01▲SAEFUZZ: Smart Contract Vulnerability Detection through Statically Guided Evolutionary Fuzzing arxiv.org Bytecode-level fuzzing for Ethereum contracts, with static path guidance and runtime oracles to hit deep state bugs more reliably.arxivblockchainevolutionary-algorithmsfuzzingsecuritysmart-contractsstatic-analysis0 pts/finn13/54 minutes ago/discuss
02▲Circom-Auditor: Open-Source Skills for Finding Vulnerabilities in Circom Code blog.zksecurity.xyz Can an open-source skill actually spot Circom soundness, completeness, and privacy bugs, or is this just another judge pipeline?ai-assisted-securityauditingblogscircomformal-verificationsecuritysnarkstatic-analysistoolingzkzksecurity1 pt/honestmaj/12 days ago/2 comments
03▲Hidden Ciphers and Where to Find Them: Static Discovery and Assessment of Cryptographic Assets in Software arxiv.org Static scanner maps crypto material, artifacts, and calls across code/config/deps for CBOMs and PQC triage.arxivcryptographypqcprivacystatic-analysis0 pts/nadiaf/12 days ago/1 comment
04▲Qodana 2026.2 adds post-quantum crypto checks for JVM code helpnetsecurity.com HelpNetSecurity covers Qodana 2026.2, adding PQ crypto checks for JVM code and more static-analysis boxes to tick.cryptographydotnetgojavajavascriptjvmphppqcsecuritystatic-analysistwittertypescript0 pts/evanm/14 days ago/discuss