Solidity Treasures
4.7K subscribers
42 photos
6 files
389 links
Useful materials and tools for development on Ethereum.
News proposals @hirama
Download Telegram
Latest Week in Ethereum News; Withdrawals are coming to mainnet on April 12

https://weekinethereumnews.com/week-in-ethereum-news-march-18-2023
โค1
๐Ÿ“ข Security Pills #39 ๐Ÿ’Š

- Polynonce: A tale of a novel ECDSA attack and bitcoin tears
- EVM Part II: The Journey of Smart Contracts from Solidity code to Bytecode
- Why you should probably never sort your Merkle tree's leaves
- Bitcoin address clustering based on multiple heuristic conditions
- Smart Contract Auditing Heuristics

and more!

https://newsletter.securitypills.news/p/security-pills-issue-39
Compared 20 smart contract risk scores between ChatGPT and a manual security review. ChatGPT produced the same result as the manual review 12 times. However, of the 8 misses, 5 of them were cases where ChatGPT incorrectly labeled a high risk asset as low risk, which is the worst case failure: underestimating a risk score is far more detrimental than overestimating.
https://www.coinbase.com/blog/token-security-with-chatgpt
๐Ÿฅฑ4โค3
Forwarded from Anon
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ“ข Security Pills #40 ๐Ÿ’Š

- Hack Analysis: BonqDAO
- Five Myths about Formally Verifying Smart Contracts
- Understanding Block TimeStamp Manipulation
- Encrypted Mempools
- Top 10 Hacking Techniques of 2022
- BitGo Wallet Zero Proof Vulnerability
- Security Vulnerabilities in popular Web3 Transaction Simulation solutions

and more!

https://newsletter.securitypills.news/p/security-pills-issue-40
๐Ÿ‘3๐Ÿ˜2
Unbelievable news for Ethereum enthusiasts! The Ethereum Foundation has just announced that they will be replacing Solidity with a more advanced and user-friendly language called "EtherScript." The most revolutionary feature of this new language is that it allows developers to code their smart contracts using emojis! ๐Ÿš€๐Ÿ˜ฎ

Now, developers can harness the power of their favorite emojis to create complex decentralized applications, making the blockchain more accessible than ever. To commemorate this groundbreaking development, the first 100 EtherScript smart contracts deployed on the Ethereum blockchain today will be awarded an exclusive "AprilFoolsScripter.eth" ERC-20 token.

Join the fun and start coding your smart contracts with EtherScript! Happy April Fools' Day, Ethereum community! ๐ŸŽ‰๐Ÿ˜‚
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ˜30
๐Ÿ“ข Security Pills #41 ๐Ÿ’Š

- Here comes Decipher EVM Puzzles game for all Smart Contract Devs
- Breaking Pedersen Hashes in Practice
- The Most Comprehensive Research Article on zkEVM
- Fuel VM Binary Analysis
- Everything You Wanted to Know About Symbolic Execution for Ethereum Smart Contracts
- The Liquid Global Hack
- Tranchess Liquid Staking Deposit Firstrun Vulnerability Analysis.


and more!

https://newsletter.securitypills.news/p/security-pills-issue-41
๐Ÿ‘3โค2
๐Ÿ“ข Security Pills #42 ๐Ÿ’Š

Articles
- The case for improving crypto wallet security
- How to Ensure Web3 Users are Safe from Zero Transfer Attacks
- Reentrancy Guard 2.0
- How to Consume Chainlink Price Feeds Safely
- How to use Phalcon Debug to dive into a transaction
- How Does Tornado Cash Work

Vulnerabilities & Bug Bounties
- Denial-of-Service Attacks in DeFi: The Balancer-Synthetix Case
- Post Mortem: mev-boost relay incident and related timing issue
- How to almost take over any DNSSEC name on ENS
- Uniswap Vulnerability Disclosure
- How Was Sentiment Exploited?

and more!

https://newsletter.securitypills.news/p/security-pills-issue-42
๐Ÿ‘2