Move Security Researcher & Sui / Aptos Auditor
I’m Panther, an independent Move security researcher and smart contract auditor working on Sui, Aptos, and Movement. My portfolio includes competitive research, private protocol reviews, and formal verification. Move is my primary focus, with particular depth in lending, perpetuals, prediction markets, and exchange logic.
Sui and Aptos need different security models
On Sui, I trace object ownership, shared objects, capability boundaries, hot-potato requests, package upgrades, and Programmable Transaction Block composition. On Aptos, I examine resource addresses, signer authority, storage access, and the transitions that keep protocol accounting consistent. Both require following value and authority across function boundaries, including paths that abort or return early.
Relevant work and public evidence
In the Aave Aptos contest on Cantina, I placed third with one accepted High and one Medium. The High traced configuration writes and reads to different resource addresses, causing core getters to abort. My private Sui lending work also includes formal-verification contributions using Certora’s Sui Prover; the public notes explain the property and its limits without exposing private reports.
- Aave Aptos: the confirmed Move configuration finding
- Sui lending formal verification with Certora
- Aptos Move Prover research
- Move audit portfolio and engagement roles
- All Move security research
How do I choose a Move auditor for Sui or Aptos?
Look for findings in the same execution model as your protocol, reproducible explanations, and experience with your financial mechanics. A top contest placement is useful evidence, but it does not replace checking scope fit. Ask how the auditor tests PTB composition on Sui or resource and signer boundaries on Aptos, and whether remediation review is included.
Work directly with an independent researcher
Send your ecosystem, repository or documentation, approximate scope, and target dates. I work directly with protocol teams and contribute to security-firm engagements. We agree on the scope, deliverables, and disclosure terms before review; private reports stay private unless publication is permitted.
Discuss your audit scope with Panther or inspect the complete portfolio.