Skip to content

johnsaigle/trophy-case

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

53 Commits
 
 
 
 
 
 

Repository files navigation

Overview

This is a loose archive of security work I've done for open-source projects, including security engineering and source code reviews.

Code Review and Security Engineering

As part of Asymmetric Research

Wormhole

M0 Foundation

(Pull requests labelled "AR" --> Asymmetric Research)

Stacks

Commonware

Other Projects

McGill University (2015-2020)

LORIS Neuroimaging Software (407 merged PRs, 207 issues)

Audit Reports

Formal audit reports for which I was the primary auditor.

Title Organization Type Programming Language Link
BoostyLabs Tricorn Bridge Server BoostyLabs Bridge, EVM Go 📒
ZetaChain Node Audit ZetaChain Cosmos Node Audit, Bridge, Bitcoin, Ethereum Go, Solidity 📒
Groth16 Verifier Audit MystenLabs (Sui Foundation) Cryptography, ZK Rust 📒
Mars Protocol - Custom Modules Mars Protocol Cosmos node, Governance, DeFi Go 📒
Maya Node - Audit MayaChain Cosmos node Go 📒
Maya Node - ETH Router MayaChain Cosmos module, DeFi Go 📒
Maya Node - Liquidity Auction MayaChain Cosmos module, DeFi Go 📒
Sifchain - CLP Update Sifchain Cosmos module, DeFi Go 📒
Sifchain - Margin Sifchain Cosmos module, DeFi Go 📒

Technical Writing

Personal website: https://johnsaigle.com

Asymmetric Research

Halborn

Tools

  • locked-in -- Lint for unsafe package installation patterns that could lead to supply-chain attacks.
  • go-unmaintained -- Find abandoned packages via go.mod.
  • Anchor version detector -- Detect or infer the Anchor, Solana, and Rust versions needed for an Anchor project.
  • Scary Strings -- If these strings are in your code, you might have a problem!
  • Oblique Strategies for Hackers -- A deck of cards created to stimulate and inspire hackers. (Inspired by Brian Eno's project.)

About

Archive of open-source security work (coding, hacking, writing)

Resources

Stars

Watchers

Forks

Contributors