Audit+: Improving the Security of the EOSIO Blockchain
EOS网络基金会
2022-01-24 03:54
本文约2190字,阅读全文需要约9分钟
One of the key issues to be addressed by the Audit+ team is knowledge transfer within the developer community. The first prerequisite for completing knowledge transfer is to provide developers with the right tools and relevant documentation.

first level title

Audit+ working group introduction

andSlowmistandSentnlLed by security experts, Slowmist and Sentnl are security audit companies commonly used by EOSIO and Solidity smart contract developers. The establishment of the Audit+ working group was welcomed byConsensys DiligenceInspired by EOSIO, the working group was formed because there are relatively few security-focused solutions in the EOSIO ecosystem compared to other blockchain technologies.

One of the key issues to be addressed by the Audit+ team is knowledge transfer within the developer community. The first prerequisite for completing knowledge transfer is to provide developers with the right tools and relevant documentation.

The EOSIO core system is very well designed in terms of security. However, there are still some fundamental issues that need to be addressed to ensure that the EOSIO security design can match the standards of other blockchains, and then take advantage of EOSIO's unique elements, such as its strong permission system, to push EOSIO further.

first level title

Open source security audit API and platform

Therefore, the establishment of a source code verification and audit information disclosure platform can make it easier for the community to verify the security of interactive smart contracts.

first level title

Contract Upgrade Authorization

Software library for secure smart contract development

first level title

bug bounty

first level title

text

Creating more automated and freely available tools could make it easier for developers to check the security of contracts. Although some tools currently exist, these tools are not open source or free.

first level title

A knowledge base of common security pitfalls when compiling EOSIO smart contracts

first level title

next step

Findings and recommendations from the Audit+ working group will give developers even more trust in EOS, making the EOS network a safe place to build dApps and conduct business.

EOS Network Foundation Chinese Twitter

Wallet+

API+

Core+

EVM+

About the EOS Network Foundation

EOS Network Foundation Chinese Twitter

EOS网络基金会
作者文库