Talk to an Expert
Contact Our Team
Image of a gear for vulnerability explanation

FEATURED POST

September 22, 2025

Introducing Sherlock AI

Sherlock AI is an auditing assistant that helps teams catch vulnerabilities early, streamline audits, and ship smart contracts with confidence.

Join Sherlock Community on Discord
Join our community and stay up to date
Join Sherlock on Discord

July 17, 2025

GMX Exchange Hack Explained

GMX Exchange Hack Explained: $42M Drained via Re-Entrancy Exploit. Written in collaboration with Blackthorn Lead Security Partner, Panprog.

June 2, 2025

How Did My Audit Go? A Framework for Evaluating Audit Effectiveness

Right now the process of choosing and recommending audit firms in the blockchain space is opaque. Sticking to the values of Web3, we want to demystify the selection process and introduce quantifiable metrics for audit effectiveness, thereby enhancing trust and reliability within the blockchain ecosystem.

June 2, 2025

When Audits Go Head-to-Head: How Case Studies Reveal the Most Effective Methodology

When it comes to the blockchain, securing trust requires bulletproof auditing. But how can teams determine which provider delivers truly rigorous security reviews?

October 1, 2025

How Sherlock AI Uncovered a $2M Vulnerability on Mainnet

Sherlock AI discovered a Critical vulnerability affecting $2,400,000 in a live lending protocol. This is the first known instance of an AI uncovering a multi-million-dollar bug on mainnet.

September 17, 2025

Vulnerability Analysis: Numa Price Manipulation (August 2025)

On August 10th, 2025, Numa was exploited through a price manipulation in its synthetic minting logic. Our postmortem explains how the attack unfolded, the technical root cause, and lessons for builders.

August 29, 2025

The Top 10 Most Threatening Vulnerabilities in Web3 Protocols: #10 Integer Overflow/Underflow

Maintaining numerical integrity is essential to protocol security. Without bounded and validated operations, protocols lose system assurance and expose themselves to silent failures that corrupt state, halt execution, or distort incentives. Robust arithmetic is not an optimization detail - it’s a core requirement for trustworthy DeFi.

Why Sherlock

Case Studies

Past Clients

Top Auditors

Live Audits

Products

Blackthorn

Collaborative Audits

Audit Contests

Bug Bounties

Sherlock Shield

Sherlock AI

Researchers

Leaderboards

App

Live Audits

Live Bug Bounties

Resources

About

Blog

Docs

Blog Copy

Brand Kit

Put your protocol’s smart contracts through the most thorough security audit ever created

Follow Us On

Copyright © Sherlock Protocol 2025.

All Rights Reserved.