A duplicate is OOS in practice: Immunefi and the project already know about the bug and they've already received a report on it. But this isn't visible anywhere, so the bug hunter submits the same bug blind, and it gets rejected as a duplicate. The hunter already loses time writing and submitting that report.
Why should it also count against their accuracy stats? @immunefi
@maraoz Your take actually implies the opposite
DeFi is safer than ever now, since every possible vuln has already been found by these wonder AI agents and either exploited or reported
Hardhat 3.6.0 is out!
The packages @nomicfoundation/hardhat-viem-assertions, @nomicfoundation/hardhat-keystore, and @nomicfoundation/hardhat-typechain were updated as well.
Some of the changes include:
- An AGENTS.md/CLAUDE.md file and skills are included in the sample projects when using hardhat --init. To install them in an existing project, take a look at https://t.co/eyggc2CVGE
- Introduced two new Solidity hooks for plugins, and deprecated of several existing ones. See the release notes for more details.
- The hardhat flatten task now detects circular dependencies and fails accordingly.
- Several improvements and bug fixes in the hardhat-viem-assertions plugin.
- Environment variables now take precedence over the keystore.
You can check the release notes here
https://t.co/nX0RYIIPR0
https://t.co/somDWlZboG
https://t.co/3VDWiWzHZA
https://t.co/tlXtoTAQiJ
@0xDestinyae@_SEAL_Org@aandooor@zygbaeth The other side of a web3 protocol: almost daily we get messages falsely claiming a vulnerability, extorting money, pitching half-baked ideas, or pushing sketchy links. Every time you engage and get drawn in, you put real security at risk.