Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
Home»HACKING NEWS»Secure Social Recovery Module – Ackee Blockchain
HACKING NEWS

Secure Social Recovery Module – Ackee Blockchain

By Crypto FlexsAugust 20, 20243 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Secure Social Recovery Module – Ackee Blockchain
Share
Facebook Twitter LinkedIn Pinterest Email

Safe Smart Accounts is the most audited and battle-tested smart contract on Ethereum, protecting over $100 billion in assets. Safe Social Recovery Module is a subcomponent of the wallet that allows you to recover access to your wallet if your wallet keys are lost.

Safe was first implemented on Ackee Blockchain to conduct a security review of the Safe Social Recovery Module. Candid This is a two-day engineering schedule from June 6 to June 14, 2024.

methodology

We started our review using static analysis tools. Stay awake. Then we dug deep into the logic of the contract. We used the Wake test framework for testing and fuzzing.

During our review, we paid special attention to the following:

  • Verifying the recovery mechanism cannot be bypassed.
  • Verify that the system’s arithmetic is correct;
  • Detects possible reentrancy in your code.
  • Ensure that access control is neither too lax nor too strict.
  • I’m looking for general issues like data validation.

With fuzz testing, we created a differential model of the system in Python and defined several flows that executed all the functions and branches of the code. During execution, we verified certain assertions and checked the following invariants between the flows.

  • The guardian in the contract state matches the test model.
  • The owner of the contract state matches the test model.
  • The guardian threshold of the contract state does not exceed the number of guardians in the test model.
  • In the contract state, the threshold of owners does not exceed the number of owners of the test model.

range

An audit was performed on the commit. e6d45c8 The exact scope is the following files:

  • Contract/Module/SocialRecovery/SocialRecoveryModule.sol
  • Contract/Modules/Social Recovery/Storage/GuardianStorage.sol

result

Here we present our research findings.

Critical severity

No serious problems were found.

High severity

No high severity issues were found.

Medium severity

M1: You can take ownership of your wallet using other modules.

Low severity

No low severity issues were found.

Warning Severity

W1: Verified hashes are stored in the repository.

Information Severity

No information severity issues were found.

conclusion

Our review resulted in two findings, ranging from warning to medium severity. The most severe issue is the possibility of restoring wallets from other modules (see M1 issue). The codebase is overall of very high quality.

Ackee Blockchain safely recommends:

  • Addresses all reported issues.

Ackee Blockchain’s full security audit report, including a more detailed explanation of all findings and recommendations, can be found here.

We were very pleased to conduct the audit with Safe and look forward to continuing our collaboration in the future.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

ONDO price soars after SEC concludes confidential investigation with no charges

December 8, 2025

Vault12 launches open source capacitor plugin for quantum-safe data storage

December 4, 2025

Solana’s security and exchange protection measures were put in the spotlight following Korea’s Upbit hack.

December 2, 2025
Add A Comment

Comments are closed.

Recent Posts

Hacken Releases MEXC’s Audit, Confirms Full Asset Backing And Strengthened Transparency Standards

December 10, 2025

What happens when all Bitcoin is mined? 2140 Description

December 10, 2025

Cashie 2.0 Integrated X402, Turning Social Capital Into On-Chain Value

December 10, 2025

The Sandbox Ecosystem Welcomes Web3 Platform Corners, Beta Now Available To Coin Internet Content

December 9, 2025

BTCC Exchange Integrates With TradingView, Bringing Professional Trading Tools To Its 10 Million Global Users

December 9, 2025

Tether’s USDT stablecoin receives regulatory approval in Abu Dhabi

December 9, 2025

TrustLinq Seeks To Solve Cryptocurrency’s Multi-Billion Dollar Usability Problem

December 9, 2025

Ethereum inches toward a critical decision point: bullish breakout or deeper dive?

December 9, 2025

Superform brings institutional-level yields to everyday users with its new Stablecoin Neobank product.

December 9, 2025

I need to use a voucher with lights, is there a Linux application that can do this?

December 8, 2025

Bybit Institutional Sets The Stage For 2026 At High-Profile Abu Dhabi Gala

December 8, 2025

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

Hacken Releases MEXC’s Audit, Confirms Full Asset Backing And Strengthened Transparency Standards

December 10, 2025

What happens when all Bitcoin is mined? 2140 Description

December 10, 2025

Cashie 2.0 Integrated X402, Turning Social Capital Into On-Chain Value

December 10, 2025
Most Popular

Newly OKX-enabled Layer 2 Bridge Orbiter Finance Announces Its Own L2 Network

January 28, 2024

HKMA is a fraudulent website public warning connected to the octopus card

May 8, 2025

New Bitcoin ETF surpasses 300,000 BTC holdings in two months

February 27, 2024
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2025 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.