Latest news

  • Smart Contract Security Newsletter #42

    (This newsletter was sent out on July 17th, Sign up to receive them on the first day)Last week we open-sourced one of our tools, Legions, an EVM Node Security Toolkit. With this tool, you can look up ENS details, smart contract storage, and any nodes’ exposed RPC interfaces. Read more about Legions and more functionalities here:Legions a Tool for SeekersAlso we are honored that Status has asked us to serve as the Champion on Nimbus ETH2.0 beacon chain assessment, working alongside NCCGroup and T… … More

  • Smart Contract Security Newsletter #41

    (This newsletter was sent out on July 2nd, Sign up to receive them on the first day)This is the last week for Gitcoin CLR matching, Please check out two of our Public Goods Projects:The Blockchain Security DBSolidity Visual DeveloperDo you consider yourself a smart contract hacker? Or do you know someone that might be? Good news, ConsenSys Diligence is hiring.Distilled NewsBalancer Pool issueWe previously covered issues caused by flash loans (bZx hack and security implications of flash loans), n… … More

  • Smart Contract Security Newsletter #40

    Sign up to receive this newsletter in your favourite email clientHere are some of the things we’ve been working on in recent weeks:The Blockchain Security DB is an open-source (and machine-readable) database of security information for blockchain projects, containing information about past audits, bounty programs, and security contact info.Some laudable efforts have been made recently to evaluate and compare the security of different projects (especially in DeFi). That’s a difficult and controve… … More

  • Smart Contract Security Newsletter #38

    (This newsletter was sent out on May 21st, Sign up to receive them on the first day)ConsenSys Diligence VSCode guru, Martin Ortner, has some interesting updates on his VSCode extensions:Updated Solidity Metrics: Generate Solidity Source Code Metrics, Complexity and Risk profile reports for your project.Dabble in good old InfoSec tools by Decompiler extension, which enables users to decompile Binary files, Java Jar, and Android APK right from VSCode.MythX also recently shipped some major upgrades… … More

  • Smart Contract Security #37

    Smart Contract Security Newsletter #37(This newsletter was sent out on May 7th, Sign up to receive them on the first day)More virtual conferences are happening these days, here are some of the talks we did in the past two weeks:Visualization of large codebases with the Solidity Visualizer extension for VSCode — Solidity Summit 2020Mutation Testing with Vertigo — Solidity Summit 2020Live Auditing & Security Best Practices with ConsenSys Diligence — DeFi Discussionsbody[data-twttr-rendered=”tr… … More

  • Smart Contract Security Newsletter #37

    (This newsletter was sent out on May 7th, Sign up to receive them on the first day)More virtual conferences are happening these days, here are some of the talks we did in the past two weeks:Visualization of large codebases with the Solidity Visualizer extension for VSCode — Solidity Summit 2020Mutation Testing with Vertigo — Solidity Summit 2020Live Auditing & Security Best Practices with ConsenSys Diligence — DeFi Discussionsbody[data-twttr-rendered=”true”] {background-color: transparent;}…. … More