Certora reposted this
Attending ETHCC[7] in Brussels? We're hosting a breakfast during the conference with Liquid Collective, Certora, and Gauntlet! More info and RSVP link: https://lu.ma/m5kzwa5g
Industry-leading formal verification tools & smart contract audits.
External link for Certora
30 Chaim Levanon
Tel Aviv, Central District 6997543, IL
Certora reposted this
Attending ETHCC[7] in Brussels? We're hosting a breakfast during the conference with Liquid Collective, Certora, and Gauntlet! More info and RSVP link: https://lu.ma/m5kzwa5g
We are excited to verify the next generation of Uniswap, which brings new levels of efficiency to AMM design 🚀 At Certora, we complement top security firms by mathematically proving that the PoolManager will never lose the funds deposited by liquidity providers 🔒💰
Uniswap v4 is coming later this year 🚀 The UF is dedicated to ensuring Uniswap v4's code undergoes rigorous auditing before deployment on Ethereum. We’ve partnered with Uniswap Labs to select 5 top audit firms. Audits will begin this week, and will continue over the next few months. 1/ 🛡️ OpenZeppelin: A world leader in securing blockchain applications & smart contracts. Known for their open-source Contract Libraries & Defender, a security platform, OpenZeppelin integrates security throughout the development lifecycle to deliver safe projects. 2/ 🔍 Trail of Bits: Since 2012, they’ve secured some of the world’s most targeted organizations and products. Combining high-end security research with a real-world attacker mentality, they excel in reducing risk and fortifying code. 3/ 🔒 Certora: Certora provides industry-leading formal verification tools & smart contract audits. They are experts in security, with 20% of their team holding PhDs. Certora is trusted by top DeFi protocols & they've secured billions in assets. 4/ 👓 Spearbit Labs: A distributed network of top security researchers, Spearbit excels in web3 security reviews. Their standardized methodology ensures industry-leading quality and consistent results, making them experts in handling the most complex protocols in the ecosystem. 5/ 🔐 ABDK Consulting: Founded in 2016, they specialize in the design and security of Web 3.0. With over 100 audit projects, ABDK brings extensive experience in developing DeFi protocols, cryptographic schemes, and Solidity libraries. Together, these industry leaders will ensure Uniswap v4 sets a new standard in security for Ethereum deployments. Stay tuned for more updates on v4! Note: Last month, we announced the expansion of our grants program to include a new Security category: https://lnkd.in/eF7eX5J6. The audits mentioned above are being funded through this new workstream.
Certora reposted this
Super excited to announce that Mooly Sagiv, CEO of Certora, will join us on stage at the Web3 Security Summit in two weeks. How often do you get the opportunity to listen to a debate on Fuzzing vs Formal Verification with the CEO of Certora? Tickets 👉 https://lnkd.in/dhWEMge5
Certora reposted this
If you are a student who likes Math this post is for you https://lnkd.in/dA_2TDaf
Please come and learn from the DeFi experts about novel ways to trade https://lnkd.in/dWPzzt7w
Certora reposted this
You can now learn: - Assembly - Huff - Formal Verification - High-Level Wallet/Web3 DevOps On Cyfrin Updraft, in an outstanding new 13 hours of content. Let's give you a taste of what you'll learn in these two new courses: 1. Wallets & Post Deployment 2. Assembly & Formal Verification But #1 should probably be rebranded to "Web3 DevOps". And let's start there. In 2023, we saw a massive rise in off-chain issues, including: - Private key leaks - Slow attack response - etc You can watch BOTH courses in all their glory here, on Cyfrin Updraft. As always, for free because knowledge gating is lame, and Web3 needs this information. https://lnkd.in/dfCR2Hrb https://lnkd.in/daymhrMP Starting with Wallets, we took developers & protocols in mind and went over solutions like: - Trezor - @CypherockWallet - MetaMask - @Rabby_io - @rainbowdotme - @0xFrame As our "starter" wallets and then we use the BEST solution: multi-sig wallets. Like Safe & AragonProject's DAO wallet. Additionally, we review social recovery wallets, a favorite of Vitalik Buterin's. Then, we have bonus content with WalletScrutiny, who shows us what to stay away from with wallets. Then, we start our trial post-deployment course (Web3 DevOps), which will grow over time as we as a community get better at it. We talk about and walk through building transaction detectors, which alert us of malicious attacks, and go over how to build your own Forta Foundation bot. We teach about incident response and what resources we have, like bounty platforms or the SEAL 911 program. We talk about when to/when not to perform a white hat and responsible disclosure. In 2024 , it's not enough to get an audit. You will need to practice warrooms. Now... Most of you have been waiting for the Assembly and Formal Verification course (previously known as "Part 2" of the security course) And good lord, have mercy, this isn't one to miss. You will be a savant after you watch this. ...or a gas degen. idk gas bad We take you through 3 projects, each with ramping difficulty in tooling. We kick it off in Horse Store, where you'll LITERALLY rewrite contracts in raw hex/opcodes, using the Huff language to learn. With this power, we'll rewrite the codebase AGAIN in Yul, the low-level solidity inline/assembly. Anyone who wants to learn opcodes should watch this. Then, in Math Masters, we start to venture into formal verification, using a16z crypto's halmos and Certora, and a little bit of Runtime Verification Inc's Kontrol. Then finally, we end with our "Gas Bad NFT Marketplace", where we use Certora to rewrite the marketplace with inline assembly/yul and ensure our functions still work exactly the same. I said the last security course was difficult, but you must have all 50 hours of Cyfrin Updraft as a prerequisite for this one, so it's the toughest one yet. Happy learning, and let's build the web3 we promised.
Certora reposted this
SECURITY UPDATE: Hyperdrive has undergone four audits and completed formal verification from Spearbit Labs, ChainSafe Systems, and Certora. You can read the full security update, audit reports, and upcoming roadmap here: https://lnkd.in/gGP2qbfu
Certora reposted this
DeFi systems are complex. To better understand and reason about them, we must look at simpler models that will focus us towards bugs. At ETHDenver I showed why defining properties are an essential tool in a smart contract builder's and auditor's arsenal to prevent exploits. https://lnkd.in/d_KEXXMB
Certora reposted this
We're looking for a Senior Compiler Developer: a wonderful job opportunity! for more details look @ Certora Career page: https://lnkd.in/dyGMnR7K Why join Certora? Actually, why not??? Certora provides you a wonderful opportunity to: - do valuable work securing top DeFi protocols - contribute to unique formal verification technology, the leading way to ensure the behavior of any type of software - work with talented and collaborative colleagues - a fast-paced but supportive culture: we move fast and break nothing! - enjoy flexible work (remote / hybrid) - competitive compensation & benefits (including equity)