DeFi Security: With So Many Hacks, Will It Ever Be Safe? - Ep.170
Unchained5 Touko 2020

DeFi Security: With So Many Hacks, Will It Ever Be Safe? - Ep.170

Dan Guido, cofounder and CEO of Trail of Bits, and Taylor Monahan, founder and CEO of MyCrypto, discuss all the recent hacks in DeFi, how it can be made more safely and who is responsible. We tackle: the Hegic security incident: whose responsibility it was to make sure the contract was secure — the auditor (Trail of Bits) or the team (Hegic) — what Trail of Bits was saying in its audit summary, and how to read between the lines of an audit summary how long an audit should be upgradeability: particularly around when more advanced technology and contracts interface with older technology/contracts centralization vs. decentralization: whether contracts can be made safely while maintaining adhering to the principle of decentralization, why Taylor would prioritize centralization and security, and how teams can create different levels of risk for users bug bounties: why asking what amount they should be is the wrong question the security threats posed by oracles and what a checklist for DeFi teams might look like Thank you to our sponsors! Crypto.com: https://crypto.com Kraken: https://www.kraken.com Stellar: https://www.stellar.org Episode links: Dan Guido: https://twitter.com/dguido Trail of Bits: https://www.trailofbits.com Taylor Monahan: https://twitter.com/tayvano_ MyCrypto: https://mycrypto.com Initial tweet by Hegic calling the security issue a typo: https://twitter.com/HegicOptions/status/1253937104666742787?s=20 Hegic tweet saying, “It’s not a security issue”: https://twitter.com/HegicOptions/status/1253954145113038849?s=20 Trail of Bits saying it will no longer work with Hegic: https://twitter.com/dguido/status/1254260725431894020?s=20 Taylor breaks down the audit summary: https://twitter.com/MyCrypto/status/1254058121342803968?s=20 Molly Wintermute’s Medium post on requesting a week audit vs. three-day review: https://medium.com/@molly.wintermute/post-mortem-hegic-unlock-function-bug-or-three-defi-development-mistakesthat-i-feel-sorry-about-5a23a7197bce Unconfirmed episode with Haseeb Qureshi on the Lendf.me attack: https://unchainedpodcast.com/haseeb-qureshi-on-the-unbelievable-story-of-the-25-million-lendf-me-hack/ Unchained interview showing Matt Luongo's approach to kill switches and upgradeability with tBTC: https://unchainedpodcast.com/tbtc-what-happens-when-the-most-liquid-crypto-asset-hits-defi/ Discussion of the bZx attacks on Unchained: https://unchainedpodcast.com/the-bzx-attacks-unethical-or-illegal-2-experts-weigh-in/ Issue with Curve contract: https://blog.curve.fi/vulnerability-disclosure/ Compound bug bounty program: https://compound.finance/docs/security#bug-bounty Taylor on “upgradeability makes things more insecure”: https://twitter.com/tayvano_/status/1222564979657723904?s=20 Synthetix oracle incident, allowing a bot to profit $1 billion: https://unchainedpodcast.com/how-synthetix-became-the-second-largest-defi-platform/ Taylor’s tips on how to get more ROI on an audit: https://twitter.com/MyCrypto/status/1254061500244713474?s=20 Tips to follow before getting an audit: https://blog.openzeppelin.com/follow-this-quality-checklist-before-an-audit-8cc6a0e44845/ Resources for security in DeFi: crytic/building-secure-contractsGuidelines and training material to write secure smart contracts - crytic/building-secure-contractsgithub.com https://consensys.github.io/smart-contract-best-practices/ https://forum.openzeppelin.com https://swcregistry.io https://diligence.consensys.net/blog/2020/03/new-offering-1-day-security-reviews/ Learn more about your ad choices. Visit megaphone.fm/adchoices

Jaksot(1081)

Why Bitcoin Developers Are Not Incentivized to Talk About the Quantum Threat

Why Bitcoin Developers Are Not Incentivized to Talk About the Quantum Threat

Thank you to our sponsors! Figure Crypto Tax Girl Are bitcoiners underestimating the quantum threat to Bitcoin? That's the question Castle Island Ventures Partner Nic Carter has posed with ...

12 Helmi 1h 16min

Could a Non-Crypto Hedge Fund Have Pulled a Bitcoin ‘Big Short'?

Could a Non-Crypto Hedge Fund Have Pulled a Bitcoin ‘Big Short'?

Thank you to our sponsors! Figure Crypto Tax Girl What happened to Bitcoin on Feb. 5? And why does the apex crypto continue to underperform? DeFi Development Corp investment chief Parker W...

12 Helmi 47min

Bits + Bips: Could Blackrock Someday Feel Compelled to 'Fire' Bitcoin Core Devs?

Bits + Bips: Could Blackrock Someday Feel Compelled to 'Fire' Bitcoin Core Devs?

Listen to the episode on Apple Podcasts, Spotify, Fountain, Podcast Addict, Pocket Casts, Amazon Music, or on your favorite podcast platform. Figure is giving away $25,000 in USDC. Deposit into Democ...

11 Helmi 1h 6min

How Zero Blockchain Cracked 2M TPS Without Sacrificing Decentralization

How Zero Blockchain Cracked 2M TPS Without Sacrificing Decentralization

Thank you to our sponsors! Figure Crypto Tax Girl LayerZero Labs is making bold promises with its coming Zero Blockchain. 2 million transactions per second per node. A thousandth of a penny per tra...

10 Helmi 41min

Want to Hire an AI Agent? Check Their Reputation Via ERC-8004

Want to Hire an AI Agent? Check Their Reputation Via ERC-8004

The ERC-8004 standard for trustless AI agent interactions is finally live on mainnet! In this Unchained episode, Ethereum Foundation AI Lead Davide Crapis joins to explain what the standard is, how i...

8 Helmi 1h 3min

Uneasy Money: How the Increasingly Better AI Agents Are Being Used Onchain

Uneasy Money: How the Increasingly Better AI Agents Are Being Used Onchain

Thank you to our sponsors! Fuse: The Energy Network MultiChain Advisors Vitalik Buterin just dropped a bombshell: the L2 vision no longer makes sense. Meanwhile, AI coding agents are going ...

7 Helmi 1h 22min

When AI Agents Take Over, What Does a Post-Human Economy Look Like?

When AI Agents Take Over, What Does a Post-Human Economy Look Like?

Thank you to our sponsors! Fuse In one week, OpenClaw agents have gotten their own social networking platform, launched cryptocurrency tokens and built a site to rent humans. In this episode of Unc...

7 Helmi 59min

DEX in the City: Why AI Agents Are Good for Crypto and Stablecoins

DEX in the City: Why AI Agents Are Good for Crypto and Stablecoins

If you’re looking for help with crypto taxes, Crypto Tax Girl is offering $100 off for Unchained listeners. They provide personalized crypto tax reports and tax returns, and availability before April...

6 Helmi 50min

Suosittua kategoriassa Politiikka ja uutiset

aikalisa
politiikan-puskaradio
rss-ootsa-kuullut-tasta
tervo-halme
ootsa-kuullut-tasta-2
viisupodi
et-sa-noin-voi-sanoo-esittaa
rss-vaalirankkurit-podcast
rss-podme-livebox
rss-asiastudio
otetaan-yhdet
aihe
the-ulkopolitist
radio-antro
rss-hyvaa-huomenta-bryssel
rss-sanna-ukkola-show-verkkouutiset
rss-tasta-on-kyse-ivan-puopolo-verkkouutiset
rss-kiina-ilmiot
rss-kovin-paikka
rss-vain-talouselamaa