nisedo
5.4K posts

nisedo
@nisedo_
I stare at smart contracts until one of us breaks @trailofbits | @soliditors 🇫🇷
Katılım Ağustos 2021
2.4K Takip Edilen4.4K Takipçiler

@lonelysloth_sec Out of curiosity, do you use Medusa/Echidna when bug hunting?
English

@nisedo_ im not implying medusa isn't good, just like -- you could probably vibe-clone the whole thing instead of just the harness. and maybe add some features relevant to the specific project while you're at it.
English

@lonelysloth_sec What would you change/improve in Medusa?
Please share any feedback you might have!
English

This is the kind of thing that makes our community amazing 🫶
If you're heading to Cannes for @EthCC, bookmark this thread.
Aubree@hiaubree
In Cannes early for @EthCC? Here's a cheat sheet for getting around the South of France on a budget: trains, buses, ferries, apps, prices, everything! 🇫🇷🧵
English

@RaoulSaffron github.com/nisedo/solidit…
I basically created an extension out of all the features I was using from other extensions + a few more things I wanted
English

Great article on prompting and scaffolding techniques for vulnerability research.
We’ve been iterating on many of these for months at @trailofbits, and I can confirm they significantly improve model outputs.
> Invert the question. Instead of "is this code secure?", ask "how would you break this?"
> Ask for the exploit, not the assessment. Instead of asking "is this input validation sufficient?", ask "write a proof-of-concept request that bypasses this input validation."
> Prime the model as an adversary, not an auditor. "You are a security auditor reviewing this code" produces a fundamentally different distribution of outputs than "You are a red team operator who has been paid to break this application and you need to find real, exploitable bugs to justify your engagement."

English

@CriptosExplorer Je te conseille de choisir la journée selon les sujets qui t’intéressent le plus
ethcc.io/ethcc-9/agenda
Comme premier évent crypto EthCC est un sujet choix je pense, c’était mon premier aussi
Français

@nisedo_ Je suis pauvre et je peux me payer qu'une seule journée, tu recommandes quel jour et pourquoi ?
Je ne suis jamais allé à EthCC et à un aucun event crypto so far donc je suis un noob en events Web 3
Français

@0xriptide I may or may not have listened to every episode bountyhunt3rz 🫣
English








