OpenZeppelin Solidity Contracts 5.4 just dropped 💥
This release brings standard Account Abstraction primitives, advanced signature schemes (multisignature), interoperability features, and new utilities and data structures.
🧵👇
I'm joining @fund_defi in signing this letter to the White House about protecting the builders of our financial future. Voice your support as well. section1960.defieducationfund.org
A betrayed blockchain expert becomes the ultimate insider threat.
Who truly holds the power, the architects of the system, or those who can break it?
Explore the dark side of Defi with this new work of fiction by Rekt News.
rekt.news/talesfromchain…
We are now 2 days away from Ethereum's Dencun upgrade, the largest fork since the Merge.
Here's a summary of the biggest changes in Dencun and how they'll affect you 🧵:
@solidityauditor process for auditing smart contracts. We will cover what to do before starting an audit, how to read the known issues, and how to find more leads using Discord. We will also discuss the importance of challenging developer assumptions. ☠️
youtube.com/watch?v=74OCML…
Executing whitehacks is hard also for security professionals 🤖
But there are three important rules:
- test and don't change before execution
- execute in a single tx
- execute privately ( reorg 🤞)
Here a starter foundry repo 🫡
github.com/emilianobonass…
Hey, this checklist is pretty cool!
You can totally use it when you’re going through audit reports or even creating new things.
github.com/transmissions1…
CREATE2 opcode usage potential issues/attack vectors:
- deployment griefing by front-running with same `salt` param
- selfdestruct opcode leads to a "metamorphic" contract
- not checking if the returned value is not the zero address (failed deployment)
What else?
Next up: Storage Structs (aka "explicit storage buckets," "Diamond storage," "unstructured storage").
A pattern for preventing layout collisions in upgradeable contracts, seen recently in @radicle Drips and @AstariaXYZ.
mirror.xyz/horsefacts.eth…
(1/13) Introducing: Inevitable Ethereum
A new wiki-style site dedicated to @ethereum, the World Computer. History, finance, computer science, elliptic curve cryptography... everything needed to see the future.
To see what I see: Ethereum is inevitable.
inevitableeth.com
🔥⚒️ PRBMath V3 is live 🔥⚒️
This is the most significant iteration on my Solidity library for advanced fixed-point math.
What's new:
- User defined value types SD59x18 and UD60x18
- Free functions
- Migration to Foundry
- Various optimizations
1/7
github.com/paulrberg/prb-…
For doing your best in any job role, you need to have the right mindset for that job.
My blog post on @viamirror "A White hat hacker mindset: From the eyes of a Smart Contract Auditor" discusses 5 key mindsets for a smart contract auditor.
mirror.xyz/shanzson.eth/j…#web3
if you inspect a transaction which calls an unverified contract, you'll get a best-effort recovery of the original function parameters. works as long as the contract uses the standard abi. no more hand-deciphering calldata!
Immunefi is proud to present the Web3 Security Library, which aims to be the go-to resource for Web3 security.
You can access the repository here: github.com/immunefi-team/…
Keep an eye on the repository as we will regularly update it with new resources 📚
A cross-chain CREATE2 factory is deployed at address 0x4e59b44847b379578588920cA78FbF26c0B4956C on more than 20 blockchains (mainnets and testnets) https://t.co/tU8uQPpuCt
These two ways of transferring ETH below are functionally identical - but there can be surprising difference in gas usage. In fact the call() version can pay approximately three times more in extra gas per 32 bytes of data returned!
1/5
7K Followers 3K FollowingHead of Triaging @immunefi 🛡️⚔️ Crypto, & analog life | Journals, watches, and personal growth | Sharing what works (and what doesn’t)—join the journey.
41 Followers 1K FollowingFather, Husband, Bitcoiner, American. Director of Digital Asset Management @CleanSpark_Inc . Ex Global Macro Tiger Cub. Cypherpunks write code.
2 Followers 172 FollowingRecruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/w4buOUyz7I
2K Followers 5K FollowingWorking on onchain trading @bancor @carbondefixyz | Everything is Awesome!!!
Sometimes blockchain/web3/DeFi, other times EDM 🎶 and random 🧠
172K Followers 282 FollowingBuilding a transparent defi dashboard at @defillama.
Code llama @llamapay_io @sealed_art @smolrefuel
Would rather be right than make money
7K Followers 3K FollowingHead of Triaging @immunefi 🛡️⚔️ Crypto, & analog life | Journals, watches, and personal growth | Sharing what works (and what doesn’t)—join the journey.
8K Followers 85 Followingtech lead @robinhoodapp | ex-@amazonalexa | protected billions in value at @securityOak, @electisec, and more | lackadaisical angel investor
17K Followers 903 FollowingWriting on the intersection of markets, the internet, and culture - @decentralisedco. Nerd for growth-stage shenanigans. Seeding chaos via startups for a living
5K Followers 846 FollowingI like cryptography, long walks on the beach, and novel testing techniques. Engineering Director of the Blockchain team @trailofbits.
298 Followers 118 Followinghttps://t.co/hBU95DZS1N⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
Your AI co-auditor for Web3. Find bugs before hackers do. Code smart. Ship safer.
52K Followers 0 FollowingThe EF is a non-profit that supports Ethereum. We work alongside the wider ecosystem to improve the protocol, grow our community, and advocate for Ethereum.
22K Followers 26 FollowingThe unified liquidity protocol for USDT.
USDT0 brings the largest stablecoin in the world to the most widely adopted blockchains.
Your USDT, Anywhere.
409 Followers 78 FollowingThinking about @yel_finance & @womofi 24/7
I came into this world to leave as a winner. Are you with me ?
Core
https://t.co/PVbkXg6l3D
https://t.co/L57PJIbe17