Sample audit report — see how a Hackerbane report is structured. Open the report →

Ethereum security review

Ethereum is the largest smart contract platform and the settlement layer most of DeFi depends on. Hackerbane audits the Solidity and Vyper contracts you deploy there, the upgrade paths behind them, and the keys that control both.

What we review

Most of the value in crypto still settles on Ethereum, and most chains that post to it inherit its assumptions. We review the full system that guards funds: the vault, the router, the upgrade path, the price feed, and the role that can change any of them.

  • Accounting logic and callbacks that run before balances settle, including reentrancy.
  • Proxy storage layouts and the initialization path after every upgrade.
  • Oracle and keeper dependencies, and the MEV window a sandwich can sit in.
  • Signature schemes that replay across chains or across calls.
  • Automation or AI agents that hold an owner or operator key.

When AI holds the keys

A correct vault paired with an agent that holds the hot key is where single-discipline audits fall short. Hackerbane reviews the contracts and the automation that calls them in one engagement, so the boundary between them is covered too.

Next step

Request an audit

Share your repo, the contracts in scope, and your launch timeline – we'll propose an audit plan and estimate for Ethereum mainnet.