Smart contract security researcher — risk management, applied on-chain.
Former corporate insurance professional (~3 yrs) → smart contract security. Both are the same craft: protecting organizations by managing risk. I focus on the bugs tools and AI miss — the logic and economics of how a protocol actually behaves, not just what the code says.
- Solidity / EVM smart contract security
- DeFi — with a lens on insurance, coverage, and risk-pool protocols
- Economic & logic vulnerabilities (the context bugs static analysis can't reach)
- web3-audit-portfolio — audit writeups & runnable Foundry PoCs (study & practice reports on public/educational code, clearly labeled as such)
- Notes on smart contract security and the auditor's craft
- Working through competitive audits (CodeHawks) and publishing writeups
- Building detection tooling
- Deepening the insurance × security niche — economic soundness, not just code safety
- Qiita (JP): @sleepycat_web3 — Web3 security & auditing
- note (JP): @sleepycat1234 — guides & essays
- X: @lo_cmalu_ractu
Open to audit collaborations and security work — best reached by X DM or sleepycat12341013@gmail.com.