vmark.eth
1.2K posts

vmark.eth
@vmaark_
builder. nighttime wizard @forgottenrunes cult
Katılım Ağustos 2021
1.5K Takip Edilen1.3K Takipçiler
vmark.eth retweetledi

Exploits are the symptom, the lack of operational standards is the problem.
If you're afraid your company might be next, let's chat.
We built something to harden your defense.
Watcher.Guru@WatcherGuru
JUST IN: $4.8 trillion JPMorgan says DeFi exploits and flat growth are holding back institutional adoption.
English

So the EU wants to ban teens from social media — except for LGBTQ+ content? What a nuanced way to “protect children” online.
POLITICOEurope@POLITICOEurope
🚨 BREAKING: Hungary violated EU law when it banned children from accessing LGBTQ+ content, the Court of Justice of the EU has ruled. Read the full story: politico.eu/article/eu-top…
English

@mr_birch2 @durov @grok What Pavel posted is a great example of false dichotomy, a logical fallacy. The 2 topics are not connected. He even makes it sound like LMBTQ social media is an exception and allowed.
English

@mr_birch2 @durov @grok I had to look up on the internet what you are talking about, but based on what I found, it feels like you didn't?
Anyway, I don't see how that's related to social media.
English

@mr_birch2 @durov @grok no, i have kids, ofc social media should be banned under 16. there's direct correlation between mental health issues and social media usage.
English

@mr_birch2 @durov @grok the scandalous hungarian law was more about books, so bookstores cannot sell people under 18 books containing any reference to homosexuality, and those books have to be plastic wrapped, so they cannot even be opened 💀
English


@Fiskantes Maybe this depends on the L2, but I think this could have been prevented by AAVE accepting only assets using the native bridges
English

So: LayerZero multisig architecture enabled 1/1 multisigs even though this is obviously dumb idea (maybe giving users all this freedom isn't the best primitive?)
KelpDAO took liberty to use 1/1 multisig despite knowing this is obviously dumb idea (I mean, what to even conclude here)
AAVE took KelpDAOs rsETH as collateral across few L2s - less obvious this is dumb idea as they needed to do a lot of DD (failed to do their DD on KelpDAO)
+ The whole situation is downstream of modular L2 infrastructure, requiring bridges to work and hold assets (bridges are a single point of failure)
I guess there is whole bunch of lessons:
1. Don't give your users freedom to do something dumb
2. Multisigs are insecure, multisigs with 1/1 signatures extremely so - single point of failure
3. DeFi protocols need to reject assets secured by 1/1 multisigs (or multisigs in general) or isolate them to limit contagion
4. Additional safeguards such as circuit breakers (cc. @odysseas_eth ) or similar would help a lot
5. Modular L1-L2 design leads to complexity and increased attack surface
It kinda feels like this is a signal to rethink a lot of this stuff from scratch
English

I sequenced my genome at home, on my kitchen table.
I wrote up exactly how I did it - the equipment, protocol, theory, and cost:
iwantosequencemygenomeathome.com
English

@LefterisJP @0xLobsterMonkey LZ bridge was exploited, single signer on a DVN
English

@0xLobsterMonkey not everyone has 32 ETH. And then you start getting int LST territory, which is what was exploited.
English

@ScottApogee @CuriosityonX would you visit earth if you were an alien though
English

Probably because FTL travel is not possible. And that means we're basically too far apart to visit each other. Some estimates say that there's likely only 1-5 rocket ship building species per galaxy, so while simple life is likely extremely common in the universe, technologically advanced life is perhaps extremely rare. And if light speed can't be broken or hacked in some way, we'll forever be isolated islands is the vast sea of space.
English

Tempo really just wrote "it's better not to use encryption"

Tempo@tempo
Blockchains still broadcast every transaction publicly. Every stablecoin payment leaks the amount, the sender, and the recipient. We’re excited to share that Tempo is building Zones for businesses that need privacy: private blockchains that are interoperable with the rest of Tempo for stablecoin use cases like payroll, treasury, and settlement.
English

@Fiskantes @vonderleyen what's the actual critique here? genuinely asking
English

It is for parents to raise their children. Not platforms.
The European Age Verification App is ready ↓ twitter.com/i/broadcasts/1…
English














