
Alex G. ∎
97 posts

Alex G. ∎
@AlexGluk64
Co-founder & CEO @the_matter_labs / Building @zksync / Freedom & tech maximalist







The Privacy Pools idea is a bad for three reasons. 1. It is an attempt to comply with the principle of Guilty Until Proven Innocent. 2. It doesn’t provide privacy for normal users. 3. Zcash works and we should learn from it. ⤵

Tune in to hear how @vladbochok1 casually found a bug in OpenZeppelin library while working as a security engineer at @zksync ! More of what we discussed: ⭕️ Rollups Basics Explained ⭕️ Becoming More Security Minded: Tips for Improving Your Project ⭕️ Secure System Design: Unifying Efforts for Better Protection of Protocols ⭕️ zKSync: A Holistic Approach to Security 🔷 And much more -> link in bio. 🕒 Timestamps: 00:00 Intro - Getting hired at zkSync 07:08 Transitioning from developer to security researcher 13:15 Difference between zKSync and other layer two's 31:09 What is a zero knowledge proof 36:07 Account Abstraction in Ethereum vs zkSync 41:53 Casually Finding a bug in OpenZeppelin Library 44:11 To Build Or To Break 52:14 Switching from builder mentality to breaker mentality 55:08 Hacking in groups 55:59 Holistic Security vs Contests and Bounties

📢 Mainnet upgrade for block.timestamp, block.number and blockhash is planned to start at 10:00 UTC today! ℹ️ We'll start with roughly 1 virtual block per 60 L2 miniblocks 👉 Join the GitHub Discussion for latest updates github.com/zkSync-Communi…

The entire Starknet core stack is now open-source🤯

Data Availability is by far the most confusing term we ever came up with. Data Publishing + Data Storage are better terms that are more intuitive. DA = Data Publishing, not Data Storage. Here are few facts that you may be unaware of: 🧵👇


Is this enough to satisfy the DOJ's bar for compliance? Note that Tornado Cash *had* a compliance tool that allowed any user to prove their chain of custody to a third party, such as to an exchange or law enforcement. They also blocked sanctioned addresses from the frontend.

1/ New privacy paper with @VitalikButerin, Jacob Illum (@chainalysis), @mat_nadler, @fschaer! papers.ssrn.com/sol3/papers.cf… We explored new compliance opportunities made possible by privacypools.com, where users can provably dissociate from illicit funds. story below 🧵👇



Hyperchains are fully customisable @zksync instances that run in parallel & communicate with each other via trustless bridges. @gluk64 discusses the hyperchain architecture and highlights the importance of sharing the same ZKP circuits. Entire episode👇 epicenter.tv/episodes/507
