@bcherny do `MATRIX_MODE=1`. Whenever no user input is expected/required terminal does matrix stuff to confuse normies looking at your screen in coffee shops
more and more companies are hiring internal security researchers
checkout this job post by @veda_labs: https://t.co/LCcE6YfFMC
glad to see such practices, security shouldn’t be completely outsourced
IMPORTANT message for everyone using Gmail.
You have been automatically OPTED IN to allow Gmail to access all your private messages & attachments to train AI models.
You have to manually turn off Smart Features in the Setting menu in TWO locations.
Retweet so every is aware.
@Montyly It should grow as the TVL grows. Maybe instead of offering hackers 10% after they do the damage, 10% should be given to bounty hunters if they report it before it is exploited. Also, users should be aware of risks and consequences if something bad happens.
4/4
After that, we do an additional check to make sure that the authorized account can't send funds from the contract (assuming the contract holds ETH). He may send his own funds and they will get forwarded, or if he has an allowance, he may spend it.
1/4
Smart auditors hate this pattern - clickbait title, but will save you $ on audits.
Use AccessManager from #openzeppelin
https://t.co/WCtDfNClfI
In combination with AccessManaged
https://t.co/KYg7SocXaS
Now you have centralized role based smart contract management.
3/4
First, you have the restricted modifier from AccessManaged. It checks if the caller is authorized to call `customExternalCall` and reverts if he is not.
Then we have another check where we check if the same user is allowed to call `target`'s function and revert if he is not.
The HyperLiquid whale shorting BTC/ETH yesterday was placing shorts up till exactly 1 minute before Trump threatened tariffs against China.
The last short was placed at 20:49 GMT. Trump tweeted at 20:50 GMT.
What incredible "luck"