Daily Mail PH

Wednesday, August 2, 2023

[New post] ConsenSys releases ‘fuzzing’ tool to test smart contract vulnerabilities

Site logo image admin posted: "Blockchain technology firm ConsenSys publicly released its "Diligence Fuzzing" tool for smart contract testing, according to an Aug. 1 announcement. The new tool produces "random and invalid data points" to find vulnerabilities in contracts before they ar" Crypto Timeless

ConsenSys releases 'fuzzing' tool to test smart contract vulnerabilities

admin

Aug 2

Blockchain technology firm ConsenSys publicly released its "Diligence Fuzzing" tool for smart contract testing, according to an Aug. 1 announcement. The new tool produces "random and invalid data points" to find vulnerabilities in contracts before they are launched.

Over $2.8 billion was lost in decentralized finance hacks in 2022. According to ConsenSys, these losses are leading developers to embrace more sophisticated testing tools to help find vulnerabilities before attackers do.

The new tool used to be available in a closed beta version, where developers needed to get approval for access. This approval process is no longer necessary as of Aug. 1. Diligence Fuzzing is also now integrated with smart contract toolkit Foundry and features a free version for developers who want to test it out before spending any money.

Diligence Fuzzing tutorials. Source: Consensys

Related: Crypto payment gateway CoinsPaid suspects Lazarus Group in $37M hack

In a conversation with Cointelegraph, ConsenSys security services lead Liz Daldalian explained how the tool works in more detail. Developers can annotate their contracts using a machine language called "Scribble," also developed by ConsenSys. Once they do this, the annotations will be understood by the fuzzing tool. The tool produces "unexpected" inputs so as to test whether the contract can be forced to produce unintended actions.

ConsenSys security researcher Gonçalo Sá said the tool is not a "black box fuzzer." It does not produce completely random data. Instead, it is a "grey-box fuzzer" that employs an understanding of the program's current state to reduce the types of data produced, increasing the tool's efficiency.

Sá has seen developers becoming more interested in fuzzing recently. As Foundry has become more popular, developers have started to use its default black-box fuzzer and have grown accustomed to using it. On the other hand, some users want a more sophisticated fuzzer than the default one, which he argued Diligence Fuzzer could provide. He said:

"People are now trying to harness the power of the different types of security tools that they have in their hands. And Foundry [has] a black box fuzzer that is really easy to use. [...] So people now are starting to understand the power of fuzzing. [...] And they are looking for more powerful tools."

Smart contract hacks have continued to pose a problem for users. Excluding rug pulls and phishing scams, over $471.43 million was lost from Web3 security vulnerabilities in the first half of 2023. Daldalian cautioned that Diligence Fuzzing is not a "silver bullet" that would eliminate all smart contract hacks. However, she argued that it is "one tool in an arsenal that developers can use in order to write more secure smart contracts," which can at least set the Web3 community on a path to minimize losses from these attacks.

Comment

Unsubscribe to no longer receive posts from Crypto Timeless.
Change your email settings at manage subscriptions.

Trouble clicking? Copy and paste this URL into your browser:
https://cryptotimeless.com/2023/08/02/consensys-releases-fuzzing-tool-to-test-smart-contract-vulnerabilities/

WordPress.com and Jetpack Logos

Get the Jetpack app to use Reader anywhere, anytime

Follow your favorite sites, save posts to read later, and get real-time notifications for likes and comments.

Download Jetpack on Google Play Download Jetpack from the App Store
WordPress.com on Twitter WordPress.com on Facebook WordPress.com on Instagram WordPress.com on YouTube
WordPress.com Logo and Wordmark title=

Automattic, Inc. - 60 29th St. #343, San Francisco, CA 94110  

at August 02, 2023
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest

No comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments (Atom)

CG BOSS Posts from Gargoyles Reboot thanks to creator kept it alive | CG BOSS Games for 04/26/2026

CG BOSS Blog Post Updates ...

  • [New post] 5 Key Technologies Streamlining the Crypto User Experience
    ...
  • Why is Ninoy Aquino Day important to you? Join Rappler’s chat on August 21!
    Hi daily! Who is Ninoy Aquino to you? What lessons from his life still spea...
  • What do you think about BBM’s 3rd year in office? Join the convos!
    Hi, daily! With the State of the Nation Address (SONA) coming up on July 28...

Search This Blog

  • Home

About Me

Daily Newsletters PH
View my complete profile

Report Abuse

Labels

  • Last Minute Online News

Blog Archive

  • April 2026 (1)
  • February 2026 (1)
  • January 2026 (7)
  • December 2025 (8)
  • November 2025 (4)
  • October 2025 (2)
  • September 2025 (1)
  • August 2025 (2)
  • July 2025 (5)
  • June 2025 (3)
  • May 2025 (2)
  • April 2025 (2)
  • February 2025 (2)
  • December 2024 (1)
  • October 2024 (2)
  • September 2024 (1459)
  • August 2024 (1360)
  • July 2024 (1614)
  • June 2024 (1394)
  • May 2024 (1376)
  • April 2024 (1440)
  • March 2024 (1688)
  • February 2024 (2833)
  • January 2024 (3130)
  • December 2023 (3057)
  • November 2023 (2826)
  • October 2023 (2228)
  • September 2023 (2118)
  • August 2023 (2611)
  • July 2023 (2736)
  • June 2023 (2844)
  • May 2023 (2749)
  • April 2023 (2407)
  • March 2023 (2810)
  • February 2023 (2508)
  • January 2023 (3052)
  • December 2022 (2844)
  • November 2022 (2673)
  • October 2022 (2196)
  • September 2022 (1973)
  • August 2022 (2306)
  • July 2022 (2294)
  • June 2022 (2363)
  • May 2022 (2299)
  • April 2022 (2233)
  • March 2022 (1993)
  • February 2022 (1358)
  • January 2022 (1323)
  • December 2021 (2064)
  • November 2021 (3141)
  • October 2021 (3240)
  • September 2021 (3135)
  • August 2021 (1782)
  • May 2021 (136)
  • April 2021 (294)
Simple theme. Powered by Blogger.