
Jota Carpanelli
@holajotola
blockchain security reseacher 🧉. head of security @OpenZeppelin. opinions my own.
ID: 157792589
20-06-2010 22:30:20
390 Tweet
1,1K Followers
730 Following

OpenZeppelin has completed three important audits for zksync: - ZK Token, Capped Minter, and Merkle Distributor Audit - Distributor Diff Audit - ZKsync Paymaster Audit Thank you for helping keep everything secure! Links to the full audit reports in the next tweet!


First of many Notorious Bug Digests by OpenZeppelin 🔥🔥

In response to the the WazirX, Radiant, and Bybit exploits, sudo rm -rf --no-preserve-root / developed the Safe Hash Preview script, helping users to verify Safe transactions before signing. We’ve just launched a user-friendly interface to make it easily accessible: safeutils.openzeppelin.com









I've been testing EIP-7702 delegations using OpenZeppelin Accounts and Paymasters to batch mint + approve + deposit Life is good github.com/ernestognw/aa-…



Critical Vulnerability in Uniswap V4 Found by OpenZeppelin - Attacker can drain the pool if the native token has ERC20 representation. For example: CELO token The CELO address is synced once, and can be settled 2 times for native currency and ERC20 blog.openzeppelin.com/uniswap-v4-cor…


