# Hexens > Hexens is a cybersecurity firm securing critical infrastructure across blockchain protocols, AI and agentic systems, cryptographic implementations, and traditional enterprise networks. 300+ audits completed. Zero post-audit exploits. $120B+ in assets under audited code. 91% client retention. Hexens runs five service practices: blockchain security, AI and agentic security, cryptography security, application and network security, and security consultancy. Every audit engagement deploys two independent teams of senior engineers working in parallel. The teams converge on findings only after independent assessment. 90% of audit reports surface critical or high-severity vulnerabilities. Team certifications include OSCP, OSCE3, OSWE, OSEP, OSMR, OSED, CRTL, ISO 27001 LA, CISSP, eCPTXv2, and AATHIR. The firm operates at the intersection of frontier security research and practical implementation review. Engineers are CTF champions, bug bounty leaderboard veterans, and vulnerability researchers with track records of breaking systems considered unbreakable. Every engagement is augmented with frontier AI models to extend code coverage across large codebases. Hexens publishes original vulnerability research through responsible disclosure with affected parties. In addition to audit services, Hexens operates three security products: Glider (smart contract code query engine), Token Risks API (real-time token risk scoring), and Remedy (expert-triaged bug bounty platform). ## Services - [Blockchain Security](https://hexens.io/services/blockchain-security): Smart contract audits in Solidity, Rust, Move, Vyper, and Cairo. L1/L2 protocol reviews, centralized exchange security assessments, hardware and software wallet audits, DeFi protocol reviews, cross-chain bridge security, and TEE application security. - [AI & Agentic Security](https://hexens.io/services/ai-ml-security): Security audits for AI agents, agentic commerce protocols, MCP server deployments, LLM-powered applications, vibe-coded products, MLOps pipelines, model supply chain, and AI red teaming. - [Cryptography Security](https://hexens.io/services/cryptography-security): ZK circuit audits for SNARKs and STARKs, FHE implementation reviews, MPC protocol assessments, cryptographic primitive audits, proving system reviews, and post-quantum cryptography assessments. Frameworks include Circom, Halo2, Plonky2 and Plonky3, Noir, Gnark, Zokrates, PIL, zkASM, and Cairo. - [Application & Network Security](https://hexens.io/services/application-network-security): Full-scope penetration testing, APT simulation and red teaming, web and mobile application penetration testing, source code review, API security testing, cloud infrastructure security audits, and network penetration testing. Engagements cover both blockchain-adjacent systems and traditional enterprise infrastructure. - [Security Consultancy](https://hexens.io/services/security-consultancy): System architecture review, threat modeling, compliance and certification advisory for SOC 2, ISO 27001, MiCA, and DORA, DevSecOps integration, DDoS resilience assessment, and social engineering training and testing. ## Solutions - [Glider](https://hexens.io/solutions/glider): Smart contract code query engine. Search on-chain code by function, pattern, or behavior. Tags and categorizes smart contract data at scale. $200M+ in on-chain assets protected through Glider queries. Public IDE at https://glide.r.xyz. - [Token Risks API](https://hexens.io/solutions/token-risks-api): Real-time token risk scoring covering contract vulnerabilities, ownership risks, liquidity traps, and manipulation vectors. Operates in SAST and Hybrid (AI plus SAST) modes. Integrated by CoinStats to deliver risk analysis to end users. - [DeFi Risks](https://hexens.io/solutions/defi-risks): DeFi protocol risk analysis powered by Glider. - [Remedy](https://r.xyz/bug-bounty/programs): Expert-triaged bug bounty platform. Every submission reviewed by senior security engineers. Powered by Engram, a zero-knowledge proof of duplicates system. $5.5M+ in active rewards. Hosted at r.xyz. ## Original Research - [Hexens Research Hub](https://hexens.io/research): Vulnerability disclosures and original security publications. - [Arbitrary Struct Hijack in Aptos Move VM](https://hexens.io/research/aptos-hijack-bug): Disclosure of a critical type confusion vulnerability in the Aptos Move VM. A stale type-tag cache after partial module cache flush lets recycled StructNameIndex values map to wrong StructTags, enabling arbitrary struct hijack and overwrite on-chain. - [Polygon Bridge: Forging Transaction Proofs](https://hexens.io/research/polygon-bridge-forging-transaction-proofs): Disclosure of a vulnerability in the Polygon Plasma bridge that allowed forging withdrawal proofs. Two chained bugs in the MPT and RLP libraries. Fixed July 2024. - [TSTORE Poison: Solidity Compiler Bug](https://hexens.io/research/solidity-compiler-bug-tstore-poison): First high-severity Solidity compiler bug since 2016. A cache key collision in the via-ir code generator causes delete on transient variables to emit sstore instead of tstore, or the inverse, depending on function selector ordering. Affects solc 0.8.28 through 0.8.33. ## Audit Reports - [Public Audit Reports](https://hexens.io/audit-reports): Full catalog of public security reviews. Clients include Kerne, AutoFinance, IRIS, 1inch, EigenCloud, Astrolab, Azuro, ALGEBRA FINANCE, Fastex, Holonym, Slash Payments, API3, Camino, Persistence, Alien Base, Celo, Fungify, Quickswap, Socket, LayerCover, Layerswap, Risc ZERO, Mantle, Lido, Polygon, Polygon zkEVM, Logarithm, PancakeSwap, Zealous, BasisOS, Moonbound, Ufarm.Digital, Lendle, T3rn, Thesauros, Chaos Labs, DIN, Zharta, Valantis, mETH Protocol, GLIF, Usual, Fuel, OBSDN, Everclear, JuiceSwap, TrenDex.one, Shib.io, Royco, KalqiX, Elfomo Labs, Kyber Network, ANQ, Katana, Cybro, Sentio, CrossCurve, Fanpla, Yelay, Spool, Swell, StakeWise, Secured Finance, Wintermute, ZKsync, TRAIN Protocol, TON, Manifold Finance, Ducata, CoinRoutes, Defexa, Mintify, Mantissa Finance, Eywa, RociFi, 4k.com, Taker, Ava Labs, Boba Network, Deq.fi, Hashflow, LayerZero, ParaSwap, Pencils Protocol, Rush Trading. ### Selected Audit Reports - [Polygon zkEVM Audit - Feb 2023](https://hexens.io/audit-reports/polygon-zkevm-feb-2023) - [Polygon Aave & DAI Bridge Integrations Audit - Aug 2023](https://hexens.io/audit-reports/polygon-aave-dai-bridge-integrations-aug-2023) - [1inch Fusion+ Cross-Chain Swaps Audit - Jun 2025](https://hexens.io/audit-reports/1inch-fusion-plus-cross-chain-swaps-jun-2025) - [Lido V2 Upgrade Audit - Feb 2023](https://hexens.io/audit-reports/lido-v2-upgrade-feb-2023) - [EigenLayer EigenPod Stage 2 Audit - Oct 2023](https://hexens.io/audit-reports/eigenlayer-eigenpod-stage-2-oct-2023) - [Mantle cMETH Boring Vault Audit - Aug 2024](https://hexens.io/audit-reports/mantle-cmeth-boring-vault-aug-2024) - [RISC Zero SetVerifier & Aggregation Audit - Dec 2024](https://hexens.io/audit-reports/risc-zero-risczerosetverifier-aggregation-dec-2024) - [RISC Zero Crypto SCs Audit - May 2024](https://hexens.io/audit-reports/risc-zero-crypto-scs-may-2024) - [Fuel Labs O2 Orderbook Audit - Aug 2025](https://hexens.io/audit-reports/fuel-labs-fuel-o2-orderbook-aug-2025) - [PancakeSwap Infinity Periphery Audit - May 2025](https://hexens.io/audit-reports/pancakeswap-infinity-periphery-contracts-may-2025) - [Kyber Network Smart Intent Audit - Dec 2025](https://hexens.io/audit-reports/kyber-network-smart-intent-protocol-dec-2025) - [Katana KAT Vault & OFT Integration Audit - Jan 2026](https://hexens.io/audit-reports/katana-kat-vault-layerzero-oft-integration-jan-2026) - [Usual