Recently Posted
CredShields Blog
Latest articles
SOC 2 Penetration Testing: What You Should Expect Before An Audit
A SOC 2 report makes one guarantee to your customers: The data they give you is secure, and...
The wp2shell Crisis: Why This WordPress Core RCE Changes the Timeline for Enterprise Defense
The WordPress ecosystem is in the midst of its worst security crisis in almost a decade. wp2shell, a...
CVE-2026-10753: A Broken Access Control Flaw CredShields Found in Google’s Site Kit
An editor level user with dashboard sharing access could change a sitewide setting through a REST API endpoint...
What Makes Daml Different: A Security Perspective
If you work in web3 security, your mental model of smart contract risk was almost certainly built on...
Incident Report: Kelp DAO rsETH Bridge Exploit
Incident: Kelp DAO rsETH bridge, April 18 2026, 17:35 UTC An attacker pulled 116,500 rsETH roughly $292M, about...
5 Common Daml Authorization Mistakes
Daml’s authorization model is genuinely one of the better things about it. Solidity makes you bolt onaccess control...
CredShields Joins the Canton Network as an Official Audit Partner
CredShields has officially joined the Canton Network as an Audit Partner, bringing smart contract security, AI-powered risk detection,...
CredShields Partners with NayaOne to Bring Smart Contract Security to Financial Institutions
We are proud to announced a strategic partnership with NayaOne, the financial technology sandbox platform used by banks...
Drift Protocol: Incident Post-Mortem
On April 1, 2026, attackers drained approximately $285 million in user assets from Drift Protocol, the largest decentralized...
Axios 1.14.1 Security Alert: Supply Chain Attack & Remediation Guide
⚠️ Critical Alert: axios 1.14.1 is a maliciously compromised package. It’s an active supply chain attack. Here’s everything...