HomeEthereumSecured #2: Public Vulnerability Disclosures

Secured #2: Public Vulnerability Disclosures

-



Today, we disclosed the first set of vulnerabilities from the Ethereum Foundation’s Bug Bounty Programs. These vulnerabilities were previously discovered and reported directly to the Ethereum Foundation or client teams via the Bug Bounty Programs for both the Execution Layer and Consensus Layer.

Through its Bug Bounty Programs, which allow the Ethereum Foundation (EF) to coordinate and cross-check vulnerabilities across clients, the EF currently accepts vulnerability reports for Nimbus, Teku, Lighthouse, Prysm, Lodestar, Go Ethereum, Nethermind, Erigon and Besu.

New repository & vulnerability list

The full list of vulnerabilities, along with additional information, can be found in a git repository here.

The new disclosures repository catalogues all known vulnerabilities that were patched prior to the latest hardforks on the Execution Layer and Consensus Layer.

We would like to give a massive shout out to everyone involved in the discovery and reporting of vulnerabilities, as well as to the teams responsible for fixing them. While we have attempted to include the names or aliases of the reporters, there are many developers and researchers within the client teams and in the Ethereum Foundation who found and corrected vulnerabilities outside of the bounty program. There are also many unsung heroes such as client team developers, community members, and many more who have spent countless hours triaging, cross-checking, and mitigating vulnerabilities before they could be exploited.

For more information, and to learn more about disclosure policies, timelines, and cataloging, head over to the new disclosures repository.

Your immense efforts have been instrumental to ensuring Ethereum’s security. Thank you!

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

Off the Grid Latest Update Brings a Host of Gameplay Enhancements

Want more? Connect with NFT PlazasJoin the Weekly NewsletterJoin our TelegramFollow us on XLike us on Facebook*All investment/financial opinions expressed by NFT Plazas...

Luigi Mangione Gains Memecoin Infamy

The promising engineer from a wealthy Baltimore family was charged with the brazen, broad daylight murder of health insurance executive Brian Thompson. Alleged Killer...

This future FTSE 100 stock looks like a needless risk to me

Image source: Getty Images Coca-Cola Europacific Partners (LSE:CCEP) is set to join the...

Can Realized Cap HODL Waves Identify The Next Bitcoin Price Peak?

Bitcoin’s cyclical nature has captivated investors for over a decade, and tools like the Realized Cap HODL Waves offer a window into the psychology...

Most Popular