0xProtosec's profile picture. Blockchain Security Researcher
Fellow @yAcademyDAO
Tweets and opinions are my own. 
I (sometimes) write at http://hasanza.substack.com |

hasanza

@0xProtosec

Blockchain Security Researcher Fellow @yAcademyDAO Tweets and opinions are my own. I (sometimes) write at http://hasanza.substack.com |

Pinned

Using literals in your smart contracts? Time to go back and take another look 👀. Introducing my latest publication: Solidity Quirks: Literals and Mobile Types Credit goes to @paladin_marco for his tweet highlighting the issue. hasanza.substack.com/p/solidity-qui…


Pro tip: Never keep people (especially clients) waiting for a response. Respond as soon as you are able to and respond completely (replying to each question asked or offering to follow up later with more details). This will do wonders for your professional career.


PSA for everyone in the web3/security sphere: there are a lot of hiring scams going on on LinkedIn/X. Please treat every new connection/msg you get as a potential scammer. Inspect profiles, preview links using sites like screenshotmachine, and don't run code locally.


A massive win. I pray this precedent continues to stand.

Privacy wins. Today the Fifth Circuit held that @USTreasury’s sanctions against Tornado Cash smart contracts are unlawful. This is a historic win for crypto and all who cares about defending liberty. @coinbase is proud to have helped lead this important challenge. 1/6



hasanza reposted

Privacy wins. Today the Fifth Circuit held that @USTreasury’s sanctions against Tornado Cash smart contracts are unlawful. This is a historic win for crypto and all who cares about defending liberty. @coinbase is proud to have helped lead this important challenge. 1/6


hasanza reposted

🚨New Discord feature allows changing the underlying URL of a hyperlink. This will lead to a lot of scams. Be extra careful when clicking any Discord links, stay safe🙏

pashovkrum's tweet image. 🚨New Discord feature allows changing the underlying URL of a hyperlink. This will lead to a lot of scams.

Be extra careful when clicking any Discord links, stay safe🙏

Participated in my first official public audit with @beedlefi on @CodeHawks. 22nd on the leaderboard (out of 276) with 3 highs found. Stats: - 3 Highs - 6 Gas Not too bad for the first time, I must say; ton of improvement still to be made. Also, kudos to @PatrickAlphaC for…


hasanza reposted

We have some exciting news... Cantina Beta is Live! Before you dive in - let's talk about what all of this means for protocols and researchers today 🪐 ( Read to the end for researcher access codes 👀 ) 🧵👇

cantinaxyz's tweet image. We have some exciting news...  Cantina Beta is Live!

Before you dive in - let's talk about what all of this means for protocols and researchers today 🪐

( Read to the end for researcher access codes 👀 )

🧵👇

Just finished submitting issues for the @CodeHawks Escrow contest. Fingers crossed! Btw great job with the CodeHawks UX @PatrickAlphaC, functional and simple 👍


hasanza reposted

Wondering what all the fuss about ERC-4337 and account abstraction is? Join @lovethewired, as he breaks it down for you, on Thursday 3rd at 2pm ET/8pm CET: youtube.com/watch?v=edPJaU…

trailofbits's tweet card. ERC-4337 Account Abstraction presentation

youtube.com

YouTube

ERC-4337 Account Abstraction presentation


hasanza reposted

Are solidity devs properly aware of how degen it is to use optimizations during compile time? Check out the #1 finding in a @trailofbits audit report. github.com/ajna-finance/a…

wavey0x's tweet image. Are solidity devs properly aware of how degen it is to use optimizations during compile time? 

Check out the #1 finding in a @trailofbits audit report. 

github.com/ajna-finance/a…

hasanza reposted

Random Foundry tip. Add this Bash function to your dotfiles to get local HTML reports for "forge coverage":

PaulRBerg's tweet image. Random Foundry tip.

Add this Bash function to your dotfiles to get local HTML reports for "forge coverage":

hasanza reposted

this is one of the clearest review about zk tech i've ever seen explains architecture, backend, frontend, pro/cons of approaches, math behind, open challenges in an unbiased view definitely worth to watch drive.google.com/file/d/12-e1g8… h/t @wehack247 @Scroll_ZKP @yezhang1998

emilianobonassi's tweet image. this is one of the clearest review about zk tech i've ever seen

explains architecture, backend, frontend, pro/cons of approaches, math behind, open challenges in an unbiased view

definitely worth to watch

drive.google.com/file/d/12-e1g8…

h/t @wehack247 @Scroll_ZKP @yezhang1998

Clear thought facilitates clear writing. Clear writing facilitates clear thought. One of my knowledgeable friends said this and I couldn't agree more. Writing helps clear misconceptions and solidify concepts. I urge everyone to write and publish more often.


hasanza reposted

Foundry tip: Do not add a dependency without specifying a certain git version tag. Otherwise you are potentially using nightly/beta builds of dependencies which their devs did not explicitly make ready for release.

shunduquar's tweet image. Foundry tip:

Do not add a dependency without specifying a certain git version tag. Otherwise you are potentially using nightly/beta builds of dependencies which their devs did not explicitly make ready for release.

hasanza reposted

Now offering solo audits! DM me if you need comprehensive dissection of your Solidity code. From aggressive gas optimization to extensive security analysis, I've got you. RT for visibility otherwise I'd have to clutter your TL with basic Solidity tips to become an influencoor.

shunduquar's tweet image. Now offering solo audits! DM me if you need comprehensive dissection of your Solidity code. From aggressive gas optimization to extensive security analysis, I've got you.

RT for visibility otherwise I'd have to clutter your TL with basic Solidity tips to become an influencoor.

Formally starting my Substack page. Must say, the writing/ publishing experience is much better than Medium or HackMD. protosec.substack.com


When must we write inline assembly in a smart contract? Learn about that and more in my article: Solidity vs. Inline Assembly: Analysis and Usecases hackmd.io/tEtirsJgR2OSfS… it evolved out of notes I made while watching an excellent video on the topic by @gpersoon


Loading...

Something went wrong.


Something went wrong.