eth2 quick update number 10
This week we have some fun news for you π
In addition to the items below, our client team is continuing production. More on that next week!
tl;dr
Least privilege level 0 audit completed
As we discussed a few months ago, we worked with the Least Authority to conduct a full audit of the Phase 0 specification. The audit was comprehensive, with an in-depth look into potential DoS attacks, misuse of resources, unintentional forks/chains, and attacks affecting funds.
The audit is now complete and Available for public review π.
The Least Authority audit helped patch several DoS vectors in gossip messages using additional validation conditions (Issue A & B) highlighted known concerns about the election of public block proposer leaders (Issue C & D), spurring further investigation into potential DoS attacks using libp2p gossipsub control messages (Issue G).
In addition to these specific issues, the audit made several suggestions for p2p specification cleanup, examination of gossip-enhancing techniques, and peer review of key consensus documents/evidence.
A huge thank you to Least Authority. It was a pleasure working with many auditors on this project!
Step 0 pre-launch Bounty Program
We are pleased to announce the following: Phase 0 pre-launch bounty program!
This program is designed to provide incentives. you (Up to $10,000 reward!) Find and report bugs in the core Eth2 Phase 0 specification before mainnet launch π.
The Ethereum Foundation will run this program from now until just before the Phase 0 mainnet launch. After Tier 0 is produced, we will convert Tier 0 bounties to standard. Ethereum Bounty Program.
read more Learn more about the rules, how to report, severity levels, and rewards.
As we launch the program, we’re excited to award our first three bug bounties!
Have fun πhunting!
eth1+eth2 communication integration
Something magical has been happening since deVcon in Osaka. Amid Piper’s controversy, an obscure eth1x research initiative blossomed into the stateless Ethereum movement with a concrete roadmap and widespread participation across the ecosystem.
This move complements eth2 expansion efforts, where the research, specifications, development, and conversation of eth1+eth2 increasingly overlap. To support this joint effort to drive the future of Ethereum, eth1+eth2 communication was recently launched. Ethereum research and development discord server
join us! You can lurk and ask questions, propose new synchronization protocols, prototype eth1+eth2 integrations, optimize witnesses, or just stay up to date on the future of the Ethereum protocol π