ExVul Research

Research that turns exploits into engineering knowledge.

Evidence-led investigations into smart contracts, runtimes, wallets, and the protocol failures shaping Web3 security.

Research notes
30
Research domains
6
Access
Open archive

02 / Research index

Explore the technical archive

Find investigations by domain, affected system, or technical concept.

Showing 27 publications

01
Wallets & clientsWallet SecurityCryptography

One Line, All Funds: How a Static IV Turned Nightly Wallet's Encryption Into a Two-Time Pad

A single const declaration at module scope reused the same AES-CTR initialization vector for every encryption call, enabling full mnemonic and private key recovery from any Nightly Wallet vault — without ever knowing the user's password.

15 min
Read research
02
Languages & runtimesSolanaAnchor

How a One-Byte Discriminator Can Silently Break Anchor's Event System

A deep dive into a dispatch hardening gap in the Anchor framework where custom discriminators can shadow the Event CPI sentinel, silently disabling the event system with no compiler warnings.

12 min
Read research
03
Wallets & clientsFingerprint BrowserAntidetect Browser

In-Depth Security Risk Analysis of the Fingerprint Browser Industry

A comprehensive security analysis revealing systemic vulnerabilities in fingerprint browsers that have led to millions in losses. This report examines real-world incidents, technical vulnerabilities, and the dangerous trust model these products create for users managing high-value digital assets and cryptocurrency wallets.

45 min read
Read research
04
Post-mortemSwapNetArbitrary Call

SwapNet Attack Analysis: $13.43M Lost to Arbitrary Call Vulnerability

A detailed vulnerability analysis of the SwapNet protocol exploit on January 25, 2026, where an attacker exploited arbitrary call vulnerabilities in the smart contracts to steal approximately $13.43 million across multiple blockchains.

6 min
Read research
05
Post-mortemTruebitInteger Overflow

Truebit Protocol Attack Analysis: 8,535 ETH Lost to Integer Overflow

A detailed vulnerability analysis of the Truebit Protocol exploit on January 8, 2026, where an attacker exploited an integer overflow vulnerability in the token purchase price calculation logic, resulting in a loss of 8,535.36 ETH.

8 min
Read research
06
Post-mortemyETHCurve

Deep Dive: The yETH Weighted StableSwap Exploit - Part 1

An in-depth analysis of the yETH Weighted StableSwap exploit, exploring how the transition from Curve's invariant to a weighted model introduced critical vulnerabilities through product-term collapse.

15 min
Read research
07
DeFi securityPolymarketPrediction Markets

Prediction Markets Are Becoming Financial Infrastructure. Their Security Is Not Ready.

The numbers back this up. During the 2024 U.S. election, prediction markets saw unprecedented volume and mainstream adoption, yet their security infrastructure remains immature.

12 min
Read research
08
Vulnerability analysisSuiHack Analysis

Nemo Protocol Hack: $150K Loss Analysis on Sui Blockchain

Detailed breakdown of the Nemo Protocol exploit on Sui blockchain, examining the vulnerability and attack methodology.

10 min
Read research
09
Languages & runtimesTONTolk

TON Blockchain: Tolk vs FunC Security Comparison

Comprehensive security analysis comparing TON's new Tolk language with the established FunC for smart contract development.

14 min
Read research
10
Vulnerability analysisRadiantCross-chain

Radiant Capital Hack: $58M Cross-Chain Attack Analysis

In-depth analysis of the Radiant Capital exploit that resulted in $58 million in losses across multiple chains.

15 min
Read research
11
Protocol securityStacksClarity

Stacks Clarity Smart Contract Security Guide

Comprehensive security guide for developing secure smart contracts using Clarity on the Stacks blockchain.

18 min
Read research
12
DeFi securityOracleDeFi

DeFi Oracle Manipulation: Attack Patterns and Defenses

Analysis of oracle manipulation attacks in DeFi protocols and recommended defensive measures.

13 min
Read research
13
Languages & runtimesMoveAptos

Move Language Security: Aptos vs Sui Implementation Differences

Comparative analysis of Move language security considerations between Aptos and Sui blockchains.

16 min
Read research
14
Languages & runtimesTONFunC

TON Smart Contract Security Deep Dive

A comprehensive analysis of security considerations for smart contract development on The Open Network (TON).

10 min
Read research
15
Protocol securityZK-RollupLayer 2

ZK-Rollup Security: Current Landscape and Risks

Security analysis of zero-knowledge rollup implementations and their trust assumptions.

14 min
Read research
16
Languages & runtimesClaritySolidity

Auditor's Handbook: Dissecting the Security Layers of Clarity

A comprehensive comparison of Clarity and Solidity smart contract languages from a security auditor's perspective.

15 min
Read research
17
DeFi securityMEVFront-running

MEV Protection Strategies for DeFi Protocols

Comprehensive guide to protecting DeFi protocols and users from Maximal Extractable Value attacks.

11 min
Read research
18
DeFi securityDeFiSecurity

DeFi Security Best Practices for 2024

Essential security practices for DeFi protocol developers based on our audit experience across hundreds of protocols.

12 min
Read research
19
Protocol securityERC-4337Account Abstraction

Account Abstraction Security: ERC-4337 Risks and Mitigations

Security analysis of ERC-4337 account abstraction and potential vulnerabilities in smart contract wallets.

12 min
Read research
20
Vulnerability analysisNFTERC721

NFT Smart Contract Security Guide

Common vulnerabilities in NFT contracts and how to prevent them, based on our analysis of major NFT exploits.

10 min
Read research
21
Protocol securityCosmosIBC

Cosmos IBC Security: Cross-Chain Communication Risks

Analysis of Inter-Blockchain Communication (IBC) security in the Cosmos ecosystem.

13 min
Read research
22
Protocol securityBridgeCross-chain

Cross-Chain Bridge Security Analysis

Deep dive into cross-chain bridge vulnerabilities that have led to billions in losses.

14 min
Read research
23
DeFi securityEigenLayerRestaking

Restaking Security: EigenLayer and AVS Risks

Security analysis of restaking protocols like EigenLayer and the risks of Actively Validated Services.

15 min
Read research
24
DeFi securityFlash LoanDeFi

Flash Loan Attack Patterns and Prevention

Comprehensive analysis of flash loan attack patterns observed across DeFi protocols.

11 min
Read research
25
Wallets & clientsWallet SecurityChrome Extension

Chrome Extension Wallet Ciphertext Replacement Attack

Many chrome extension wallets use indexedDB to store encryption key data, but there exists a cipher text replacement attack that can steal user's private keys or mnemonic phrases.

12 min
Read research
26
Languages & runtimesSolanaRust

Solana Program Security Guide

Security considerations unique to Solana program development and common vulnerability patterns.

13 min
Read research
27
Languages & runtimesAptosMove

Move Language Security on Aptos

Security analysis of the Move programming language and Aptos-specific considerations.

10 min
Read research
Research dispatch

New findings, delivered with evidence.

Receive new vulnerability research, reproductions, and mitigation guidance from ExVul.

  • Technical disclosures
  • Root-cause analysis
  • Reproducible findings

No spam. Unsubscribe at any time.