Cover Image for Live ZK Attack from a Smart Contract Perspective
Cover Image for Live ZK Attack from a Smart Contract Perspective
Avatar for Hacken Events
Presented by
Hacken Events
Welcome to Hacken’s official Luma page β€” your hub for upcoming events on Web3 security, AI, compliance, and more.
Hosted By

Live ZK Attack from a Smart Contract Perspective

Virtual
Registration
Welcome! To join the event, please register below.
About Event

​Why Zero-Knowledge Apps Keep Getting Hacked

​Live ZK Attack from a Smart Contract Perspective

β€‹πŸ“… June 19th | πŸ•“ 16:00 CET | πŸŽ₯ Live Webinar


​Most ZK exploits don't break the cryptography. They break everything around it.

​Zero-Knowledge applications are sold as privacy-preserving by default. In practice, the math works β€” but the systems leak. Privacy fails before the proof is even verified. Valid proofs get replayed. Commitments built from predictable inputs become identifiers. Public metadata correlates "private" operations.

​In this online webinar, Olesia Bilenka β€” Smart Contract Auditor at Hacken with 150+ audits across EVM and TON ecosystems β€” walks through ZK application security from a smart contract auditor's perspective.

​No SNARK math. No circuit optimization. No cryptography lecture.

​This is an application-layer review of what can actually go wrong around the proof.


​What You'll Learn

β€‹βœ… Build a minimal ZK application mental model β€” the 6-stage flow every auditor needs to internalize: private data β†’ commitment β†’ proof β†’ public inputs β†’ verifier β†’ state update

β€‹βœ… Watch one privacy property break live in code β€” deterministic commitment construction, the attack path from predictable inputs to full deanonymization, and the safer fix pattern

β€‹βœ… Review the 5 core application-layer risk classes:

  • ​Risk 1: Proving the wrong thing

  • ​Risk 2: Nullifier and replay protection bugs

  • ​Risk 3: Public inputs leaking privacy

  • ​Risk 4: Valid proof, wrong context

  • ​Risk 5: Privacy failing outside the contract (frontend, prover, relayer, logs)

β€‹βœ… Turn the model into a practical audit checklist β€” the same 10-point review card Hacken auditors use on day one of any ZK engagement


​Who This Is For

  • ​Smart contract auditors expanding into ZK reviews

  • ​Developers building ZK applications (mixers, rollups, identity, private DeFi, ZK voting)

  • ​Security engineers reviewing privacy-preserving systems

  • ​Protocol founders and tech leads making ZK design decisions

  • ​Researchers and students moving from theory to applied ZK security


​About the Speaker

​Olesia Bilenka | Smart Contract Auditor at Hacken

  • ​4 years of professional smart contract auditing experience

  • ​150+ audits delivered across Solidity (EVM) and FunC (TON)

  • ​Software engineering background with focus on security and blockchain

  • ​Author of technical articles on smart contract security and DeFi protocols


​About Hacken
Hacken is an end-to-end blockchain security and compliance partner for digital assets. Born on blockchain in 2017, Hacken combines deep DLT expertise with enterprise-grade quality, AI-powered offensive security, and globally recognized standards. Trusted by 1,500+ adopters β€” including the European Commission, ADGM, MetaMask, Ethereum Foundation, and Binance β€” Hacken delivers provable assurance for digital-asset systems across security, transparency, and regulatory readiness.

Avatar for Hacken Events
Presented by
Hacken Events
Welcome to Hacken’s official Luma page β€” your hub for upcoming events on Web3 security, AI, compliance, and more.
Hosted By