Worldcoin released a security audit report and most of the related issues have been fixed.
2023-07-29 00:40:47
Odaily News: Worldcoin releases security audit report. Starting from April 2023, auditing firms Nethermind and Least Authority conducted two separate security audits on the protocol.
Nethermind primarily audited the protocol's smart contracts, including the World ID contract, World ID state bridge, World ID example airdrop contract, Worldcoin token (WLD) grant contract, WLD ERC-20 token contract, and associated ownership wallets. Out of the 26 issues identified during this security assessment, 92.6% (24 issues) were determined to be fixed after the verification stage, with one issue mitigated and the remaining issue confirmed.
Least Authority focused on auditing the protocol's use of cryptography, including its use of the Semaphore protocol and enhancements made to expand the protocol in a more gas-efficient manner. These included cryptographic design and implementation of the protocol, Rust implementation of the Semaphore protocol, and Go implementation of the Semaphore Merkle Tree Batcher (SMTB). Least Authority uncovered three issues and provided six recommendations, all of which have been "resolved or planned for resolution."
Least Authority stated, "We found that the cryptographic components of the Worldcoin protocol were overall carefully designed and implemented."
Nethermind primarily audited the protocol's smart contracts, including the World ID contract, World ID state bridge, World ID example airdrop contract, Worldcoin token (WLD) grant contract, WLD ERC-20 token contract, and associated ownership wallets. Out of the 26 issues identified during this security assessment, 92.6% (24 issues) were determined to be fixed after the verification stage, with one issue mitigated and the remaining issue confirmed.
Least Authority focused on auditing the protocol's use of cryptography, including its use of the Semaphore protocol and enhancements made to expand the protocol in a more gas-efficient manner. These included cryptographic design and implementation of the protocol, Rust implementation of the Semaphore protocol, and Go implementation of the Semaphore Merkle Tree Batcher (SMTB). Least Authority uncovered three issues and provided six recommendations, all of which have been "resolved or planned for resolution."
Least Authority stated, "We found that the cryptographic components of the Worldcoin protocol were overall carefully designed and implemented."
Download Odaily App
Let Some People Understand Web3.0 First
