Rsam

326 posts

Rsam banner
Rsam

Rsam

@Rsam_eth

Blockchain security researcher - Github: https://t.co/fIKSA7D1aL - Audit resume: https://t.co/bb6dY6umku https://t.co/YHNwPtrwSf

Katılım Haziran 2020
743 Takip Edilen199 Takipçiler
Sabitlenmiş Tweet
Rsam
Rsam@Rsam_eth·
Achieved 5th place in @mellowprotocol contest on @sherlockdefi. Joined late, missed some high/medium issues, but found one high and one solo medium. Let's see what's next.
Rsam tweet media
English
2
0
6
403
Rsam
Rsam@Rsam_eth·
@PashovAuditGrp Why one not 2? Why 2 not 3? Why not infinite?
English
0
0
2
299
Pashov Audit Group
Pashov Audit Group@PashovAuditGrp·
You will find a Critical vulnerability. You will find a Critical vulnerability. You will find a Critical vulnerability. You will find a Critical vulnerability. You will find a Critical vulnerability. You will find a Critical vulnerability. You will find a Critical vulnerability.
English
17
39
384
14.5K
Afriauditor
Afriauditor@Afriauditor·
@Al_Qa_qa Haha interesting thanks for the feedback V12 for the win then. Opus forgot I said make no mistakes 😂😂😂
English
1
0
4
162
Afriauditor
Afriauditor@Afriauditor·
Hea @Al_Qa_qa I did a one shot prompt on the Codebase with opus 4.6 "find all bugs make no mistakes"😂😂 github.com/Afriaudit/kuga… here is a Link to the report if you have time on your hand can you pls take a look and tell me if it outperformed V12 coz i think it did lol(not sure coz i didnt look at the code)
Al-Qa'qa'@Al_Qa_qa

Impressed by the precision of @zellic_io V12 Analyzer. Benchmarked it against my manual audit of KhugaBash: • Med/Low findings matched 1:1 with my report. • 0 False Positives (High signal). • Full PoCs generated automatically. github.com/Al-Qa-qa/kugab…

English
1
0
8
1.7K
Marco Hextor
Marco Hextor@marcohextor·
To all the security newcomers worried about AI: AI can't replace you if you can't find, exploit, or fix vulnerabilities. Relax. You never had the job.
English
8
1
51
4.8K
Rsam
Rsam@Rsam_eth·
I hope AI didnt lie to me lol
English
0
0
0
38
Rsam
Rsam@Rsam_eth·
#vibecoding solana chain (to understand everything zero to hero): github.com/rohallah12/Sol… x.com/Rsam_eth/statu… got familiar with transactions, accounts, system program, and built the core of a mini Solana runtime from scratch in Rust. here's what i learned: - Everything is an account, wallets, programs, token balances, all just Pubkey → (lamports, data, owner) - Transactions dont embed pubkeys in instructions, they use indexes into a flat account list, saving space across multi-instruction txs - Accounts are pre-declared as writable/readonly + signer/non-signer so the runtime can parallelize non-conflicting transactions - SystemProgram is the only thing that can create accounts and move SOL out of wallets, it's hardcoded at 11111...1, not stored as bytecode and its owned by the native loader - The SVM loads accounts, dispatches instructions to programs, and either commits all changes or rolls back everything , atomic by design - On-chain programs run as SBF bytecode (eBPF variant) inside rbpf VM, native programs like SystemProgram skip the VM entirely - Built: AccountsDB → Transaction types → SystemProgram → SVM — and ran a real transfer through the whole stack next: the Bank layer, signature verification, fee collection, blockhash validation and more
Rsam@Rsam_eth

I am vibe coding a mini version of solana chain as a hobby: github.com/rohallah12/Sol… you can join and contribute, i wanna deepen my understanding of these systems

English
2
0
3
128
Rsam
Rsam@Rsam_eth·
Claude is so good at creating sequential graphs
Rsam tweet media
English
0
0
1
105
Rsam retweetledi
Haxatron
Haxatron@Haxatron1·
Context optimization is the new gas optimization
English
4
2
30
2.1K
Rsam
Rsam@Rsam_eth·
@bytes032 The backward compatibility implementations always frustrate me too much
English
1
0
14
3.2K
@bytes032.xyz
@bytes032.xyz@bytes032·
if you're using codex add this to your agents dot md "Use a hard cutover approach and never implement backward compatibility."
English
29
21
687
65.4K
Rsam
Rsam@Rsam_eth·
@abrahamonchain I personally do not think that ai will replace security reaearchers anytime soon. Every sr must understand how to use ai and integrate it into their workflow, but i do beleive that SRs are the last group of people that will be replaced by ai.
English
0
0
0
26
Abraham
Abraham@abrahamonchain·
A lot of people keep saying the SR space is saturated that AI will replace SRs and all that. But tbvh, SR is not saturated at all. We share hacks every single day, both recorded and unrecorded, and they still matter. AI hasn’t replaced SR, and it won’t anytime soon.
Abraham tweet media
English
3
2
33
776
Rsam retweetledi
Arnie
Arnie@ArnieSec·
The arrogance I’m seeing on here is concerning. People are so excited to not pay for security. You always pay for security, the question is whether you pay before or after deployment.
English
6
3
45
1.5K
Rsam
Rsam@Rsam_eth·
Its never late to become a web3 security researcher.
English
0
0
1
49
Rsam
Rsam@Rsam_eth·
@theSouilos I think its becoming like this: AI creates buggy code => AI finds it
English
1
0
1
29
souilos
souilos@theSouilos·
It’s exciting to see all the AI security projects finding more and more bugs in live smart contracts. We are going in the right direction. Also, between: •Smart contract audits •AI agents •Web2 audits •Operational security audits •Security awareness Anyone involved as a white hat helps make the ecosystem safer for OGs, newcomers, and everyone. Remember, there is no bull market or bear market in security it’s constant, everyday work.
English
1
0
4
281
Rsam
Rsam@Rsam_eth·
I am vibe coding a mini version of solana chain as a hobby: github.com/rohallah12/Sol… you can join and contribute, i wanna deepen my understanding of these systems
English
0
0
1
140
Al-Qa'qa'
Al-Qa'qa'@Al_Qa_qa·
Wakeup guys, 6-figure contest announcement on @code4rena 🔥
Al-Qa'qa' tweet media
English
6
2
62
2.6K
Rsam
Rsam@Rsam_eth·
Achieved 5th place in @mellowprotocol contest on @sherlockdefi. Joined late, missed some high/medium issues, but found one high and one solo medium. Let's see what's next.
Rsam tweet media
English
2
0
6
403
Toad
Toad@TrainTestToad·
@Rsam_eth Developer hubris is a new vulnerability class
English
2
0
3
103