Zellic

Zellic

Computer and Network Security

Zellic specializes in securing emerging technologies.

About us

Zellic specializes in securing emerging technologies. Our expertise in both Web3 and Web2 allows us to tackle even the most challenging targets. We are leading experts in cryptography, web security, and reverse engineering. Among others, our clients include Mysten Labs, LayerZero, and StarkWare. We also have a dedicated zero-knowledge cryptography team, and work closely with projects like Scroll, Axiom, and Succinct Labs. Before Zellic, we founded the #1 CTF (competitive hacking) team in the world. We’re also a founding member of the Security Alliance (SEAL) led by samczsun, an industry effort to raise the bar for blockchain security.

Industry
Computer and Network Security
Company size
11-50 employees
Headquarters
Everywhere
Type
Privately Held
Founded
2020
Specialties
Cybersecurity, Vulnerability Research, DeFi, Blockchain, Ethereum, Solana, Cosmos, Zero-Knowledge, Aptos, and Sui

Locations

Employees at Zellic

Updates

  • View organization page for Zellic, graphic

    1,046 followers

    Zellic Co-Founder and CEO Luna Tong joined CoinFund CEO Jake Brukhman on the Mined with CoinFund Podcast. During this conversation they covered AI's role in security audits, the pre-mainnet auditing process, and Web2 vs. Web3 cybersecurity. Link to the full podcast found below:

  • View organization page for Zellic, graphic

    1,046 followers

    As a whitelisted security auditor, Zellic is excited to share that applications are now open for the Arbitrum Security Subsidy Fund! This initiative allocates $2.5M towards subsidizing the cost of security audits for projects within the Arbitrum ecosystem. More details below:

    View organization page for Areta, graphic

    6,621 followers

    Applications are officially open for the Arbitrum DAO Security Subsidy Fund (SSF)! With an allocation of $2.5 million, the SSF will help subsidise the cost of security services for projects within the Arbitrum ecosystem. Applicants to the SSF will be evaluated against the requirements set out by the ADPC’s Means Test, and if successful, will be eligible to receive subsidised security services from whitelisted security service providers. We encourage projects in need of security services to apply for subsidies under this program. Interested projects can apply for subsidies by submitting an application form (link in the comments below).

    • No alternative text description for this image
  • View organization page for Zellic, graphic

    1,046 followers

    In December of 2023, Zellic Security Researcher Syed Faraz Abrar found a bug in NEAR Protocol's blockchain node. This bug would allow an attacker to crash every node on the NEAR network. Following months of collaboration with NEAR to responsibly disclose and fix the issue, we are excited to share the technical details, disclosure timeline, and a proof-of-concept exploit for this high-severity bug.

    View profile for Syed Faraz Abrar, graphic

    Lead Blockchain Security Engineer, Independent Vulnerability Researcher, Top 60 @ Immunefi

    In December of 2023, I found a vulnerability in NEAR's blockchain node that would allow an attacker to crash every single node on the network with a simple handshake message. This vulnerability was effectively a Web3 ping of death. After responsibly disclosing the vulnerability, NEAR classified this with a CVSS rating of 8.8 - a High severity vulnerability. I was awarded a $150,000 USD bounty for this vulnerability. For more details on the vulnerability, as well as a proof of concept exploit, check out the Zellic blog post! https://lnkd.in/g5Y75VfY

    Web3 Ping of Death: Finding and Fixing a Chain-Halting Vulnerability in NEAR | Zellic — Research

    Web3 Ping of Death: Finding and Fixing a Chain-Halting Vulnerability in NEAR | Zellic — Research

    zellic.io

  • View organization page for Zellic, graphic

    1,046 followers

    Version 0.11.0 of gnark was just released, which fixes two vulnerabilities in the Groth16 backend reported by Zellic (CVE-2024-45039, CVE-2024-45040). These affect the soundness and ZK property of generated proofs. For an in-depth explanation of Groth16, gnark’s extension with commitments, the two issues we reported, and how to check if you're vulnerable, check out our blog post: https://lnkd.in/gKechzw6

    Two Vulnerabilities in gnark's Groth16 Proofs | Zellic — Research

    Two Vulnerabilities in gnark's Groth16 Proofs | Zellic — Research

    zellic.io

  • View organization page for Zellic, graphic

    1,046 followers

    This September, Arbitrum DAO will be launching a Subsidy Fund of up to $2.5M to subsidize the cost of security services for projects within the Arbitrum ecosystem. Zellic is excited to be a whitelisted security auditor providing services under this initiative! More details below:

    View organization page for Areta, graphic

    6,621 followers

    We are pleased to announce that this September, we will be launching a Subsidy Fund up to $2.5 million to subsidise security-oriented services for projects within the Arbitrum ecosystem. As part of the Arbitrum DAO Procurement Committee (ADPC), we are proud to be leading this initiative for Arbitrum DAO. The Subsidy Fund is designed to reduce the financial barrier to entry associated with accessing high-quality security services for projects building on Arbitrum. This initiative highlights Arbitrum’s commitment to improving the security of its ecosystem and strengthens its position as a leading secure layer-2 solution for the Ethereum Network. Further details about the operation and launch of the Subsidy Fund will be announced in due course. ✋ To indicate your interest in applying for subsidies under this initiative, kindly complete this Declaration of Interest form below: 🔗 https://lnkd.in/dsc3zrsn

    • No alternative text description for this image

Similar pages

Browse jobs