nisedo

5.4K posts

nisedo banner
nisedo

nisedo

@nisedo_

I stare at smart contracts until one of us breaks @trailofbits | @soliditors 🇫🇷

Katılım Ağustos 2021
2.4K Takip Edilen4.4K Takipçiler
nisedo
nisedo@nisedo_·
@aviggiano how did I miss that? really cool initiative!
English
0
0
0
39
nisedo
nisedo@nisedo_·
I vibe-clauded a fully functional Medusa harness for a 10k+ LOC Solidity codebase what a time to be alive
English
3
0
22
2.6K
nisedo
nisedo@nisedo_·
@msakiart Claude suggested to add this ngl 😅
English
0
0
0
12
Meek
Meek@msakiart·
@nisedo_ I see you have constant values showing in the inlay hints? Didn't have that good to see this use case.
English
1
0
0
12
nisedo
nisedo@nisedo_·
Inlay hints for Solidity function calls, struct construction, and constants 🤩 I've wanted this for ages
nisedo tweet media
English
5
1
16
1.4K
nisedo
nisedo@nisedo_·
@lonelysloth_sec Out of curiosity, do you use Medusa/Echidna when bug hunting?
English
1
0
0
80
LonelySloth
LonelySloth@lonelysloth_sec·
@nisedo_ im not implying medusa isn't good, just like -- you could probably vibe-clone the whole thing instead of just the harness. and maybe add some features relevant to the specific project while you're at it.
English
1
0
1
67
nisedo
nisedo@nisedo_·
@lonelysloth_sec What would you change/improve in Medusa? Please share any feedback you might have!
English
1
0
0
209
Kalis
Kalis@jaczkal·
@nisedo_ could it mean triaging is more difficult?
English
1
0
0
112
nisedo
nisedo@nisedo_·
triager is the new auditor
English
2
0
18
1.2K
Raoul
Raoul@RaoulSaffron·
@nisedo_ Perfect use of AI! Will you share the repo?
English
1
0
1
187
nisedo
nisedo@nisedo_·
@0xKoiner I’ve moved lines around to have everything I need for the screenshot, it’s not a real codebase
English
1
0
1
94
0xKoiner
0xKoiner@0xKoiner·
@nisedo_ There is any possibility of msg.sender will be address(0)? No make any sense first line in fun mintNft
English
1
0
0
87
nisedo
nisedo@nisedo_·
@msakiart nope, I've just vibe-clauded it today I didn't know about your LSP sadly
English
0
0
1
73
Meek
Meek@msakiart·
@nisedo_ is this my lsp 👀?
English
2
0
0
26
nisedo
nisedo@nisedo_·
Great article on prompting and scaffolding techniques for vulnerability research. We’ve been iterating on many of these for months at @trailofbits, and I can confirm they significantly improve model outputs. > Invert the question. Instead of "is this code secure?", ask "how would you break this?" > Ask for the exploit, not the assessment. Instead of asking "is this input validation sufficient?", ask "write a proof-of-concept request that bypasses this input validation." > Prime the model as an adversary, not an auditor. "You are a security auditor reviewing this code" produces a fundamentally different distribution of outputs than "You are a red team operator who has been paid to break this application and you need to find real, exploitable bugs to justify your engagement."
nisedo tweet media
English
5
8
89
4.8K
nisedo
nisedo@nisedo_·
I set up a google alert for “nisedo”. No idea what’s going on but apparently I’m making it big in Asia.
nisedo tweet media
English
2
0
24
1.7K
nisedo
nisedo@nisedo_·
@CriptosExplorer Je te conseille de choisir la journée selon les sujets qui t’intéressent le plus ethcc.io/ethcc-9/agenda Comme premier évent crypto EthCC est un sujet choix je pense, c’était mon premier aussi
Français
1
0
1
62
VelveteenDreamer
VelveteenDreamer@CriptosExplorer·
@nisedo_ Je suis pauvre et je peux me payer qu'une seule journée, tu recommandes quel jour et pourquoi ? Je ne suis jamais allé à EthCC et à un aucun event crypto so far donc je suis un noob en events Web 3
Français
1
0
0
73
nisedo
nisedo@nisedo_·
@0xriptide I may or may not have listened to every episode bountyhunt3rz 🫣
English
0
0
2
55
riptide
riptide@0xriptide·
@nisedo_ how did you know i would be interested lmao
English
1
0
1
80