multiple 5 to 6 figure bug bounties across HackenProof / Immunefi / Cantina.

If you want your protocol to be safe from criticals/highs, hire the
VulSight (@vulsightsec) 's Twitter Profile Photo

$300,000 from a single bounty. Also yes, it was Move related. Move helps, but it doesn’t magically make protocols safe. The real bugs still live in assumptions, invariants, and integrations. Proud of what VulSight has been doing too. We’ve cleared over $500k in bounties in the