pashov (@pashovkrum) 's Twitter Profile
pashov

@pashovkrum

Security audits @PashovAuditGrp
Angel investing @PashovCapital

ID: 1546814146385268737

linkhttps://www.pashov.net/ calendar_today12-07-2022 11:10:23

4,4K Tweet

31,31K Takipçi

1,1K Takip Edilen

pashov (@pashovkrum) 's Twitter Profile Photo

June hasn't started yet, but my team already has 5 security audits lined up to start. Some big names in there. For some reason (prob the market) builders are VERY active right now. They even ask to "rent devs". Wild times. Be working very hard in the next few weeks guys🫡

pashov (@pashovkrum) 's Twitter Profile Photo

1st of June. If you are reading this, I wish that this month is your best one so far in web3 security in terms of vulnerabilities found and protected, revenue & winnings and relationships built. We are currently in the bull run of web3 security. DO NOT sleep on it.

pashov (@pashovkrum) 's Twitter Profile Photo

Said this countless times - web3 security auditors get lots of data, very early, very often. Based on all the alpha I gathered, I claim that Hyperliquid is the ecosystem that will be growing the most in the near future. If you are to make a bet, place it there🫡 Hyperliquid

deadrosesxyz (@deadrosesxyz) 's Twitter Profile Photo

Loop Vaults are now live on mainnet 🥳 I do honestly think they're the best Risk-To-Reward yield opportunity right now (very low risk, ~25-30% APY) and im quite happy that they're finally live. The vault not only brings the gud yield, but also saves loopers both time and gas.

pashov (@pashovkrum) 's Twitter Profile Photo

My team has done close to 100 security audits in 2025 alone - full codebases, diff reviews, fork reviews, PRs etc. Most common types of projects are DEXes, asset management/yield and stablecoins. Builders very active, so we are very active as auditors in parallel🫡

pashov (@pashovkrum) 's Twitter Profile Photo

So much wildly genius talent in web3 & crypto. Be on the lookout for such, if you get to work with them, beautiful things will happen. I'm always looking to work with creative, smart and hardworking people. This has to be easily provable. My mission is to partner with the best🫡

pashov (@pashovkrum) 's Twitter Profile Photo

Suffering from success: web3 security researcher version 👏 Congratulations to the auditors on making a Senior Software Engineer yearly salary just from a single security contest🫡GJ to Cantina as well🤝

Suffering from success: web3 security researcher version 👏 

Congratulations to the auditors on making a Senior Software Engineer yearly salary just from a single security contest🫡GJ to Cantina as well🤝
pashov (@pashovkrum) 's Twitter Profile Photo

Too many hacks in web3 have come not from vulnerable smart contracts, but from bad OpSec of humans. Anybody who wants to safely transact in crypto must watch this Advanced Web3 Wallet Security course. 10x Cyfrin Updraft🫡 updraft.cyfrin.io/courses/advanc…

pashov (@pashovkrum) 's Twitter Profile Photo

All security researchers - read this. 10/10 post-mortem. Lots of alpha here, make sure to find it in the text. Great handling by Cork and by all security people helping them. Impressive. While I wasn't a part of this war room/effort - love seeing this🔥 cork.tech/blog/post-mort…

pashov (@pashovkrum) 's Twitter Profile Photo

Sometimes the smartest people think they are the dumbest. Very big mistake, especially in web3 security. When it comes to asking questions to developers, you should always do it for best performance. You can't ask a dumb question when you are auditing a web3 smart contract for

pashov (@pashovkrum) 's Twitter Profile Photo

Anybody in web3 security that doesn't understand that helping everyone around him will grow the overall quality of security services, which will help builders build more stuff, which will help increase demand of audits, which will help YOU, is not smart enough. HELP EACH OTHER🫡

pashov (@pashovkrum) 's Twitter Profile Photo

In smart contracts, integrations to external projects or libraries are one of the places where you find the highest density of vulnerabilities in a protocol. Blackhats know this, good whitehats know it too. Be twice as careful on external integrations, for your security🙏

pashov (@pashovkrum) 's Twitter Profile Photo

Almost exactly 3 years ago I made my first money in web3 security. Code4rena Solidity codebase security contest, put in 2 hours of effort and got paid $46.04 USDC. Nothing has been the same since this. Your life can be unrecognisable in 3 years. Put in the effort & hours. I did.