You are viewing a single comment's thread from:

RE: VaaS Found EOS Could Also Be Vulnerable to Overflow

in #eos6 years ago (edited)

From my personal perspective:

  1. Great to see more security reviews, and especially formal verification.
  2. This finding mostly shows that smart contract developers can write bugs if they aren't careful.
  3. The core EOS token contract doesn't appear to be vulnerable in this way.
  4. If you're going to implement a token on an EOSIO Software based blockchain, you should either use the native token, or be a good programmer and guard against over- and under-flow bugs.
  5. Great to see a security-minded firm like LianAn Tech bringing both testing/verification as a service and pre-tested templates to the growing EOS community.

Thank you EOS Cannon and LianAn Tech.