ArdanaLabs / audit

0 stars 0 forks source link

[pile] - denial of service #25

Open quinn-dougherty opened 3 years ago

quinn-dougherty commented 3 years ago

Description

Closing https://github.com/ArdanaLabs/audit/issues/9 in favor of a more generic issue.

Deliverable

Essentially rely on the MLabs.slab, cite it about general plutus and cardano vulnerabilities, we may not have anything specific to say about Danaswap or the app that we have running on the PAB, but we should include language that warns against generic plutus/cardano DoS vectors.

quinn-dougherty commented 3 years ago

Language src/attacks/dos.md also covers https://github.com/ArdanaLabs/audit/issues/10

quinn-dougherty commented 3 years ago

Pausing until I do more research to write https://github.com/ArdanaLabs/audit/issues/16 (src/considerations/throughput.md) -- will consolidate strategies mentioned into firm recommendations at that time.

quinn-dougherty commented 3 years ago

Will also mention offchain DoS (Aeson) at that time.