gitcoinco / skunkworks

experimental laboratory
64 stars 35 forks source link

Critical Instanbul Bugs: 20 ETH Bounty, subject to exponential decay conditions set below. #89

Open owocki opened 5 years ago

owocki commented 5 years ago

This bounty is inspired by The broken EIP security incentive.

This is a bounty worth up to 20 ETH for any Istanbul Hard Fork EIP

Severity is judged by the OWASP model, as my discretion:

owasp-chart-1024x410

Payouts will be as follows:

Bounty Payout Exponential Decay

In order to incentivize the community to find bugs in the EIPs early, I will be applying the following exponential decay to the bounty payouts.

The decay curve of the bounty is visualized via this curve, which I have lifted from this post:

Screen Shot 2019-03-18 at 4 52 56 PM

Other terms

gitcoinbot commented 5 years ago

Issue Status: 1. Open 2. Started 3. Submitted 4. Done


This issue now has a funding of 20.0 ETH (2758.83 USD @ $137.94/ETH) attached to it.

gitcoinbot commented 5 years ago

💰 A crowdfund contribution worth 20.00000 ETH (2704.8 USD @ $135.24/ETH) has been attached to this funded issue from @eeks.💰

Want to chip in also? Add your own contribution here.

gitcoinbot commented 5 years ago

Issue Status: 1. Open 2. Cancelled


Work has been started.

These users each claimed they can complete the work by 3 months from now. Please review their action plans below:

1) new58 has started work.

Hello and thanks and good luck 2) hadimorrow has started work.

0 = √∑∑∑∑∑ΩΩΩΩΩ¥¥¥¥¥≈≈≈≈≈∑∑∑ΩΩΩ¥¥¥≈≈≈∑Ω¥≈ = 0 1 = ◊„„„„„¸¸¸¸¸ÁÁÁÁÁ˛˛˛˛˛„„„¸¸¸ÁÁÁ˛˛˛„¸Á˛ = 1 3) debragail has started work.

It's a long time cumming but i'm happy to look at the instanbul hard fork and see if there's any memory constraints that could be exploited.

Learn more on the Gitcoin Issue Details page.

ghost commented 5 years ago

I canceled this کار آغاز شده است

هرکدام از این کاربران ادعا کردند که می توانند این کار را تا 11 ماه و 3 هفته از این کار انجام دهند. لطفا برنامه های عمل خود را در زیر بخوانید:

1) new58 شروع به کار کرده است.

سلام و ممنون و موفق باشید

owocki commented 4 years ago

cancelling the bounty since no exploit was found.. (yay istanbul was a success!)

@eeks you will get an email about how to get your crowdfund back. if u dont let me know.

meeseeked commented 4 years ago

Thanks, will let you know

On Fri, Dec 13, 2019 at 9:24 AM Kevin Owocki notifications@github.com wrote:

cancelling the bounty since no exploit was found.. (yay istanbul was a success!)

@eeks https://github.com/eeks you will get an email about how to get your crowdfund back. if u dont let me know.

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub https://github.com/gitcoinco/skunkworks/issues/89?email_source=notifications&email_token=AB6QTLH6SHZ4EJ5HBCIAAEDQYOLKTA5CNFSM4G7LR6P2YY3PNVWWK3TUL52HS4DFVREXG43VMVBW63LNMVXHJKTDN5WW2ZLOORPWSZGOEG2DRBA#issuecomment-565459076, or unsubscribe https://github.com/notifications/unsubscribe-auth/AB6QTLGRWVSUAR4PKHA227TQYOLKTANCNFSM4G7LR6PQ .

gitcoinbot commented 4 years ago

Issue Status: 1. Open 2. Cancelled


The funding of 20.0 ETH (plus a crowdfund of 20.0 ETH worth 2627.050979 USD) (2627.05 USD @ $131.35/ETH) attached to this issue has been cancelled by the bounty submitter