alpharush
@0xalpharush
security researcher
What became of IDL standardization? There is a forum discussion from 2023 and it looks like anchor’s latest format is not widely adopted
No it’s not blurry. It doesn’t matter what other people do it matters what you do. If you choose to steal and harm people that’s fully on you. There are no excuses, no blaming others, that make it okay. If you think otherwise then you have a moral compass of dog shit and,…
I should not have to login to see issues on cantina or solodit :man-standing:
Any retrospective on why beaconfuzz did not find the pectra lighthouse issue?
The date is a coincidence but I am thinking about this again
Not the solution people like to hear, but the way to repeatably build high assurance software is to follow repeatable practices during development. Everything else is downstream of that
Contests are funnels for the audit firms attached to them and fellowships are inexpensive non-compete agreements for contractors. One of the cost levers was open-source development and public research which is now diverted into cheaper, content-mill marketing.
There's been a lot of discussion around zk(E)VMs lately. Good moment with everyone VM nerd-snipped to discuss FPVMs (fault proof VMs), and their "complexification" from simple-bare metal environments to full-blown general-purpose executors🧵
A blockchain isn’t a general purpose operating system, the constraints are completely different
Noticing a lot of what looks like LLM GitHub bots lately. Or maybe people really do create superfluous rationales with headers for PRs…
The trade-off in the security space isn’t about how the persons are organized or compensated, it’s whether the orgs will compete to make themselves irrelevant by improving freely available tech and sharing research.