Jutta’s replace on bug bounty program and safety audit

0
74


Hello, Jutta writing once more – I initially launched myself after we began the bounty program earlier this yr and I’m pleased to give you an replace on what’s occurring on the safety aspect prior and all through launch.

We now have had some prime quality submissions by bounty hunters – kudos for the artistic exploits despatched alongside that the bugs made doable. The variety of submissions not too long ago rose. Therefore we determined and are asserting that we’ll proceed the bounty program at the least all through the Frontier part of Ethereum’s launch plan – see Gav’s and Vinay’s respective weblog posts.

Please go to our bounty web site for extra info on the bounty program and ensure try our lead hunter’s repository right here for useful testing scripts earlier than beginning the hunt.

Not solely will we depend on particular person bug hunters and the group: along with EthDev’s  Gustav Simonsson, I had began the method of choosing skilled safety consultants, lecturers and blockchain consultants for our exterior safety audits late final yr. Gustav is now working with auditors and the Ethereum Go dev group to trace all safety points tagged right here and work out fixes for them. We need to preserve good monitor of all points and solely shut them as soon as totally resolved and options sufficiently examined. Each bug we discover is taken care of and will probably be mounted earlier than Frontier launch. Be at liberty to observe us on github if you wish to regulate the progress.

The primary spherical of labor from safety auditors is ending in a few weeks, and bug fixing is already properly underway. Working by all points will take the time it takes. It’s a security-driven not schedule-driven course of, in spite of everything.



LEAVE A REPLY

Please enter your comment!
Please enter your name here