Skip to content

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

10 Commits
 
 
 
 
 
 

Repository files navigation

TrustSec Bounty Disclosures

Educational proof-of-concepts and supporting material for TrustSec Web3 bounty disclosures.

Disclosures

Bounty Summary TrustSec blog
Alchemix TokeAutoETH Critical Critical direct theft issue in Alchemix V3 where permissionless TokeAutoETH forced exits could realize seven figure strategy losses. Awarded $300,000. Blog post

Adding a disclosure

  1. Copy bounty-template/ into a new directory named after the bounty (for example, protocol-name-vulnerability-slug/).
  2. Replace every {{placeholder}} token in the copied files.
  3. Put the customized reproduction guide in poc/INSTRUCTIONS.md and place all required PoC code, fixtures, and other resources alongside it.
  4. Add a row for the disclosure to the table above.

Do not include secrets, private keys, production credentials, or any material that enables unauthorized use.

About

Storage of TrustSec bounties including PoCs, strictly for educational purposes

Resources

Stars

1 star

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages