In 2017, at ETH Zurich, one of the leading universities for computer science in the world, academic researchers developed Securify [1]. Securify was the first static analyzer for Solidity smart contracts. As the tool gained in popularity, the team of researchers was approached multiple times for smart contract security services.
Hence, ChainSecurity was founded. The team quickly grew and audited over 70 projects for more than 50 clients. With the support of the Ethereum Foundation, Securify became open source [3] and publicly available. Furthermore, in collaboration with ETH Zurich, ChainSecurity developed formal verification tools such as VerX [4].
The team also received visibility during the Constantinople [5] and Berlin [6] hard forks, as it discovered two issues. Other multiple low-level issues in Ethereum client were reported and resulted in the 5th place on the global Ethereum bug-bounty leaderboard [7].
Beginning of 2020, ChainSecurity was acquired by PwC Switzerland [8]. The goal was to provide a joint business offering for smart contract code audits and financial audits, thus spearheading the tokenized securities industry.
However, in April 2021, as our DeFi clients became increasingly decentralized, it was challenging to serve them from such an established and regulated company. Hence, ChainSecurity amicably spun-off from PwC. ChainSecurity learned from the best practices of the financial audit sector and, with leading blockchain security engineers and PwC- alumni, we make up a world-class team bringing quality, reliability, and experience.
In 2021, after the spin-off from PwC, ChainSecurity performed approximately 50 audits, hired talent from leading universities, and identified a vulnerability in live Compound code [9] during an audit on a different scope [10]. In 2022, ChainSecurity continued performing audits with increased capacity, won Ethereum Foundation’s underhanded Solidity contest [11], identified a live vulnerability in the Fuse pools of Rari Capital [12], and another one in Balancer [13]. More live vulnerabilities will soon be disclosed publicly after being patched.

