Todorov

691 posts

Todorov

Todorov

@0xTodorov

Katılım Ekim 2021
682 Takip Edilen1.8K Takipçiler
Football Rankings
Football Rankings@FootRankings·
✅ TWO CLUBS confirmed their seeding positions in the 2026/27 Champions League - QR2: 🇷🇸 Crvena zvezda, winning title in Serbia 🇭🇷 Dinamo Zagreb, winning title in Croatia ➡️ You can check all the % chances, and complete qualifying projections at our Page (link in bio).
Football Rankings tweet media
English
4
7
126
16.5K
pashov
pashov@pashov·
I made $500 and am donating it to a random person who retweets this and comments below✌️ Found an issue related to using `ERC20::approve` - it always reverts with USDT on Ethereum mainnet (no `bool` returned). Use `SafeERC20`'s `forceApprove` method by OpenZeppelin instead🫡
pashov@pashov

I’m betting $500 that I will find at least a single Medium/High severity issue in your Solidity protocol’s code in 24hrs Try me, weak devs, this will be the easiest cash ever😈

English
250
194
284
62K
Todorov
Todorov@0xTodorov·
EIP-2535 Diamonds, key features and components: 👇🏻🧵 1. A single address with the functionality of multiple contracts (facets) that are independent from each other but can share internal functions, libraries and state variables 2. Diamonds can be any size, solves the 24KB limit
English
3
0
8
408
Todorov
Todorov@0xTodorov·
Setting personal goals for the month ,for a quarter and for the year is a mandatory concept in every business and Web 3 security is not an exception. Set your goals, analyze how to achieve them, what are you missing and why?🎯🤔
English
1
0
16
1.1K
Todorov
Todorov@0xTodorov·
@WangAudit I Agree, this aspect is even more important. ✅
English
0
0
1
23
Wang Security
Wang Security@WangSecurity_·
@0xTodorov Another point I would add here is to write a clean code. Panoptic, which holds a contest on C4 now, has drawn schemes in their code, and it's far easier to understand how they use functions and store variables.
English
1
0
1
48
Todorov
Todorov@0xTodorov·
Tip for the developers: Try to create clear and meaningful documentation for your project. This could save your time later and the endless infrastructure-oriented questions during the audit. In addition, by doing that you will help the auditors to do their job faster. 🫡
English
1
0
7
581
Todorov
Todorov@0xTodorov·
@Saedeh57 At overall, the standard is fine-tuned a lot in the last 2 years, but it has complex nature as every upgradable project, which increases the chance for potential bugs. I can recommend you this short article, there you can find some security advices: eip2535diamonds.substack.com/p/diamond-upgr…
English
0
0
1
18
saedeh.eth
saedeh.eth@Saedeh57·
@0xTodorov Interesting that I was working on Diamond contracts in the past few days. How do you see them from the security aspect?
English
1
0
0
23
Todorov
Todorov@0xTodorov·
5. Save gas by converting external functions to internal . This done by sharing internal functions between facets. 6. Ability to develop and improve an application over time with an upgradeable diamond and then make it immutable and trustless if desired.
English
0
0
0
209
Todorov
Todorov@0xTodorov·
3. Diamonds can be upgraded without having to redeploy existing functionality. Parts of a diamond can be added/replaced/removed while leaving other parts alone. 4. Diamonds can be created from already deployed, existing onchain contracts.
English
1
0
0
227
Todorov
Todorov@0xTodorov·
Some common concerns about MEV: 1. Front-running and unfair advantage for the miners 2.User experience and trust 3. Market Manipulation (by reordering transactions)
English
0
0
2
294
Todorov
Todorov@0xTodorov·
MEV has become a significant topic of discussion and concern in the Web3 community due to its impact on the decentralized systems. Because of that it's highly for every researcher to master it. Link below can help you for that👇🏻 github.com/0xalpharush/aw…
English
2
8
81
6.9K
Todorov
Todorov@0xTodorov·
@WangAudit To be validated, one problem should be explained clear, if someone cannot explain the issue in most cases that’s because he didn’t understand the root cause.
English
0
0
1
32
Wang Security
Wang Security@WangSecurity_·
@0xTodorov Knowing this issues and actually understanding them can lead to finding good bugs. I've recently read a bug from 0x52 who reported the problem with USDC in a real case with a solution, and it was a unique. Hope no one submits bugs like "using USDC and USDT can cause problems".
English
1
0
1
73
Todorov
Todorov@0xTodorov·
Tokens with non-standard decimal values can pose risks to smart contracts. For instance, tokens like YAM-V2 with 24 decimals may trigger unexpected reverts due to overflow, introducing a liveness risk to the contract. On the other hand, tokens with low decimals, such as USDC (6 decimals) or Gemini USD (2 decimals), can result in more significant precision loss than anticipated when handling these tokens, adding another layer of complexity to contract interactions. Developers should carefully account for these decimal variations to ensure the robustness of their smart contracts.
English
1
1
10
1.1K
Todorov
Todorov@0xTodorov·
@HollaWaldfee100 Inspirational, congrats👏🏻, if I may ask, how much time you put in Aloe to achieve the 1st place there?
English
1
0
1
281
Todorov
Todorov@0xTodorov·
Staking protocols have a wide range of vulnerable spots, including but not limited to withdrawal mechanisms and the duration of the stake. In this article, you can find more information and to use it as a checklist when reviewing such protocols.👇🏻 blog.quillaudits.com/2023/03/10/gui…
English
1
4
27
2.5K