Found a live bug in EigenLayer (this was a few days before the cantina contest). It was discovered during reviewing the offchain sidecar rewards calculation.
I wrote a blog post about an interesting edge case that we discovered in @eigenlayer 's slashing code during an audit.
We *just* missed the end of the EigenLayer competition on @cantinaxyz , but it should still be a good read. 😉
blog.sigmaprime.io/eigenlayer-sla…
I wrote a blog post about an interesting edge case that we discovered in @eigenlayer 's slashing code during an audit.
We *just* missed the end of the EigenLayer competition on @cantinaxyz , but it should still be a good read. 😉
blog.sigmaprime.io/eigenlayer-sla…
Announcement of an announcement!
Tomorrow at 5pm on the Devcon main stage I will unveil my most ambitious initiative to date. For one year I have been thinking about what a from-scratch redesign of the Ethereum consensus layer could look like. The goal is to suggest a credible…
We're excited to kick off a security review of @Commit_Boost 📻 🔥
This open source software gives transparency and control to validators as block building evolves at warp speed.
We fully support this public good allowing stakers to reclaim control over block construction 🏗️
🌟 Ready for your next big opportunity? Sigma Prime is hiring 🚀
We're looking for talented engineers and security experts to join us in shaping the future of web3.
Whether you're into Rust, Go, Solidity, or DevOps, we've got a role for you!
🧵
Have you ever heard about Hidden Overflow in Solidity? Let's explore this vulnerability and how to prevent it!
Consider this function: It appears to be safe at first glance. However, there is a hidden overflow here. Let's dive in!
Recently took part in a very mission critical audit for the @RenzoProtocol as a Lead Reviewer @sigp_io. I've now wrapped up 3 audits on EigenLayer, and 2 Restakers. I truly believe me and @EllipticPoint have put on an absolute clinic here based on all our previous expertise on…
Recently, I was fortunate enough to be given the opportunity to join @sigp_io, working alongside some of the smartest engineers the blockchain industry has to offer.
One of the first reviews that I took part in there was EigenLayer. You can read our report here.👇
Recently, I was fortunate enough to be given the opportunity to join @sigp_io, working alongside some of the smartest engineers the blockchain industry has to offer.
One of the first reviews that I took part in there was EigenLayer. You can read our report here.👇
Yes, you really can lose all your ETH if you stake with Geth
This article is not an attack on Geth. I have the utmost respect for their team. Unfortunately, through no fault of the @go_ethereum team because of how widely used Geth is we need to have honest conversations about…
TIL that the OpenZeppelin Ownable contract (as of v5.0.0) now requires you to explicitly set the initialOwner in the constructor now, instead of it setting the contract deployer as owner.
github.com/OpenZeppelin/o…
🪐 Introducing Cantina Competitions 🪐
With @MorphoLabs! 🦋
• $200,000
• 2500 SLOC
• Cantina Code assisted (much bigger than you think)
• Invite Code ONLY
A new era for web3 security begins today.
👇No invite code? Huge opportunity below👇
1/ We’re excited to announce the prizes for the @aaveaave Certora community verification contest of the static aToken! After a month-long review, a total of $40K is awarded to the participants via @AaveGrants - congratulations!
So what did we find? 🧵
Wanted to make a smol thread bc I saw even some really good auditors get confused by my post the other day. 🤔
The following code is vulnerable, right? Classic reentrancy? Wrong. 😑
The code is safe with a small asterisk.
👇🧵 (1/12)
🔥Day 29 of #30daysweb3security @Web3SecurityDAO
I completed the 'Selfie' level in DamnVulnerableDeFi.
I also kicked off my learning about formal verification. (thanks to Secureum and the Certora workshop)
Just 1 more day left!! 🔥
238 Followers 681 Following#web3 developer in training • #tech freak • #blockchain lover • Entry-level frontend dev • Tweeting my daily journey and discoveries.
403 Followers 968 FollowingFather and husband
Ex-concert promoter
Discovered 20+ H/M vulnerabilities in public security contests
I'm currently doing the #RoadToWeb3SecurityJobChallenge
225 Followers 289 FollowingSoftware Engineer @sigp_io working on Siren/Lighthouse and other Ethereum tools. Open to code/art collaborations. Member of @developer_dao
0 Followers 49 FollowingYou can rely on us for any kind of services that you need in your business, from digital marketing to website development to consultation.
225 Followers 289 FollowingSoftware Engineer @sigp_io working on Siren/Lighthouse and other Ethereum tools. Open to code/art collaborations. Member of @developer_dao
52K Followers 0 FollowingThe EF is a non-profit that supports Ethereum. We work alongside the wider ecosystem to improve the protocol, grow our community, and advocate for Ethereum.
5K Followers 512 Following@ethereum protocol support @ethereumfndn
// supporting the core development process
prev exec direc @ethstaker
// decentralization / privacy / open source maxi
2K Followers 545 Followingi find bugs or use tools to find bugs. climber, reader. find me, probably hiding on, under a rock, or perhaps on a mountain. | prev @trailofbits
89K Followers 902 FollowingThe dark web of DeFi — building critical infrastructure for crypto intelligence. TG: https://t.co/EPZjOTVti8 - FR : rektFR https://t.co/yUWfgLsgw9
345K Followers 169 FollowingProtocol launchpad: unified (re)staking, based rollup backbone & plug-and-play composability. Spin up your protocol fast @puffer_unifi @puffer_unifiAVS
9K Followers 1K Followingincoming phd student @princeton computer science;
grocery store sushi aficionado;
co ➝ ma ➝ ny ➝ nj;
(cover photo Justin Gerard's "Morgoth and the Silmarils")