Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
Home»HACKING NEWS»Brahma: Console v2 Audit Summary
HACKING NEWS

Brahma: Console v2 Audit Summary

By Crypto FlexsNovember 24, 20232 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Brahma: Console v2 Audit Summary
Share
Facebook Twitter LinkedIn Pinterest Email

brahma console It is a storage and DeFi execution environment built as follows: safe Used as a custody rail, it enables granular access control through transaction policies and roles, as well as automated execution.

Brahma leveraged the Ackee Blockchain to perform a security review of commit 3578883 of the Brahma protocol with total time donations. 8 engineering days in the period between September 25th and October 5, 2023.

methodology

We began our review using a static analysis tool called Woke. We then took a closer look at the logic of the contract. Used Woke testing framework for testing and fuzzing.

We prepared a fuzz test covering the entire project, which yielded H1 and M1 problems.

During the review process, we paid special attention to the following:

  • All kinds of signature validation and testing
  • Check for possible registry manipulation
  • Check for possible replay attacks
  • Ensures that guards are not bypassed or lead to DoS
  • Ensure access controls are neither too relaxed nor too strict
  • Detect possible reentrancy in your code
  • I’m looking for common problems like data validation.

range

The audit was performed on commit 3578883 and scoped:

  • AddressProvider.sol
  • AddressProviderService.sol
  • constant.sol
  • ExecutorPlugin.sol
  • PolicyValidator.sol
  • SafeDeployer.sol
  • SafeEnabler.sol
  • SafeModerator.sol
  • SafeModeratorOverridable.sol
  • TransactionValidator.sol
  • ExecutorRegistry.sol
  • PolicyRegistry.sol
  • WalletRegistry.sol
  • SafeHelper.sol
  • TypeHashHelper.sol

For revision 1.1, a review was performed on the specified commit (4589ec4) and the scope was only results.

result

Here we have our result.

critical severity

No critical severity issues were found.

Severity High

H1: Console Permanent Denial of Service

medium severity

M1: _isGuardBeingRemoved check malfunction

low severity

L1: You can enable Console Guard with zero policy.

warning severity

W1: Approved addresses cannot be revoked.

W2: CallType in different order than safety task

W3: The registry address cannot be changed.

Information Severity

I1: old document

conclusion

Here are the results of our review: 7 findingsup to information to High Seriousness. The most serious thing discovered through fuzz testing was the possibility of denial of service (H1). Otherwise, the codebase is good quality and well designed.

Currently, H1 and M1 issues have been resolved by the Brahma team.

We recommended to Brahma:

  • Update documentation according to the new codebase.
  • Addresses all other reported issues.

Ackee blockchain is full steer You can find the audit report with a more detailed description of all findings and recommendations. here.

We were happy to give our thanks. steer We look forward to working with them again.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

CME Group Launches CFTC Regulated Solana and XRP Options

October 13, 2025

Foundry vs Echidna vs Wake: Fuzz Reduction Comparison

October 11, 2025

Cryptocurrency trader, OTC fraud claims $ 1.4 million losses, guessing due to KUCOIN deposits

October 7, 2025
Add A Comment

Comments are closed.

Recent Posts

CME Group Launches CFTC Regulated Solana and XRP Options

October 13, 2025

Eightco Holdings Inc. ($ORBS) Makes Strategic Investment Into Mythical Games To Accelerate Human Verification And Digital Identity In Gaming

October 13, 2025

Jiuzi Holdings, Inc. (JZXN) Secures 100 Bitcoin Via Private Placement, Signaling New Phase In Crypto Treasury Deployment

October 13, 2025

Collaboration Across Bybit, DigiFT And UBS UMINT Expands Collateral Solution For Institutions

October 13, 2025

BitMine Immersion (BMNR) Announces ETH Holdings Exceeding 3.03 Million Tokens And Total Crypto And Cash Holdings Of $12.9 Billion

October 13, 2025

Phemex Announces Halloween Futures Trading Festival With 200,000 USDT Prize Pool

October 13, 2025

ViaBTC Unveils Enhanced Collateralized Loan Service For Global Miners

October 13, 2025

Tapbit secures strong presence at TOKEN2049 in Singapore

October 13, 2025

Tapbit Delivers A Strong Presence At TOKEN2049 Singapore

October 13, 2025

Touareg Group Expands Global Presence With Establishment Of U.S. Technology Subsidiary

October 13, 2025

Cardano (ADA) Faces Selling Pressure – Is This the Start of a Trend?

October 12, 2025

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

CME Group Launches CFTC Regulated Solana and XRP Options

October 13, 2025

Eightco Holdings Inc. ($ORBS) Makes Strategic Investment Into Mythical Games To Accelerate Human Verification And Digital Identity In Gaming

October 13, 2025

Jiuzi Holdings, Inc. (JZXN) Secures 100 Bitcoin Via Private Placement, Signaling New Phase In Crypto Treasury Deployment

October 13, 2025
Most Popular

AURA raises $ 5.5 million seed rounds to verify the AI ​​model and accelerate the rental market.

March 13, 2025

Shadow Token has surged 20% since its listing on Coinbase.

April 9, 2024

BNB Chain has launched a DAU incentive program, offering monthly prizes of up to $200,000.

December 7, 2023
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2025 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.