Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
Home»HACKING NEWS»Summary of the Linestone Module Registry Audit
HACKING NEWS

Summary of the Linestone Module Registry Audit

By Crypto FlexsAugust 4, 20243 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Summary of the Linestone Module Registry Audit
Share
Facebook Twitter LinkedIn Pinterest Email

Rhinestone is dedicated to turning smart accounts into an open platform for innovation. They aim to create a secure and interoperable ecosystem of modules, facilitate permissionless smart account innovation, and enable developers to build powerful on-chain products with a seamless UX.

The module registry is the foundational layer of Rhinestone’s technology stack. Its primary function is to store on-chain security claims made by independent auditors, thereby enforcing standards and security assurances for users and developers.

Linestone has contracted with Ackee Blockchain to conduct a security review of the Linestone Module Registry for a total of 7 days from April 10, 2024 to April 19, 2024.

methodology

We started our review using static analysis tools. wake up With the Tools for Solidity VS Code extension. Then we delved deep into the logic of the contract. We used the Wake testing framework for testing and fuzzing.

During our review, we paid special attention to the following:

  • Verifying module deployment cannot be abused.
  • Detects possible reentrancy in your code.
  • Identify possible frontrunners,
  • Confirm denial of service attack,
  • Ensure that access control is neither too lax nor too strict.
  • I’m looking for general issues like data validation.

range

An audit was performed on the commit. 6f5e84aThe exact scope is the following files:

  • ./Core/Attestation.sol
  • ./core/AttestationManager.sol
  • ./core/modulemanager.sol
  • ./core/resolvermanager.sol
  • ./core/schemamanager.sol
  • ./core/signatureteststation.sol
  • ./core/trustmanager.sol
  • ./core/TrustManagerExternalAttesterList.sol
  • ./lib/AttestationLib.sol
  • ./lib/helpers.sol
  • ./lib/module distribution library.sol
  • ./lib/moduletypelibrary.sol
  • ./lib/stublib.sol
  • ./lib/trustlib.sol
  • ./common.sol
  • ./datatype.sol
  • ./registry.sol

result

Here we present our research findings.

Critical severity

No serious problems were found.

High severity

H1: threshold = 1 Optimized DoS

Medium severity

M1: Random call to factory

M2: The prover is not duplicate-removed.

M3: registerModule Front runner

M4: trustAttesters Depressed

Low severity

L1: Resolver 1-stage ownership transfer

Warning Severity

W1: Denial of distribution and attestation services

W2: Inconsistent rollback error

W3: EIP-712 Compliant

W4: findTrustedAttesters Revert if there is no prover

W5: trustAttesters No address verification

W6: Inconsistent data validation

W7: TrustLib High bit is not cleared

Information Severity

I1: Multiple interfaces

I2: Inconsistent parameter naming

I3: Duplicate code

I4: Modifier Placement

I5: There is no NatSpec documentation.

I6: _storeAttestation False comments

I7: NewTrustedAttesters event

conclusion

Our review yielded 20 findings ranging from informational to high severity.

Ackee Blockchain recommends Rhinestone as follows:

  • Remove optimization threshold = 1,
  • Separate factory logic into neutral contracts.
  • Addressing the risks of being a leader,
  • Implements two-step ownership transfer.
  • Addresses all other reported issues.

Ackee Blockchain’s full Rhinestone Audit Report, which includes a more detailed explanation of all findings and recommendations, can be found here.

We are very happy to have appreciated Rhinestone and look forward to working with you again in the future.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Morpho Network (MORPHO) is experiencing a service outage as users are facing rendering issues.

November 6, 2025

AI-based Fuzz Testing for Solidity using Wake Framework

November 4, 2025

Cryptocurrency Inheritance Update: October 2025

November 2, 2025
Add A Comment

Comments are closed.

Recent Posts

Tempo invests $25 million in Commonware modular blockchain vision.

November 8, 2025

Mantle Collaborates With Bybit And Backed To Bring U.S. Equities Onchain, Pioneering Next Trillion-Dollar Wave Of Tokenized Assets

November 7, 2025

XRP Targets $4.00 While Digitap Presale Seen As The Best Crypto To Buy Now

November 7, 2025

XRP Targets $4.00 While Digitap Presale Seen As The Best Crypto To Buy Now

November 7, 2025

Bybit PWM Posts 16.9% Fund Return As Crypto Markets Weather “Uptober” Shock

November 7, 2025

AI, MEME, And DeFi Drive +1625% Performance Surge

November 7, 2025

Spanish Lab Sells Forgotten $10,000 Bitcoin Stash for $10 Million

November 7, 2025

Can Bitcoin End the Q4 on a Positive Note? Here’s what the experts think

November 7, 2025

LP-Free Perpetuals Exchange Leverup Available Now, Powered By Monad

November 6, 2025

Sonami Announces Presale Developments And Layer 2 Expansion

November 6, 2025

Morpho Network (MORPHO) is experiencing a service outage as users are facing rendering issues.

November 6, 2025

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

Tempo invests $25 million in Commonware modular blockchain vision.

November 8, 2025

Mantle Collaborates With Bybit And Backed To Bring U.S. Equities Onchain, Pioneering Next Trillion-Dollar Wave Of Tokenized Assets

November 7, 2025

XRP Targets $4.00 While Digitap Presale Seen As The Best Crypto To Buy Now

November 7, 2025
Most Popular

IBM Research Announces Innovations to Accelerate Enterprise AI Training

September 23, 2024

The judge dismissed the counterclaim and ordered the artists to pay $9 million in the Bored Ape Yacht Club lawsuit.

February 4, 2024

Arthur Hayes predicts a 30% decline in Bitcoin price due to financial uncertainty.

January 8, 2024
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2025 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.