Back to Blog

Building a Secure Stablecoin Payment Network: BlockSec Partners with Morph

Code Auditing
March 18, 2026
3 min read
Key Insights
  • BlockSec partners with Morph as official audit partner in the $150M Morph Payment Accelerator to deliver institutional-grade security for global stablecoin payments.

  • Coverage includes smart contract audits, infrastructure audits, and penetration testi

BlockSec and Morph join forces to establish a secure, institutional-grade foundation for global stablecoin payments, bringing top-tier security infrastructure to the Morph Payment Accelerator.

BlockSec is thrilled to announce our partnership with Morph as an official audit partner for the Morph Payment Accelerator. As payment companies and financial institutions increasingly transition to onchain settlement, the infrastructure supporting these massive capital flows must be bulletproof. Real volume and real user funds demand real security.

That is why we are excited to announce our strategic partnership with Morph. By joining the $150 million Morph Payment Accelerator as an official audit partner, BlockSec is bringing institutional-grade security to the forefront of the stablecoin payment ecosystem.

Best Security Auditor for Web3

Validate design, code, and business logic before launch

Covering smart contact audit, infrastructure audit and pentesting

Securing the Builders in the Morph Ecosystem

Payment projects building on Morph handle real user funds at scale. Whether it is a crypto card issuer, a cross-border remittance platform, or a merchant payment gateway, every product in the Morph ecosystem carries the same responsibility: keeping funds safe from the moment a contract is deployed to the moment a transaction settles.

BlockSec's role in this partnership is straightforward: serve as the security layer for payment builders in the Morph ecosystem. We work directly with these projects to identify vulnerabilities before they go live, stress-test their infrastructure against real-world attack scenarios, and monitor their systems continuously after launch.

Our goal is simple—give every payment team building on Morph the confidence to ship fast, knowing security is covered.

Empowering the Morph Payment Accelerator

The Morph Payment Accelerator is designed to incentivize meaningful, onchain stablecoin payment activity. To support this mission and lower the barrier to enterprise-grade security, BlockSec is offering a 20% discount on audit services exclusively for Payment Accelerator participants.

By integrating BlockSec's expertise, payment platforms building on Morph gain access to:

  • Smart Contract Audits: Rigorous, proactive code reviews to eliminate vulnerabilities before products go live.
  • Penetration Testing: Advanced simulations of real-world attacks to ensure infrastructure resilience against sophisticated threats.

This partnership allows payment teams to focus on what they do best—building innovative products and expanding distribution—while we handle the complex underlying security infrastructure.

Scaling Secure Onchain Commerce

As stablecoin activity moves from early adoption to sustained, institutional usage, collaboration across the ecosystem is more important than ever. Morph and BlockSec share a unified vision: building a payment infrastructure that can operate at a global scale without ever compromising on security.

We are proud to work alongside Morph to set a new standard for secure onchain payments. As the Morph ecosystem grows, our commitment to security will serve as a competitive advantage for every project building within the network.

Eligible projects in the Morph Payment Accelerator can reach out to us directly to claim their exclusive discount and begin the audit process.


About BlockSec

BlockSec is a full-stack blockchain security and crypto compliance provider. We build products and services that help customers to perform code audit (including smart contracts, blockchain and wallets), intercept attacks in real time, analyze incidents, trace illicit funds, and meet AML/CFT obligations, across the full lifecycle of protocols and platforms.

BlockSec has published multiple blockchain security papers in prestigious conferences, reported several zero-day attacks of DeFi applications, blocked multiple hacks to rescue more than 20 million dollars, and secured billions of cryptocurrencies.

Visit BlockSec | Read the Morph Announcement

Ready to secure your payment infrastructure? Contact us today to get started.

Sign up for the latest updates
COLDCARD Incident: When a Wallet's "Random" Seed Wasn't Random
Security Insights

COLDCARD Incident: When a Wallet's "Random" Seed Wasn't Random

A silent build-and-integration bug in COLDCARD firmware routed Bitcoin seed generation onto a software RNG fallback, whose weak randomness left wallet seeds recoverable offline. Because the weakness is in the seed itself, a firmware update cannot undo it; verified sweeps reached 1,405 BTC (~$91M) by 7 August 2026, with private-channel estimates as high as 2,055 BTC.

~$88M Lost: COLDCARD & LULA Exploits | BlockSec Weekly
Security Insights

~$88M Lost: COLDCARD & LULA Exploits | BlockSec Weekly

During the week of July 27 to August 2, 2026, two notable security incidents caused roughly $88M in losses across Bitcoin and BNB Chain. The highlighted COLDCARD incident was a hardware-wallet firmware entropy failure: a build guard that checked whether an RNG configuration macro existed rather than whether it was enabled routed seed generation to a deterministic software fallback, enabling an attacker to recover affected seeds and sweep at least 1,370 BTC (~$88M) across a series of on-chain waves. The LULA token on BNB Chain lost ~$578K to a business-logic flaw where an attacker-reachable path could trigger its privileged `recycle()` function, pulling LULA out of a PancakeSwap V2 pair, resyncing its reserves to the manipulated balance, and draining its liquidity.

Newsletter - July 2026
Security Insights

Newsletter - July 2026

July 2026's three largest DeFi incidents totaled approximately $67.9M in losses across Arbitrum and Solana. AFX Trade lost ~$24.15M after a supply chain attack compromised validator signing authority. Ostium's OLP vault was drained of ~$23.75M through compromised oracle infrastructure that submitted attacker-controlled prices. BonkDAO lost ~$20M when an attacker spent $4.4M to acquire enough voting power to pass a malicious treasury transfer with no timelock. All three incidents demonstrate that a protocol's security boundary extends far beyond smart contract code.

Best Security Auditor for Web3

Validate design, code, and business logic before launch. Aligned with the highest industry security standards.

BlockSec Audit