AI human hybrid security systems for the cyborg era.

Joined July 2025
17 Photos and videos
Hey Zero Cool: πŸ‘‰ Create a video explainer for this finding using adorable kittens 🐈 😽 There's been some confusion around this finding related to function pointers, so we let Zero Cool have access to a video generation tool and gave it this prompt! Here is the result:
2
10
1,030
We are proud to partner with yAudit. We’ll be sharing more about our collaboration in the coming days, including case studies and lessons learned.
yAudit has a secret weapon. 🀫 Earlier this year, we developed yAgent, our in-house AI auditor. We've run it on every review since March, and it's really changed the way we work and raised the bar on our security reviews. Our researchers can go deeper on the code, move faster, and explore more ideas as they go. yAgent handles the groundwork so the team can spend its time on the hard problems. The tool was built on top of the award winning vulnerabilitiy detection engine developed by @zerocool_ai. We added our own workflows, knowledge bases, and custom skills to replicate the expertise and approaches we've developed over the years through auditing DeFi's biggest protocols like Yearn, Euler, and many more. We'll be sharing more details soon, including case studies, experiences, and tips for those trying to implement AI into their security process.
2
18
892
Congratulations to the @Kinetiq_xyz team on the new launch! πŸš€πŸš€πŸš€ We're honored to have helped secure the code. 🫑
Launch by Kinetiq is now live on Hyperliquid. Sourcing for aspiring HIP-3 deployers has just changed, for good. Stakers can back any deployer and earn a permanent share of their trading fees, in perpetuity. You can just.. Launch things.
2
6
271
Kinetiq ran Zero Cool in preparation for their Cantina audit. The tool surfaced numerous issues that the team was able to fix before the audit started. Link to the full report: kinetiq.xyz/docs/launch#secu…
1
4
125
If you're interested in using Zero Cool to secure your protocol, reach out now to request a demo (dm's open!) or visit us at zerocool.ai
2
93
Spot the bug πŸ›:
2
8
706
In our last post, β€œNon-existence proofs enable security check bypass in the Cartesian Merkle Tree(CMT),” in our Solarity lib review findings, we provided a brief explanation on how the BST property on keys & the Min-heap property work in CMT. Apparently, we also submitted a high-severity issue that leans on that explanation: "PriorityQueue.remove breaks heap invariant due to missing upward reheapification.” Expect the write-up soon!
10
1,002
Interesting to know that Zero Cool started auditing on HackenProof in October 2025, and we already rank 30, with 28 reports.
1
52
1,375
Zero Cool is honored to be listed alongside these top-tier security firms securing the future of Tangent.
The Tangent protocol has undergone extensive testing and auditing, including 100% unit test coverage, fuzzing, and a total of five audits. Many thanks to @EgisSec, @sherlockdefi, @PashovAuditGrp, and @ZeroCool_AI for their work, which helped us secure $USG. Links below πŸ‘‡
2
1
16
906
Spot the bug. Hint: ERC-4337 says handleOps must call validateUserOp on the wallet, and from the account's perspective, msg.sender in validateUserOp must be EntryPoint.
2
12
914
It's been a while since we released the first Zero Skill! (We've been busy cookin'!) The wait is over...new Zero Skill coming tomorrow!! hint: 🐍🐍🐍
1
1
14
1,332
Zero Cool achieved yet another top 10 finish on the Sequence contest hosted by Code4rena (🫑 RIP). Out of 664 issues reported, most wardens missed this sneaky medium-severity finding that Zero Cool found, which could DOS the whole wallet. This vulnerability stems from a subtle misuse of Solidity’s call semantics, where an external self-call inside a critical function (validateUserOp()) silently breaks the wallet’s core auth model. Full write-up coming tomorrow!
1
1
21
1,417
This looks basic, but we still see protocols falling for this in 2026. Can you tell why Zero Cool panicked over these lines of Code?
8
514
Duplicates might be 'good signal,' but it still #feelsbadman
4
30
1,763