Al-Qa'qa' (@al_qa_qa) 's Twitter Profile
Al-Qa'qa'

@al_qa_qa

Smart Contract Auditor | Smart Contract Security Researcher |
DM for private audits

ID: 1687464825448812544

linkhttps://github.com/Al-Qa-qa/audits calendar_today04-08-2023 14:06:05

2,2K Tweet

1,1K Followers

216 Following

Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

it is 20 Sept 2025 The year nears its end, and Contests volume is evolving. Although the prev months the contests volume was small, the market is healing, and we can see +20 contest are running rn. - Rust and Solidity contests - more than on L1 contest including Ethereum itself

it is 20 Sept 2025 The year nears its end, and Contests volume is evolving.

Although the prev months the contests volume was small, the market is healing, and we can see +20 contest are running rn.

- Rust and Solidity contests
- more than on L1 contest including Ethereum itself
Zellic (@zellic_io) 's Twitter Profile Photo

Bad auditors miss obvious bugs. We built an AI tool that finds them. Introducing V12: the only autonomous Solidity auditor that actually finds Highs and Criticals. We'll be releasing it for free. V12 finds Crits in Zellic audits, High/Mediums in Cantina, and a bug in Pendle.

Bad auditors miss obvious bugs. We built an AI tool that finds them.

Introducing V12: the only autonomous Solidity auditor that actually finds Highs and Criticals.

We'll be releasing it for free.

V12 finds Crits in Zellic audits, High/Mediums in Cantina, and a bug in Pendle.
Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

Using Compact Signature, which is the EIP-2098 can result in reply attacks for reserved hash reply protection design. EIP-2098 simply instead of passing signature as 65 bytes - r: 32 bytes - s: 32 bytes - v: 1 byte Instead it represent the V included in S value where it is the

Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

UniswapV4 features over V2/V3 1⃣ External Hook Developers can develop custom hooks that enhance the pool and customize its work, including executing large orders, limit orders, custom oracle implementation etc... There are two main types of Hooks: Active Hooks and Hook-managed

Shieldify Security (@shieldifysec) 's Twitter Profile Photo

New Account Abstraction (ERC-7579, EIP-712) is now public! Our team of Elite Auditors managed to find 4 Critical & High, 6 Medium and 8 Low findings and are all fixed! 🫡 Thank you for your trust 🤝 Etherspot 🐞 ! Read the report below 👇 github.com/shieldify-secu…

New Account Abstraction (ERC-7579, EIP-712) is now public! 

Our team of Elite Auditors managed to find 4 Critical & High, 6 Medium and 8 Low findings and are all fixed! 🫡

Thank you for your trust 🤝 <a href="/etherspot/">Etherspot 🐞</a> !

Read the report below 👇
github.com/shieldify-secu…
Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

Glad to hear this from you Dacian I always focus to take the full period of the audit, and not leaving any part unreviewed. Security Web3 is our purpose and we should do it as efficient as we can 🤝

Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

The more the hype of AI replacing Web3 auditors arises, the more I become confident that this is not going to occur. This is not in the current context, but I will try explaining my thoughts in a simple way. Let's categorize the issues into 3 different categories - Generic -

Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

The mitigation review process is important, the more efficient the Protocols developers are, the better the output we achieve. Working as a Web3 security researcher, I found that some developers do the mitigation review in an inefficient way, which hardens the process of

Arabs in Blockchain| العرب × بلوكتشين (@arabsinbc) 's Twitter Profile Photo

🚀 Egypt’s Web3 builders — this one’s for you! We’re hosting a special evening to connect, share ideas, and team up ahead of Forte-Hacks by Flow.com — a global hackathon with $250,000 in prizes 🧠💰 luma.com/54f7ai3s

🚀 Egypt’s Web3 builders — this one’s for you!
We’re hosting a special evening to connect, share ideas, and team up ahead of Forte-Hacks by <a href="/flow_blockchain/">Flow.com</a>  — a global hackathon with $250,000 in prizes 🧠💰
luma.com/54f7ai3s
Al-Qa'qa' (@al_qa_qa) 's Twitter Profile Photo

Important EIPs you should understand when auditing Smart Wallets. > EIP-712 (Typed structured data hashing and signing) > EIP-1271 (Smart wallet signature) > EIP-4337 (Account Abstraction) > EIP-7702 (EOA Smart Wallet) > EIP-7579 (Modular Smart Account)