Audit Methodology
Dedaub’s Security Audit teams include at least two senior security researchers and any support they may need (e.g., cryptography expertise, financial modeling, testing) from the rest of our team. We carefully match the team’s expertise to your project’s specific nature and requirements.
Two-phase review
During phase 1, the auditors understand the code in terms of functionality, i.e., in terms of legitimate use.
During phase 2, the auditors assume the role of attackers and attempt to subvert the system’s assumptions by abusing its flexibility.
Constant challenging
The two senior auditors will continuously challenge each other, trying to identify dark spots. An auditor who claims to have covered and to understand part of the code is often challenged to explain difficult elements to the other auditor.
Thinking at multiple levels
Beyond thinking of adversarial scenarios in self-contained parts of the protocol, the auditors explicitly attempt to devise complex combinations of different parts that may result in unexpected behaviour.
Use of advanced tools
Every project is uploaded to the Dedaub Security Suite for analysis by over 70 static analysis algorithms, AI, and automated fuzzing. The auditors often also write and run manual tests on possible leads for issues.
Before the conclusion of the audit, the development team gets access to the online system with our automated analyses, so they can see all the machine-generated warnings that the auditors also reviewed.
$3M
in Bug Bounties in 11 successful claims for identifying critical issues
$Billions
in TVL Secured via proactive white-hat hacking
200+
Security Audits for leading DeFi protocols
Experienced
We gained the trust of industry leaders like the Ethereum Foundation and Chainlink due to its unmatched Web3 and blockchain security expertise.
Bespoke
Discuss your needs with one of the most trusted Smart Contract Auditor for ETH protocol security, ZK project audits, and more
Trusted
Engage with our seasoned Smart Contract Auditors, renowned for their proven success and in-depth knowledge of blockchain security.