Secure. Resilient. Bulletproof Protocols.

Security engineering for protocols that need to hold under pressure.

Dr. Thomas Pani

About Me

I’m Dr. Thomas Pani, a freelance Web3 security researcher.
I help teams build protocols where failure in production is not an option, especially in these ecosystems:

🦄 Ethereum 🪐 Cosmos 🌟 Stellar

Audits are snapshots. I build security.

I combine deep security expertise with hands-on engineering.
I build and integrate tools, formal specifications, and verification systems that make protocols robust by design.

Fuzzing & Simulation

Custom integrations using Echidna, Medusa, Foundry and cargo-fuzz—built for coverage, reproducibility, and depth.

Formal Verification

Formal verification using tools like Certora Prover or TLA+ to ensure correctness beyond tests.

Applied Research & Technical Writing

Support with protocol research, implementation, paper review and public speaking—all grounded in actual implementation experience.

Security Consulting

Guidance on audit preparation, threat modeling, post-deployment monitoring, and security strategy.

Some languages I work in: 🛠️ Solidity 🦀 Rust 🐹 Go 📐 Lean 🐍 Python 🟦 TypeScript

Selected Technical & Research Contributions

Solarkraft: Runtime Monitor

2024

Developed a low-latency runtime monitor for Soroban smart contracts.

🌟 Stellar Soroban Rust TypeScript Go

Verified Accountability in Ethereum 3SF

2024

Formal modeling of Ethereum 3-slot finality (3SF) consensus, exhaustively verified accountable safety.

🦄 Ethereum (core proto) TLA+ Alloy SMT Python

Independent Security Audits

2022–Now

Independent security reviews on Cantina, Code4rena and Sherlock.
Competitive verification contests with Certora Prover.

🌌 Cairo / StarkNet 🌟 Soroban / Stellar 🦄 Solidity / Ethereum 🧬 Various Ecosystems

Apalache

2022–2024

Symbolic model checking for TLA+ and Quint specs.
Formal Cosmos ecosystem specs.

🧬 Various 🪐 Cosmos TLA+ Formal Verification

Quint

2022–2024

Language and tooling for writing formal specifications in modern syntax.

🧬 Various Quint TLA+ Simulation Language Tooling

Tired of Big Firm Overhead or the Commitment of a Full-Time Hire? Let's Talk.

Why navigate the overhead of a large firm or the long-term commitment of a full-time hire?
I offer a powerful blend of strategic thinking and hands-on execution, precisely when and where you need it.

💡 Strategic Insight, Practical Execution

I'm not just a researcher; I'm an engineer ready to roll up my sleeves and build the solutions we uncover together.

🚀 Agile and On-Demand

Access expert help exactly when you need it, without the long-term contracts or overhead of traditional options.

💎 Value-Driven and Focused on You

Get the expertise you need without the big firm price tag. I'm committed to finding the right tools and solutions tailored to your specific challenges.

🤝 Solo, But Not Isolated

My strong network of fellow researchers and engineers is an extension of my capabilities, ready to be tapped when needed.

🏆 Direct Accountability, Exceptional Quality

You work directly with me, ensuring a personal commitment to delivering outstanding results.

🗣️ Strong Communicator, Team Integration

While I operate independently, I communicate effectively and integrate well into existing teams.

Impressum

Name:

Dipl.-Ing. Dr.techn. Thomas Pani

Adresse:

𝖧ardeɡgaѕse 65A/Ⳍ/11
𝟣𝟤𝟤𝟢 𝒲𝒾ℯ𝓃
Österreich

Kontakt:

E-Mail: office @ thpani.net
Tel: +𝟦𝟥 𝟨𝟩𝟩 𝟨𝟤𝟦 ৪৪𝟢 𝟦𝟢

Unternehmensgegenstand:

Dienstleistungen in der automatischen Datenverarbeitung und Informationstechnik

UID-Nummer:

ATU80152237

Mitgliedschaften:

Mitglied der WKO, WKW

Aufsichtsbehörde / Gewerbebehörde:

Magistratisches Bezirksamt Wien 22

Anwendbare Rechtsvorschriften:

Gewerbeordnung (www.ris.bka.gv.at)

Online-Streitbeilegung:

Verbraucher haben die Möglichkeit, Beschwerden an die Online-Streitbeilegungsplattform der EU zu richten:
http://ec.europa.eu/odr

Work With Me

I take on a small number of high-leverage projects where security is part of system design—not bolted on at the end.