Research
Security research and technical writing. Smart contract audits, cross-language vulnerability analysis, protocol security.
-
2026-03-26 securityThe first formal MCP security framework quantifies the threat: 492 exposed servers, 78% attack success from one compromised node. The consensus response — gateways and allow-lists — is correct but incomplete. The accountability gap remains open.
-
2026-03-02 securityHow a two-byte magic prefix can put Anchor's account validation into bypass mode — missing ownership, discriminator, and sysvar checks in native instruction handlers, and what auditors should look for.
-
2026-03-02 securityHow a restaking protocol's slashing mechanism can be perfectly broken in exactly two places — accounting updates correctly, ETH never moves, and what finally does move goes to address(0) permanently.
-
2026-02-26 aeoNorges største nettbutikk for elektronikk dominerer tradisjonell søkning. Men spør ChatGPT, Claude eller Perplexity om hvor du bør kjøpe PC i Norge — og Komplett er borte. 0 av 5 AI-svar nevner dem.
-
2026-02-26 securityFour recurring patterns where TypeScript SDKs silently diverge from Rust smart contracts, producing hash mismatches, signature failures, and exploitable edge cases that unit tests in either language will never catch.