Early rate$2,400 of senior audit time for $500. Early members keep the rate as it climbs.$2,400 of senior audit time for $500See how
Zealynx NewsletterEvery Tuesday

Notes from inside an audit firm.

One finding from a real Zealynx engagement, one exploit autopsied at the line-of-code level, a tooling note, and what we shipped this week. Every issue, archived in full. Built for the engineers who will own the fix.

Week 04Jul 9, 2026Summer.fi

The strategy you offboarded is still in your NAV math.

A vault can pass every line-level check and still hand an attacker a 2,080,000% APY print, because the bug was never in a line of code. It was in the accounting a decommissioned strategy left behind. This week: a dormant-component NAV finding, the Summer.fi autopsy that matches it, and the one Foundry invariant that catches both.

Read the issue →
Week 03June 30, 2026Humanity Protocol

The bytecode you audited is not the bytecode that runs.

Weeks 01 and 02 were about a key that could spend and a key that could sign. This week the key does something worse: it replaces the contract. Humanity Protocol lost roughly $36M when three valid signatures upgraded a token proxy and minted 300M new tokens, and the audited logic never had a say.

Read the issue →
Week 02June 3, 2026Gravity Bridge

Last week the contract was the bug. This week the contract was fine and the key wasn't.

A weekly view from inside the audit queue: one finding worth your attention, one exploit autopsied at the line-of-code level, a tooling note, what we published on the blog this week, and an Academy update.

Read the issue →
Week 01May 27, 2026Verus Bridge

What we'd have flagged this week, and why bridges keep paying for the same bug from 2022.

A weekly view from inside the audit queue: one finding worth your attention, one exploit autopsied at the line-of-code level, a tooling note, what we published on the blog this week, and an Academy update.

Read the issue →