sUSD0 Yield Bearing Vault Audit - Oct 2025](https://hexens.io/audit-reports/usual-susd0-yield-bearing-vault-oct-2025) ## Technical Blog - [Hexens Blog](https://hexens.io/blog): Technical writing on smart contract security, zero-knowledge cryptography, FHE, MPC, applied cryptography, and AI security. - [Understanding Differential Privacy: Part 1](https://hexens.io/blog/dp-part1): A practical guide to differential privacy: the attacks that motivate it, the formal definition, trust models, mechanisms, and privacy accounting. - [Understanding Differential Privacy: Part 2](https://hexens.io/blog/dp-part2): A hands-on guide to DP-SGD: how it works, how VaultGemma uses it at LLM scale, and what private vs non-private training actually costs on CIFAR-10. - [Encrypted Vector Databases Without Sacrificing Search](https://hexens.io/blog/vector-databases): A technical deep-dive into cryptographically secure vector databases, covering embedding attacks, why exact distance-preserving encryption fails, and the Scale-and-Perturb scheme. - [Secure Federated Learning with Cryptography](https://hexens.io/blog/secure-fl): Federated learning promises privacy by keeping data local, yet model updates remain vulnerable to inference and poisoning attacks. This article examines how cryptography secures federated learning in practice, covering secure aggregation, homomorphic encryption, MPC, differential privacy, and verifiable training with zero-knowledge proofs. - [Attacks on Threshold Schemes: Part 1](https://hexens.io/blog/mpc-attacks-p1): A technical guide to real-world attacks on threshold signature schemes. Explore implementation bugs like missing checks and proofs, wrong parameters. - [Attacks on Threshold Schemes: Part 2](https://hexens.io/blog/mpc-attacks-p2): Deep dive into protocol-level vulnerabilities in threshold signature schemes: MtA oracle attacks, reshare synchronization flaws, deterministic nonce reuse, and adaptive security challenges in FROST and threshold Schnorr. - [A Comparison of zkVM DSLs: Halo2, Zirgen, and Plonky3](https://hexens.io/blog/zkvm-dsls): Deep dive into ZK constraint systems: Halo2's PLONKish circuits, Zirgen's STARK compiler, and Plonky3's direct AIR authoring. Complete with Fibonacci examples. - [Token Risk Scanning for Traders: Glider Flags 20+ on-chain risks others miss](https://hexens.io/blog/Glider-Token-Risk-Scanning-for-Traders): Discover how Glider’s Token Risks API detects 20+ hidden smart contract risks missed by other scanners. Protect your trades against honeypots, rug pulls, liquidity traps, and backdoors with real-time, multi-chain token analysis. ## Methodology Every engagement runs two independent teams of senior engineers in parallel, with exclusive project focus and no parallel client splits. Findings are cross-verified. Where findings overlap, confirmation is established. Where they diverge, single-team blind spots are surfaced. Tooling includes proprietary static analysis through Glider, AI-augmented review with frontier models, fuzzing, property-based testing, and formal verification for critical invariants where applicable. ## Company - [Team](https://hexens.io/team): Security researchers, CTF champions, and bug bounty leaderboard veterans. - [Careers](https://hexens.io/careers): Open positions. - Contact: info@hexens.io - Office: 71-75 Shelton Street, Covent Garden, London WC2H 9JQ, United Kingdom ## Optional - [Full text (llms-full.txt)](https://hexens.io/llms-full.txt): Complete consolidated site content for LLM ingestion. - [GitHub](https://github.com/Hexens): Public audit report archive, Glider documentation, public Glider queries repository, awesome-fhe-attacks list, PIL static analysis framework. - [X (Twitter)](https://x.com/hexens) - [LinkedIn](https://www.linkedin.com/company/hexens)