pashov

8.4K posts

pashov banner
pashov

pashov

@pashov

Security audits @PashovAuditGrp Angel investing @PashovCapital

Katılım Temmuz 2022
1.9K Takip Edilen41.8K Takipçiler
Sabitlenmiş Tweet
pashov
pashov@pashov·
🚨Ethereum Developers: you can now install your first AI Auditor in 1 minute - fully autonomous, available 24/7, with multiple sub-agent helpers. Open Source. FREE to use (with your AI model) and already finding vulnerabilities in smart contracts. Link below🫡
pashov tweet media
English
175
259
1.4K
182.3K
Contract Level
Contract Level@contractlevel·
@pashov solidity-auditor - github.com/pashov/skills @0xiehnnkta nemesis - github.com/0xiehnnkta/nem… @p_tsanev plamen - github.com/PlamenTSV/plam… @paradigm evmbenchmark - github.com/paradigmxyz/ev… @trailofbits skills - github.com/trailofbits/sk… trailofbits claude config - github.com/trailofbits/cl… @CDSecurity_io - github.com/CDSecurity/cds… aggregated resources: github.com/pashov/ai-web3… #open-source" target="_blank" rel="nofollow noopener">github.com/marchev/awesom…
English
2
0
3
27
Austin Patkos
Austin Patkos@the_jacked_dev·
@pashov It's funny way way back (2021) I thought like "who's the most talented in the tech space?" Or "what job is the toughest?" I came to the conclusion that it's offensive security because you sort of have to know everything and be self reliant. So I made the decision to go that way
English
1
0
1
21
pashov
pashov@pashov·
Security research is the pinnacle of self-development for tech people It's about being smarter & faster than others. It's about being better than machines. It's about being critically thinking, but not cynical. That's why cybersecurity attracts great people. Be your best self.
English
4
7
69
1.8K
Faiz.eth
Faiz.eth@rajafaaiz127·
@pashov Love this perspective, the hunger to find what others miss is often more valuable than years of experience. I'm in that earlier stage, solid Solidity knowledge, some Rust, and want to build my track record through private audits. How do you typically onboard newer researchers?
English
1
0
1
92
pashov
pashov@pashov·
I've worked with 150+ security researchers - from top tier experts to promising newbies You'd be surprised how many times the "newbies" contribute things no one else does. Motivation makes all the difference. Now looking to make the number 1000. Scaling the fuck up. Stay close.
English
14
3
94
2.5K
pashov
pashov@pashov·
@alexgulamova It's absolutely about motivation. Have you pushed yourself on an audit before?
English
0
0
0
62
Alexandra Gulamova
Alexandra Gulamova@alexgulamova·
@pashov It's not about motivation, it's about fresh view. Newbies don't have stereotypes, haven't seen the same issues thousands times in a row
English
1
0
0
63
pashov
pashov@pashov·
@aua_oo7 Good. Join our Discord. Apply there and let's see
English
1
0
1
35
aua_oo7
aua_oo7@aua_oo7·
@pashov I am doing my best ser in all part, to answer this ser I think the result is very important than word.
English
1
0
1
28
pashov
pashov@pashov·
@BABS96711 Join the Discord. Apply in there. Let's see
English
1
0
1
91
0xBabsAudits
0xBabsAudits@BABS96711·
@pashov Built my own audit methodology focused on eliminating false positives, and shadow audits have confirmed it works in practice. Looking for a trial audit opportunity or even junior role at PAG where I can learn from senior auditors and contribute to securing real DeFi protocols.
English
1
0
1
82
pashov
pashov@pashov·
@aua_oo7 Do you think you are one of these newbies that contribute what no other does
English
2
0
1
74
aua_oo7
aua_oo7@aua_oo7·
@pashov Currently not too much big achievement from money and reward points, I posted all of them on x. From knowledge and experience point I gained more.
English
1
1
2
70
pinkman
pinkman@0xpinkman·
@pashov I'm here for you champ 🏆
English
1
0
1
106
pashov
pashov@pashov·
@georgi91757 Emotional intelligence. Observe, instead of letting get taken over.
English
0
0
1
55
@georgibuilds
@georgibuilds@georgi91757·
@pashov The "critically but not cynically" framing is the most underrated part. Watching myself learn, I notice cynicism creeps in around frustration, when something is hard, the easy emotional out is "this is broken" instead of " I don't understand this yet". Discipline!
English
1
0
3
56
pashov
pashov@pashov·
@aua_oo7 What's the most impressive achievement of yours, one that you are proud of
English
1
0
1
70
aua_oo7
aua_oo7@aua_oo7·
@pashov Smart contract security researching.
English
1
0
1
79
pashov
pashov@pashov·
@aua_oo7 What can you offer on your end?
English
1
0
1
82
aua_oo7
aua_oo7@aua_oo7·
@pashov When will I be counted among those 150+ 😊.
English
1
0
1
164
pashov
pashov@pashov·
Everyone is asking "what to do in web3 security in the AI era" I've been observing multiple masters of web3 security and their AI usage. While everyone starts with just "summarise/explain the codebase", mostly everyone ends up building their own toolings. Tools are usually vibecoded Python & Bash scripts plus Markdown files for the AI. It's packaged expertise. Why would you build such tools? Because they do in 1hr what you did before in 5 days or more. Still, many of the great auditors are not all-in into AI. Many of the top 1% are using A LOT of AI, but their own judgement is still driving the car. Whatever works - that's the right solution. You need to have the correct metrics, KPIs, Key Results or whatever you want to call them. Measure rigorously, constantly and iterate. You must find more and better findings than others, faster. Do what works. Now go🫡
English
12
5
111
4.2K
Dacian
Dacian@DevDacian·
@pashov "Whatever works" is a good answer for the individual, but "whatever scales" is a great answer for the industry. Where we are heading is at least 70-80% of smart contract bugs will be found via autonomous AI scans and human-AI hybrids find the rest (before blackhats).
English
1
0
5
460