founder @osec_io | web/pwn with @redpwnctf @dicegangctf | prev @dfsec_com

Joined September 2018
64 Photos and videos
Robert Chen retweeted
@QED_Audit is building continuous security for Ethereum. The Ethereum Foundation has engaged QED to build specialized security agents for the Ethereum protocol. Our work combines 10 years of security experience, @DARPA AIxCC-winning autonomous vulnerability discovery, and hands-on protocol security across core blockchain infrastructure. We’ll focus on implementation bugs, spec drift, and consensus-critical issues across Lighthouse, Prysm, Geth, Reth, and libp2p. This builds on our work in continuous protocol security and agent-assisted auditing: * qedaudit.io/blog/tachyon/ * qedaudit.io/blog/commonware/ Excited to contribute to Ethereum’s future.
3
4
34
3,324
Proud to be a founding STRIDE partner
The STRIDE site is live. Explore the framework, assessment process, and what protocols need to qualify ↓
1
28
2,012
1
12
697
Crucible, coverage-guided fuzzing Now ships natively in the Anchor CLI
2
2
37
2,401
$ avm self-update --bleeding-edge $ avm nightly $ anchor fuzz
1
7
844
Great work by @asymmetric_re @Talllo! If you're interested in contributing to Anchor, DMs open
9
578
Out of the frying pan into the frier Noah's one of the few who can do it. Looking forward to a fun challenge with him
While it's been an epic few years at Helium, I couldn't resist the call of another migration-level challenge. Those of you who know me know I can't resist chewing some glass. As such, I am going to join @DriftProtocol team and help them relaunch. Why? Because I genuinely believe that Drift provides a valuable set of primitives to the ecosystem and is worth saving. This is also the best path to funding user recovery; we must build something so useful it can generate the revenue needed for the recovery pool. Tall order. The landscape has shifted. Trust is eroded. Things that are worthwhile are rarely easy, and this is no exception. I fully acknowledge I could be applying for a job at Wendy’s in 6 months. Everyone has forks in the road in their careers, easier paths vs harder paths. I have chosen the harder path at every turn; and it has paid off. Not every swing hits, but even in failure you massively level up your skillset. My focus is on improving the security stance of Drift, getting it relaunched, then turning it into the best perps exchange in existence: First, that means working with STRIDE to ensure we're following the best multisig and opsec practices. I won’t be taking this endeavor alone, the chads at @asymmetric_re and @osec_io have been incredibly helpful and continue to be deeply involved in auditing both new code and new operational practices. Security does not come from one individual, it comes from cultivating a culture of security and having outside professionals continuously verify that work. Second, I am overhauling the codebase (within reason). Over the years it has picked up a large set of features, many of which no longer need to be used. The protocol has solid bones, but tight coupling has led to a buildup of tech debt that is easier to fix during this downtime. Third, I want to build multiple levels of security and circuit breakers into the protocol. DeFi protocols must be structured to limit the ability of a single incident or contagion to create havoc. I will be thinking from the perspective of defense-in-depth; there should be layers of protection to prevent incidents like the April 1st hack. The program should reject suspicious changes even if they come from an operational multisig. Lastly, and more long term, I want Drift to become the most compelling perps exchange on the market. I am very much looking forward to entering the arena that is perps on Solana. It is an honor to be competing with the chads on all the other teams (Phoenix, Bulk, Gm, Imperial, Pacifica, etc). Steel sharpens steel, and I eagerly await the firehose of knowledge over these next few months. Solana needs as many shots on goal as it can get. One (or many) of us will win.
11
1,587
new pfp
I finally did the evidence equipment unboxing at some point I'll edit the 30 minutes of footage cause there's a lot of things I need to blur 💀
1
14
1,139
Robert Chen retweeted
The writeup is here. We achieved RCE in Minecraft Bedrock, turning a 4-byte heap overflow into complete client compromise. @ryaagard details a universal, Bedrock-specific technique for bypassing ASLR and achieving arbitrary read / write primitives.
7
47
314
17,484
Some really cool bugs from @gosasu1!
🚨 Zebra 4.5.0 is out. This release fixes multiple security vulnerabilities across consensus and networking. All node operators should upgrade immediately. zfnd.org/zebra-4-5-0-release…
1
26
3,159
shot, chaser
May 27
1
20
3,367
b6ce80774d53e78c304fd6b11fc6871ead24031aab2a82839367d70c78ce09d8 qemu.c
11
8
111
18,187
new Anchor docs coming soon a quick peek:
1
2
32
2,860
1
1,082
👀new CTF formats? blog post coming soon
2
23
265
26,083
I'm debating @_mixy1 and need some help. Should we make declare_id! optional in Anchor v2? This would:
25% make your life easier
17% not change your life
58% results
12 votes • Final results
2
11
2,551
the real winners of DEFCON quals
May 24
Replying to @NotDeGhost
claudio and gepetto
2
13
132
16,896
see everyone in vegas! thanks to Claudio for carrying me
4
3
105
6,859
how to save 38.2% of Solana CUs:
9
9
91
19,224

first few invites for the delorean client went out today. dm with your use case and i may grant you with access github.com/temporalxyz/delor…
6
1,765