bancorprotocol / contracts-solidity

Bancor Protocol Contracts
Other
841 stars 390 forks source link

Bancor V2 Bug Bounty - Up to $54K in awards #393

Closed yudilevi closed 3 years ago

yudilevi commented 4 years ago

Submit a report to: bugbounty@bancor.network. Join the Bancor Developers Telegram Channel: https://t.me/bancordevelopers TestNet deployments of the Bancor Ropsten contracts will be deployed in the coming days.

Scope

The Bancor V2 Bug Bounty is limited to vulnerabilities affecting the Bancor Protocol smart contracts in this repository.

The following are not within the scope of the bounty program:

Rewards

The severity of bugs will be assessed under the CVSS Risk Rating.

Awards for bugs discovered July 16–30 2020:

Awards for bugs discovered after 12:00AM GMT July 30 2020:

Rewards will be determined based on the impact of the discovered vulnerability as well as the level of difficulty in reproducing the vulnerability.

Disclosure Requirements

Any vulnerability or bug discovered must be reported only to the following email: bugbounty@bancor.network. The bug must not be disclosed publicly or to any other person, entity or email address other than bugbounty@bancor.network.

Please include as much detail about the vulnerability as possible including:

Any bug reporter who reports a previously unreported bug that results in a change to the code or a configuration change and who keeps the vulnerability confidential until it has been resolved by our engineers will be recognized publicly for their contribution, if agreed.

Eligibility

To be eligible for a reward in the Bancor V2 Bug Bounty, you must:

Other Terms

All reward decisions, including eligibility for and amounts of the rewards and the manner in which such rewards will be paid, are made at our sole discretion. The terms and conditions of the Bancor V2 Bug Bounty may be altered at any time.

gitcoinbot commented 4 years ago

Issue Status: 1. Open 2. Started 3. Submitted 4. Done


This issue now has a funding of 0.001 BNT attached to it as part of the adambancor fund.

gitcoinbot commented 4 years ago

Issue Status: 1. Open 2. Started 3. Submitted 4. Done


Work has been started.

These users each claimed they can complete the work by 1 year, 7 months ago. Please review their action plans below:

1) lotfy2 has started work.

I will try to do my best to test the Bancor V2 2) lotfy2 has started work.

I will try to do my best to test the Bancor V2 3) thomas191919 has started work.

I will try to do My best to test bancor V2 4) jnuno98 has started work.

Will analyse the code with a formal methods point of view and start discovering bugs

Learn more on the Gitcoin Issue Details page.