Top 5 most powerful security life hacks i've discovered.
I constantly practice to improve my mental process.
Share what helps you to work efficiently. Drop the comment below 👇
Are you "finding" bugs, or are you "not missing them" ?
(3min read)
Last year I did a couple of experiments to help me find the skills needed to get better.
Some of those experiments focused on speed, others on patters, but this one was focused on understanding and…
Pashov Audit Group security researcher internship coming soon. Learn by doing, 100% practice. Real audits, real projects.
Like/RT this post if you'd be interested in this. There will be lots of slots, I've thought of a scalable model to do this right, full announcement soon🫡
Doing `forge coverage --report lcov` and then using the Coverage Gutters VS code extension to colour out the non-tested source code can really help you find more bugs - I personally have found security vulnerabilities this way
(example code in screenshot is JS, not Solidity)
100 @cantinaxyz invite codes?! 🤯
Yes, it's real.
First 100 to register for the $100k formal verification part of the $1.25M @eulerfinance contest get a code.
✨ Retweet this tweet for bonus points.
It's that simple.
certora.com/contests/euler
One of the smartest and highest ROI things you can do as a dev/builder is to spend 3-4 hrs per week reading similar protocols' security audit reports
You will very quickly gain deep understanding of those products, their problems, attack vectors and how to patch vulnerabilities
I have a couple more days before diving into a competition.
This is how I decided to invest my time away from auditing.
1. Open C4 365-day leaderboard
2. Open @SoloditOfficial and start typing all those names from the leaderboard
📌I'm using the following filters - e.g solo…
It's now clear that EIP-3074 is complex and most people do not understand it.
Here is one of the best resources on the it and how it integrates with other AA-related EIPs, written by the founder of Ambire, a web3 smart wallet🫡
blog.ambire.com/eip-3074-expla…
The only beginner roadmap I will ever post (important learning advice at the end):
I've been getting too many requests for it in DMs, so here it is. (All resource links provided at the bottom)
Step 1. Learn Solidity + how Ethereum works. I did the Cyfrin Updraft Foundry course.…
One of the quickest ways to learn anything is to try it.
Smart Contracts:
- I kept writing solidity & vyper
Running validators & nodes:
- I kept running different kinds of nodes
Audits:
- I sat my ass down and screamed at my computer for days until I found bugs
Stay curious
Dacian told me on a call:
"Getting started, I studied 200 issues on Solodit that had to do with precision loss - now I understand precision loss. Then, I studied 200 integer overflow issues, and now understand integer overflow."
Your auditing alpha is here: "hard work"
Welcome... to the new largest competition in history with @eulerfinance!
💰 $1,250,000 USDC
🗓️ May 20th - June 17th
📍 @cantinaxyz
Invite only. Don't have one? Details below:
ETH vs WETH vs stETH vs WstETH🚀
ETH - The native cryptocurrency of the Ethereum blockchain. Used for various purposes, like transferring value, paying fees, and calling smart contracts.
WETH (Wrapped Ethereum) - Tokenized ETH for ERC-20 compatibility. Ideal for decentralized…
11 Followers 279 FollowingPassionate about Blockchain, web3, & AI. Exploring 3D Art with Unreal. #Solidity, #Anchor & FrontEnd developer. @GemQuestSol team's dev
40K Followers 472 FollowingBuilt an AI study note tool → 320k users, $22K/month 🤙 https://t.co/rNhDgb5YRP, Learn how I market my app all organic 👉 https://t.co/q7hc6iXfjZ → $2.5k/month
1.4M Followers 1K FollowingBuilding @EurekaLabsAI. Previously Director of AI @ Tesla, founding team @ OpenAI, CS231n/PhD @ Stanford. I like to train large deep neural nets.
514 Followers 985 FollowingFather and husband
Ex-concert promoter
Discovered 30+ H/M vulnerabilities in public security contests
I'm currently doing the #RoadToWeb3SecurityJobChallenge
22K Followers 121 FollowingMaster math 4x more efficiently than a traditional classroom. Individualized, adaptive, AI-powered and fully automated.
Accredited courses 4th grade-University.
1K Followers 316 FollowingWeb3 security researcher & auditor.
DM for audits.
"I am a great believer in luck, and I find the harder I work, the more I have of it."
783K Followers 0 FollowingMy team uses this account now. Find me on https://t.co/xXqqqjq7Mt or https://t.co/DrzRPDF6ug
#Bitcoin & Open Blockchains, since 2012.
Author of 6 books.
1K Followers 259 FollowingSecurity Researcher | Resident at @cantinaxyz | From math to breaking Web3 with invariants
🐾 Occasionally just a cat staring at DeFi chaos
129K Followers 4K Followingethereum localist, DAO cartographer, EVM whisperer, shitpost artist + chaos magician @ @allo_capital/@gitcoin. i spin bits for fun/profit watchout 4 my megabyte
15K Followers 1K FollowingHacking all the things since 1997 • @PwnieAwards Winner • Created Mythril • Hunting Bugs for @Spearbit • AI Research Lead @SherlockDefi