Although there are bug bounty programs, we still see smart contract hacks. This causes innocent people to lose their hard-earned money.
If we try to understand why this happens, then one of the reasons is that the security researcher has to disclose the bug to the project team. If the project decides to not reward the security researcher, then the security researcher cannot do much, since they have already provided their part of the deal. Because such incidents take place, the security researcher might think that instead of responsibly disclosing the bug, they should exploit the project.
This project aims to solve two problems:
Next, I want to work on a front-end to verify the proofs so that it is easier for the project teams to verify bug reports.
Tracks Applied (3)
QuillAudits - Web3 Security 🛡️
BlockSec
Polygon
Discussion