en

Web3 Project Random Walk: Smart Contract Audit

Client:
Random Walk - Web3 developer creating original design projects
Industry:
Blockchain, Betting, NFT
Focus:
Smart contract security verification before launch on Polygon mainnet
Main challenge:
Full audit of 4 smart contracts - independent code review within 5 days
Market:
International
Services provided:
Smart contract audit (White-Box source code analysis)
 
Key Takeaways
  • Secure launch on Polygon mainnet ensured within 5 days
  • Risk level reduced from medium to minimal
  • Project protected from 99% of known vulnerabilities
  • 4 smart contracts audited and 9 threats identified
  • Retesting conducted after vulnerabilities were fixed
  • 4
    Smart contracts audited
    9
    Vulnerabilities identified
    5
    Days — audit duration
    Web3 Project Random Walk: Smart Contract Audit
    With only 5 days left before the project release, there was still no full confidence in the code’s security. Therefore, Random Walk, the smart contract developer, requested a comprehensive audit of the contracts from independent experts. Datami quickly reviewed the code, processes, and transactions and, as this case study shows, identified 9 vulnerabilities.

    Random Walk is an independent Web3 developer who creates smart contracts for generating unique NFT images with an engaging art style for players placing bets in cryptocurrency.

    Although the business operates in an unregulated sector, its specifics require heightened attention to security: once launched on the blockchain, vulnerabilities can no longer be fixed, and even minor weaknesses in the code can lead to financial and reputational losses.

    Objectives and challenges
    The client approached Datami to conduct an independent audit of smart contracts: within the shortest possible time - 5 days - it was necessary to identify all vulnerabilities and perform a full review of the code, processes, and transactions before the project’s scheduled launch date.

    The client also expected to receive a report with results and recommendations, required for deployment on the Polygon mainnet.
     
    • Verify the security of 4 smart contracts within tight deadlines
    • Identify and document all potential vulnerabilities
    • Propose solutions to eliminate threats and perform retesting
    icon
    Manual udit
    Review of documentation, code, and contract logic to identify errors and vulnerabilities.
    icon
    Automated analysis
    White-Box testing using specialized tools and transaction simulations.
    icon
    Reporting and control
    Final report on identified issues and recommendations for their resolution. Retesting after fixes.
    Oup approach

    For the Random Walk smart contract audit, the Datami team applied a White-box approach. We combined dynamic on-chain testing with static code analysis in a simulated environment, which allowed us to detect both common and hidden vulnerabilities in advance.

    During the project, we used tools such as MythX, Manticore, Oyente, Slither, SolHint, Cloc, Remix, Ropsten testnet, as well as manual line-by-line code review to achieve maximum accuracy.

    White-box
    White-box
    Audit strategy with full access to source code for in-depth smart contract security analysis
    Key project stages

    The work on the Random Walk project consisted of several key stages. We prepared a testing environment, performed a full code review using different methods, and after fixes conducted a retest to ensure that vulnerabilities were eliminated and security was confirmed before launch on the Polygon mainnet.

    Thanks to well-organized processes, the audit was carried out as quickly as possible while maintaining quality standards.

    • Preparation for audit
      Analysis of documentation and specifications, creation of test versions of smart contracts in the Remix environment, and deployment on Ropsten.
    • Smart contract audit
      Combination of dynamic analysis in testnet, static automated code scanning, and manual line-by-line review of source code.
    • Final report and retest
      Preparation of a report with results and recommendations for eliminating vulnerabilities. Retesting after issues were fixed.
    How we can help you?

    Every cybersecurity case study we solve involves deep analysis, tailored solutions, and measurable results.
    Datami has already helped over 600 companies strengthen their digital defenses — and we can do the same for your business.
    Ready to take action?

    Let’s start with a free consultation!
    Smart contract audit results
    Smart contract audit results

    Within 5 days, the Datami team audited and prepared for release an NFT generator smart contract, a marketplace smart contract for token trading, a betting contract, and an ERC20 token smart contract.

    As a result, 1 medium, 3 low, and 5 informational vulnerabilities were found. In particular, the audit revealed the absence of double-checking the recipient address status for crypto assets and the possibility of withdrawing rewards bypassing the smart contract rules. These issues were fixed within 3 days.

    After implementing the recommended changes, the retest confirmed that the Web3 solutions met security standards. The client received:

    • a report on the results of the work performed;

    • a clear picture of smart contract security;

    • recommendations for improving code security;

    • risk reduction from medium to minimal level;

    • protection against 99% of known vulnerabilities.

    All project goals were achieved, and the Random Walk developer successfully launched its solutions on Polygon Mainnet.

    Our certificates
    Key project results

    Blockchain does not forgive mistakes. Sometimes a single vulnerability is enough for attackers to deprive the owner of all assets and destroy user trust not only in the new smart contract but also in the developer’s other projects.

    This case study demonstrates the importance of an independent smart contract audit before launch: thanks to the early detection of 9 vulnerabilities, Random Walk successfully fixed the code before release and left hackers with no chance of success.

    Category
    Before the project
    After implementation
    Security level
    Medium
    High, resistant to 99% of known threats
    Threat level
    Medium
    Minimal
    Vulnerabilities
    Unknown
    9 non-critical issues identified
    Compliance with security standards
    Not confirmed
    Yes
    More success stories with Datami
    Browse other project case studies
    Smart Contract Audit of a Web3 Company

    Smart Contract Audit of a Web3 Company

    • The product was prepared for a secure market launch.
    • The risk was reduced from high to minimal.
    Services:
    Smart contract audit (White-box source code analysis)
    Sep 13, 2025
    Smart Contract Audit for a Blockchain Solution

    Smart Contract Audit for a Blockchain Solution

    • Eliminated up to 99% of known threats at the time of the audit
    • Provided an audit report for exchange certification
    Services:
     
    Sep 12, 2025
    DDoS Protection and 24/7 Cyber Monitoring

    DDoS Protection and 24/7 Cyber Monitoring

    • Implemented the DataGuard solution based on Cloudflare to protect the website
    • Established reliable protection against DDoS attacks and bot traffic
    Services:
    Implementation of DataGuard and Cloudflare, 24/7 monitoring
    Aug 8, 2025
    Security image
    Ready to assess your project's security?
    Contact Datami — we’ll help you identify risks, strengthen your cybersecurity, and confidently pass certification.
    Datami articles
    Microsoft enables email bombing protection Datami Newsroom
    Datami Newsroom

    Microsoft enables email bombing protection

    Microsoft announced a new update to Defender for Office 365 that automatically detects and blocks email bombing attacks. The rollout started in June, and most users will receive the feature by mid-July 2025.

    Sep 12, 2025 3 min
    Cloudflare Repelled a Record DDoS Attack of 11.5 Tbit/s Datami Newsroom
    Datami Newsroom

    Cloudflare Repelled a Record DDoS Attack of 11.5 Tbit/s

    Cloudflare reported that it stopped the most powerful UDP flood DDoS attack aimed at exhausting system resources. In 35 seconds, the attackers flooded the company with traffic at 11.5 Tbit/s.

    Sep 5, 2025 2 min
    The Myth of HTTPS Reliability: How Encryption Can Mislead Users Datami Newsroom
    Datami Newsroom

    The Myth of HTTPS Reliability: How Encryption Can Mislead Users

    Among internet users, a long-standing myth has taken hold: if a website has the HTTPS mark - that is, a padlock in the address bar and the letter S after “http” - it means the resource is safe and trustworthy. But in reality, the situation is much more co

    Sep 3, 2025 3 min
    Order a free consultation
    We value your privacy
    We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies. Cookie policy