Fun

News Feed - 2023-08-01 09:08:00

Tom Blackstone12 hours agoConsenSys releases ‘fuzzing’ tool to test smart contract vulnerabilitiesDiligence Fuzzing lets developers introduce random and invalid data points to find security flaws.5722 Total views3 Total sharesListen to article 0:00NewsJoin us on social networksBlockchain technology firm ConsenSys publicly released its “Diligence Fuzzing” tool for smart contract testing, according to an Aug. 1 announcement. The new tool produces “random and invalid data points” to find vulnerabilities in contracts before they are launched.


Over $2.8 billion was lost in decentralized finance hacks in 2022. According to ConsenSys, these losses are leading developers to embrace more sophisticated testing tools to help find vulnerabilities before attackers do.


The new tool used to be available in a closed beta version, where developers needed to get approval for access. This approval process is no longer necessary as of Aug. 1. Diligence Fuzzing is also now integrated with smart contract toolkit Foundry and features a free version for developers who want to test it out before spending any money.Diligence Fuzzing tutorials. Source: Consensys


Related:Crypto payment gateway CoinsPaid suspects Lazarus Group in $37M hack


In a conversation with Cointelegraph, ConsenSys security services lead Liz Daldalian explained how the tool works in more detail. Developers can annotate their contracts using a machine language called “Scribble,” also developed by ConsenSys. Once they do this, the annotations will be understood by the fuzzing tool. The tool produces “unexpected” inputs so as to test whether the contract can be forced to produce unintended actions.


ConsenSys security researcher Gonçalo Sá said the tool is not a “black box fuzzer.” It does not produce completely random data. Instead, it is a “grey-box fuzzer” that employs an understanding of the program’s current state to reduce the types of data produced, increasing the tool"s efficiency.


Sá has seen developers becoming more interested in fuzzing recently. As Foundry has become more popular, developers have started to use its default black-box fuzzer and have grown accustomed to using it. On the other hand, some users want a more sophisticated fuzzer than the default one, which he argued Diligence Fuzzer could provide. He said:“People are now trying to harness the power of the different types of security tools that they have in their hands. And Foundry [has] a black box fuzzer that is really easy to use. [...] So people now are starting to understand the power of fuzzing. [...] And they are looking for more powerful tools.”


Smart contract hacks have continued to pose a problem for users. Excluding rug pulls and phishing scams, over $471.43 million was lost from Web3 security vulnerabilities in the first half of 2023. Daldalian cautioned that Diligence Fuzzing is not a “silver bullet” that would eliminate all smart contract hacks. However, she argued that it is “one tool in an arsenal that developers can use in order to write more secure smart contracts,” which can at least set the Web3 community on a path to minimize losses from these attacks.# Blockchain# Adoption# Cybersecurity# ConsenSys# Developers# Hacks# DeFiAdd reactionAdd reactionRelated NewsHow to actually spend your Bitcoin, ExplainedAI can be a ‘creative amplifier’ — Grammy chief exec Harvey Mason Jr.Crypto hacks and exploits snatch over $300M in Q2 2023: ReportBug bounties can help secure blockchain networks, but have mixed resultsEra Lend on zkSync exploited for $3.4M in reentrancy attackBNB Smart Chain hit with copycat Vyper attack, $73K exploited

News Feed

Tesla Reveals Bitcoin Holdings Worth $1.3 Billion in Q2, $23 Million BTC Impairment
Tesla Reveals Bitcoin Holdings Worth $1.3 Billion in Q2, $23 Million BTC Impairment Elon Musk’s electric car company, Tesla, is holding bitcoin worth $1.31
Colombian Court Holds Hearing in the Metaverse
Colombian Court Holds Hearing in the Metaverse Colombian courts held one of the first judicial hearings using metaverse tech. María Victoria Quiñones Triana, the magistrate of th
‘Wolf of Wall Street’ Jordan Belfort Says He’d Be Shocked if You Didn’t Make Money Investing in Bitcoin Long Term
"Wolf of Wall Street" Jordan Belfort Says He"d Be Shocked if You Didn"t Make Money Investing in Bitcoin Long Term Jordan Belfort, aka the Wolf of Wall Street, says if you take a th
Musk to Launch ‘Truthgpt,’ Says Microsoft-Backed Chatbot Is Trained to Lie
Musk to Launch ‘Truthgpt,’ Says Microsoft-Backed Chatbot Is Trained to Lie Tech investor Elon Musk intends to develop an artificial intelligence (AI) platform that will be “t
Israeli fintech Kima, Mastercard lab look to develop ‘DeFi credit card’
Derek Andersen6 hours agoIsraeli fintech Kima, Mastercard lab look to develop ‘DeFi credit card’Kima is seeking to bridge traditional and Web3 finance and make the user experience more manageable.5682 Total views2 To
Ethereum Layer-2 Scaling Solution Arbitrum to Launch This Month
Ethereum Layer-2 Scaling Solution Arbitrum to Launch This Month Arbitrum, an Ethereum Layer-2 (L2) scaling solution, announced it would launch its mainnet for us
Ray Salmond9 hours agoProject roadmap or token price — Which is most important?Content creator KryptosChain explains why a project’s roadmap and token price are important to its success, as well as the upgrades to th
Brian Nibley1 hour agoBitcoin miners need BTC price over $98K by the halving — AnalysisTo avoid being in the red, publicly-listed Bitcoin mining companies will need the BTC price to be at least $98,000 by the 2024 halv
IMF urges careful design, slow introduction for Pacific Island digital currencies
Derek Andersen2 hours agoIMF urges careful design, slow introduction for Pacific Island digital currenciesThe island nations have common challenges and widely varying conditions. Just don’t use crypto, the IMF says.610
Russians Own $215 Billion in Crypto Suggests Estimate Attributed to Government
Russians Own $215 Billion in Crypto Suggests Estimate Attributed to Government Russians may own more cryptocurrency than previously thought, a new estimate reportedly used by the g
Solana ‘Still Wants Lower’ As Meme Coins Face A Major Shakeout – Analyst
Este artículo también está disponible en español. Solana has faced significant downward pressure in the past few days, dropping over 15% as the broader crypto market expe
Kazakhstan Shuts Down Over 100 Crypto Mining Farms
Kazakhstan Shuts Down Over 100 Crypto Mining Farms More than 100 crypto farms in Kazakhstan have terminated operations as a result of ongoing inspections of the mining sector. Auth