Artwork

Content provided by Epicenter Media and Epicenter Media Ltd.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Epicenter Media and Epicenter Media Ltd. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Dan Guido: Trail of Bits – The Evolution of Smart Contract Security

1:05:44
 
Share
 

Manage episode 265879198 series 41400
Content provided by Epicenter Media and Epicenter Media Ltd.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Epicenter Media and Epicenter Media Ltd. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Just like all software, smart contracts on the blockchain are subject to serious security vulnerabilities and coding errors. The fact however that smart contracts are often directly in charge of assets and cannot be changed once they are on the blockchain, makes secure development and running essential. Some smart contract platforms have their own languages, for example Solidity in Ethereum. Bugs and vulnerabilities in the source code, and errors in the virtual machines used by the network, are the main reasons behind security issues in smart contracts.

Projects using blockchain applications should expect constant changes in the security landscape. New bugs, security risks, and best practices will continue to emerge over time. Trail of Bits is a software security firm who advise in a range of industries for some top companies, including in the blockchain space. They are experts at identifying top-level risks and implementation vulnerabilities, and providing essential recommendations on best practices. Dan Guido, the CEO and Co-founder, explains all things software security in a really detailed and technical, yet easy to digest way. We also recommend you check out their exceptional blog packed with invaluable resources.

Topics covered in this episode:

  • Dan’s background and how he came to create Trail of Bits
  • What led Dan into the blockchain field
  • How security software has changed over the last 20 years
  • The unique challenges for security on blockchain and smart contract protocols
  • Smart contract languages and security
  • Slither - Trail of Bits’s suite of Ethereum based security tools
  • Dan’s opinion on Solidity’s future and Vyper as an alternative
  • Formally Verified Languages
  • A use case on how Trail of Bits works
  • Working with upgradeable contracts
  • Composability and security
  • Are compilers trustworthy?
  • Other security issues in the blockchain space as DeFi grows
  • The future of software security and the role of AI

Episode links:

This episode is hosted by Sebastien Couture & Friederike Ernst. Show notes and listening options: epicenter.tv/346

  continue reading

839 episodes

Artwork
iconShare
 
Manage episode 265879198 series 41400
Content provided by Epicenter Media and Epicenter Media Ltd.. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Epicenter Media and Epicenter Media Ltd. or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Just like all software, smart contracts on the blockchain are subject to serious security vulnerabilities and coding errors. The fact however that smart contracts are often directly in charge of assets and cannot be changed once they are on the blockchain, makes secure development and running essential. Some smart contract platforms have their own languages, for example Solidity in Ethereum. Bugs and vulnerabilities in the source code, and errors in the virtual machines used by the network, are the main reasons behind security issues in smart contracts.

Projects using blockchain applications should expect constant changes in the security landscape. New bugs, security risks, and best practices will continue to emerge over time. Trail of Bits is a software security firm who advise in a range of industries for some top companies, including in the blockchain space. They are experts at identifying top-level risks and implementation vulnerabilities, and providing essential recommendations on best practices. Dan Guido, the CEO and Co-founder, explains all things software security in a really detailed and technical, yet easy to digest way. We also recommend you check out their exceptional blog packed with invaluable resources.

Topics covered in this episode:

  • Dan’s background and how he came to create Trail of Bits
  • What led Dan into the blockchain field
  • How security software has changed over the last 20 years
  • The unique challenges for security on blockchain and smart contract protocols
  • Smart contract languages and security
  • Slither - Trail of Bits’s suite of Ethereum based security tools
  • Dan’s opinion on Solidity’s future and Vyper as an alternative
  • Formally Verified Languages
  • A use case on how Trail of Bits works
  • Working with upgradeable contracts
  • Composability and security
  • Are compilers trustworthy?
  • Other security issues in the blockchain space as DeFi grows
  • The future of software security and the role of AI

Episode links:

This episode is hosted by Sebastien Couture & Friederike Ernst. Show notes and listening options: epicenter.tv/346

  continue reading

839 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide