DeFi Lending & Borrowing Security Researcher
I’m Panther, an independent security researcher focused on DeFi lending and borrowing mechanics across Move and Solidity. My experience includes the Aave Aptos contest, Arcade NFT lending, private Sui lending review, and formal-verification work. I trace whether collateral, debt, interest, and liquidation behavior remain consistent across the protocol lifecycle.
From borrowing power to bad-debt recovery
Lending reviews connect collateral valuation, oracle updates, interest accrual, share conversion, borrowing limits, repayment, liquidation incentives, and insolvency handling. Boundary conditions matter: empty markets, small positions, stale prices, configuration changes, and partial liquidation can expose assumptions that ordinary deposit-and-borrow flows never exercise. Cross-chain lending adds asynchronous messages and disagreements between local and remote accounting.
Relevant work and public evidence
In Aave Aptos, my accepted High identified mismatched resource addresses that caused configuration reads to abort; the contest record includes one High, one Medium, and third place. My Sui lending verification notes describe an eMode immutability property checked across six target functions plus sanity checks. That result is evidence for the modeled property, rather than a claim that the entire protocol is proven safe.
- Aave Aptos lending finding
- Sui lending protocol audit field guide
- Formal verification of Sui lending invariants
- Lending review methodology on Bittensor
- DeFi security research and field guides
How should I evaluate a lending and borrowing security expert?
Ask for relevant findings and a clear explanation of the protocol’s solvency model. The reviewer should be able to connect oracle failure, interest accounting, collateral limits, liquidation execution, and bad debt. Send the risk parameters, supported assets, market design, and deployment configuration with the code so those assumptions can be reviewed together.
Work directly with an independent researcher
Send your ecosystem, repository or documentation, approximate scope, and target dates. I work directly with protocol teams and contribute to security-firm engagements. We agree on the scope, deliverables, and disclosure terms before review; private reports stay private unless publication is permitted.
Discuss your audit scope with Panther or inspect the complete portfolio.