FKHRLabs
Portfolio / Meridian Finance Audit
Audit

Meridian Finance Audit

Final pre-launch audit for a BNB Chain lending protocol.

0

Critical Found

$0M+

User Funds Protected

0 days

Audit Duration

0

Lines Reviewed

MF
Overview

Context

Meridian Finance was preparing to launch a lending protocol on BNB Chain. Two weeks before launch, they hired us for a final security audit. We found a critical reentrancy vulnerability that would have allowed complete drainage of the lending pool.

Challenge

The vulnerability was non-obvious — it exploited a read-only reentrancy pattern in an integrated external price oracle, not in the lending contract itself. Automated tools missed it. Manual review caught it on day 3.

What We Found

Execution

1 Critical: Read-only reentrancy via oracle integration (full drain PoC)

2 High: Unchecked return values + flash loan price manipulation vector

5 Medium: Access control issues, precision loss, unbounded loops

9 Low/Informational: Gas optimizations, code quality, documentation

Full audit report (PDF + Markdown, 47 pages)

Free re-audit within 48 hours of fixes

Results

Numbers that shipped

1

Critical Found

$30M+

User Funds Protected

4 days

Audit Duration

3,200

Lines Reviewed

SoliditySlitherAderynMythrilFoundry (PoC)BNB Chain
Start a Similar Project