Immunefi launches on-chain bug bounties through ‘Vaults’ system

Share This Post

The Web3 security platform now allows projects to deposit bounty funds to a Safe smart contract, proving the funds are available.

Blockchain security platform Immunefi has launched an on-chain system for bug bounties, according to a Sept. 26 announcement. The new system, called “Vaults,” allows Web3 developers to escrow funds in an on-chain address and use them to pay out bug bounties to white hat hackers.

Immunefi believes the new system will help projects “demonstrate to whitehats […] that they have allocated sufficient funds to pay bounties,” which it hopes will result in “more top-tier bug reports” being submitted.

List of Immunefi bug bounties. Source: Immunefi

Software developers often offer rewards, called “bug bounties,” to hackers who discover exploits or other bugs in their software. This sometimes allows vulnerabilities to be found before bad actors can exploit them. Hackers who submit bug reports for rewards instead of taking advantage of an exploit are called “white hat” hackers, while “black hat” hackers use their knowledge for malicious purposes.

Related: Projects would rather get hacked than pay bounties, Web3 developer claims

According to the announcement, the new Immunefi system allows projects to deposit their bug bounty funds to a Safe multisig smart contract (formerly called a “Gnosis Safe”). This provides white hats with on-chain proof that the funds are available. Once a bug is submitted and a project has confirmed it’s genuine, the project can release the funds to the bug reporter’s wallet.

During Vault’s launch, Ethereum infrastructure provider SSV posted a $1 million deposit to help pay bug bounties for its software. Decentralized exchange Ref Finance, which is on the Near network, also uses the new system. SSV DAO contributor Eridian claimed that on-chain bug bounties will help provide better security for the DAO’s validator services, stating:

“The Vaults System will help us provide added reassurance for any researcher engaging with our bounty program, and in turn help secure the protocol even further. A good win-win. Building further trust with the community by showcasing dedicated funding, and streamlining the payment process, will ultimately strengthen our security efforts.”

In December 2022, Immunefi reported that it had facilitated $66 million in bug bounty payouts since the platform’s inception. LayerZero released a $15 million bug bounty through Immunefi on May 17.

Collect this article as an NFT to preserve this moment in history and show your support for independent journalism in the crypto space.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

SEC Reviews Proposal for New Bitcoin, Ether ETF Custodians

The US Securities and Exchange Commission (SEC) is seeking public input on a proposal by Cboe BZX Exchange to add new custodians for bitcoin and ethereum exchange-traded funds (ETFs) The plan aims to

Terraform Labs secures court approval to wind-down operations after settling with SEC

Terraform Labs received court approval to wind down its operations in bankruptcy after settling a US Securities and Exchange Commission (SEC) lawsuit, Reuters reported Sept 19 US Bankruptcy Judge

New Clipper Malware Threat Targets Shiba Inu Community, Here’s What To Know

As the world of cryptocurrency continues to evolve, several new methods are being developed by cybercriminals to scam crypto users One of the latest methods reported to be widely used by these

Bitcoin Reclaims $63,000 After US Fed Rate Cut, But Is This Rally For Real?

So far, Bitcoin has seen a mixture of bulls and bears just in the past day alone Although bulls appear to be taking the lead given its current market performance, will this be sustainable Before the

Louisiana continues pro-crypto push with option to pay state agencies in Bitcoin, USDC

Louisiana has implemented a new option for residents to make payments to state agencies using Bitcoin and Circle’s stablecoin USDC, according to a Sept 18 press release The Louisiana Department

Terraform Labs Gets Court Approval to Wind Down Operations in Bankruptcy

Terraform Labs has received court approval to wind down operations in bankruptcy following a settlement with the US Securities and Exchange Commission (SEC) The company had been at the center of a