Noah 🎈

17.9K posts

Noah 🎈 banner
Noah 🎈

Noah 🎈

@redacted_noah

Protocol engineering at @helium. Opinions are my own.

San Diego Katılım Mayıs 2021
2.2K Takip Edilen20.5K Takipçiler
Noah 🎈
Noah 🎈@redacted_noah·
@trentdotsol Wow first you took @toly’s GitHub permissions and now you’re coming after technical gibberish? Unreal
English
1
0
2
135
trent.sol
trent.sol@trentdotsol·
periodic reminder that "zero day" means that the vendor has had zero days to patch the vuln. it says nothing about the nature of the vuln. don't get confused by technobabble
English
2
0
21
1.3K
Noah 🎈
Noah 🎈@redacted_noah·
Macros are fun
Noah 🎈 tweet media
English
0
2
25
828
Noah 🎈
Noah 🎈@redacted_noah·
Solana if we had never started using Borsh
Noah 🎈 tweet media
English
12
3
68
12.5K
Edward
Edward@longtilwrong·
@redacted_noah @toly Craziest part of this lore is that borsh was created by the NEAR core team
English
1
0
2
196
fesal
fesal@iamknownasfesal·
@redacted_noah @ikadotxyz clear signing itself is an amazing idea 🫡 i'm just putting it one step further, for all chains, in a zero trust way
English
1
0
5
80
Noah 🎈
Noah 🎈@redacted_noah·
@therealchaseeb I actually wouldn’t be surprised if there’s no more big cycles. Just a slow grind up from here. Institutional money acts as a dampener. Keeps prices higher in a bear, lower in a bull. Shame we have adults in the room with us now 😂
English
2
0
6
216
chase
chase@therealchaseeb·
@redacted_noah Yeah. Any day you could hit a 100x. Now we’re happy with +2% And half of us are trading equities 😭
English
2
0
12
964
chase
chase@therealchaseeb·
This is my 3rd bear market. It is the worst one I’ve experienced. In past years prices went down a lot and 50 of us just made memes and prayed for coins to go up for 2 years. This bear market feels much more brutal even though prices didn’t drop as far for majors (yet). Vibes are horrible. Much more toxicity. And the geopolitical stuff isn’t helping and AI stole a lot of mindshare from a lot of really strong crypto talent. Maybe it’s recency bias, but I don’t think so. I have memories of having a lot of fun during prior bear markets, even with my bags down 99%. It wasn’t fun every day, and it was still painful, but had its moments and memes. Anyways, I guess the silver lining is that crypto is gaining adoption and when we make it out of this, it’s probably gonna be really fucking cool.
English
66
6
273
27.9K
Noah 🎈
Noah 🎈@redacted_noah·
@quantmilkman Spoofed how? The message on the ledger is what gets returned signed to the computer which gets relayed to the contract. Contract will only execute the transaction specified if the message is an exact match. So computer can’t send a fake message to the Ledger or it won’t execute.
English
1
0
0
82
Noah 🎈
Noah 🎈@redacted_noah·
Spoofed in what way? What you’re signing on the ledger is what will happen on chain (if that signature is used, worst a compromised computer could do is not send that message). A compromised computer could send the wrong message to the ledger, but then the signature wouldn’t be valid against the proposal on chain.
English
0
0
0
108
Noah 🎈
Noah 🎈@redacted_noah·
@connan_james I’m pretty excited. To me it’s a way to eliminate the attack vector that North Korea took on drift with virtually no additional operational overhead compared to what they were already doing.
English
2
0
5
201
Noah 🎈
Noah 🎈@redacted_noah·
@zen_llama @fordudesake Oh there's no need to update ledger. It's a novel solution I built using signMessage support. You just signMessage and on-chain verifies the message and executes a templated tx
English
2
0
2
339
Noah 🎈
Noah 🎈@redacted_noah·
I did a *lot* of magic using the super clever zero copy logic they put into quasar. Vecs on Vecs on Vecs inside a zero copy account. Def possible to port but it'd be a lot more code, and a lot more error prone. @deanmlittle and Leo really cooked on this one, now I'm dependent 😂 Either that or Borsh it and Anchor. But you'd spend a lot of CU's and heap on something that needs to CPI. Which isn't great. I guess the question would be, what's the timeline on getting Quasar stable and audited, and do we want this clear msig live before that? Keep in mind this multisig also probably needs to be live with an upgrade authority for a while to address bugs and super necessary features I didn't think of. Remember squads v4 was live for a while before everyone switched.
English
0
0
2
97
Noah 🎈
Noah 🎈@redacted_noah·
I guess I should say, the only way in which the solflare hardware key makes you more secure than a normal solflare hot wallet is that you can't sign txs at will once the device is compromised. You have to wait until the user presents the card to do something naughty. But imo that's not much better than a hot wallet.
English
0
0
0
58
Noah 🎈
Noah 🎈@redacted_noah·
@solflare Yeah, I think the problem is that if your software (where solflare exists) is compromised it doesn't matter whether you have the hardware wallet card.
English
2
0
1
90