

Cryptor
567 posts

@Cryptor256
Web3 Security Researcher ZK Student at @RareSkills_io Profile: https://t.co/EN2M4JSRyV







We should not allow this to become the new norm in security research. This must change. gist.github.com/marikravets/28… #BugBounty #CryptoSecurity #Web3 #SecurityResearch @cantinaxyz @MonadOfficvn @monad @bountywriteups @VitalikButerin


Aave Labs proposes launching a dedicated Aave V4 bug bounty program on @sherlockdefi. The objective is to add an always-on security reporting channel for Aave V4, with a triage setup designed to reduce spam and route high-severity reports with high urgency.



We found the same Fiat-Shamir bug in six independent zkVMs. The result: an attacker can bypass the cryptography entirely and prove mathematically impossible statements (like minting $1M out of thin air). Full breakdown ↓



🚨 Half a million dollars paid. 🚨 The largest-ever unconditional prize pool is officially settled — all $500,000 distributed to participants. 4 high & 7 medium severity findings rewarded. Shoutout to @Monad & @category_xyz for their unwavering commitment to security!

Why not a bug bounty after 7 audits for 6 months with conditional pot $0 if no H/M? "Live audit contest" H/M pool of $96,000 🤔 - Securing $1B TVL - Launched in September - $70k fees generated daily - 35% Solana marketshare (defillama.com/protocol/jupit…)

We are hiring SR interns who must have: 1. Under 25 years old with 26 years of web3 security research experience 2. Strong portfolio in EVM and Move and Solana and L1/L2 and ZK circuits This internship is 12-month unpaid, if you succeed you get fulltime unpaid position


"Competitions are not dead" Meanwhile the said competitions:







delete one forever