ChainSecurity, Certora and zeroShadow Updates

Proposal Updates Jan 21st

Proposals 522 and 523 have been reviewed, and no issues were found.

Proposal Updates Jan 28th

Proposals 524, 525, 526, 527, and 528 have been reviewed, and no issues were found.

Note that seatbelt simulations fail for proposals 524 and 525 due to message passing to Ronin. Price registries are not updated properly in the simulation environment, causing the simulations to fail. We’re closely monitoring these proposals and expect them to be executable on-chain when the price registries are up-to-date.

Proposal Updates Feb 3rd

Proposals 524 and 525 are currently not executable. ETH-nominated fees for message passing to Ronin have increased, exceeding the hardcoded fee paid by the proposals. As the proposals are not time-sensitive, we will wait about a week to see if the fees normalize and the proposals can be executed. Otherwise, updated proposals will be resubmitted.

Proposal 529 has been reviewed, and no issues were found.

1 Like

Proposal Updates Feb 6th

Proposals 530, 531, 532, 533 and 534 have been reviewed and no issues were found.

1 Like

Proposal Updates Feb 16th

Proposals 535, 536, 537 and 538 have been reviewed and no issues were found.

Proposal Updates Feb 23rd

Proposals 539, 540, 541, 542, 543 and 544 were reviewed and no issues were found. Proposals 539 and 540 are resubmissions of 524 and 525, with the only difference being that the required fee is paid in GHO instead of ETH, making them resistant to unexpected market movements.

1 Like

Proposal Updates Feb 25th

Proposal 546 was reviewed and no issues were found. Proposal 545 was cancelled due to a missing description.

Proposal Updates March 3rd

Proposals 547 and 548 have been reviewed and no security issues were found.

Note on Proposal 548: The supply cap update for weETH on the USDS comet included in this proposal will not take effect upon execution, as no comet upgrade is triggered afterward. Gauntlet is aware of this and has determined that canceling the proposal is unnecessary since there are no security implications.

Proposal Updates March 6th

Proposal 549 has been reviewed and no issues were found. Note that the proposal addresses the minor issue of 548.

1 Like

Proposal Updates March 10th

Proposals 550 and 551 were reviewed and no issues were found.

Notes:

  1. Proposal 548 is not executable as it exceeds Ethereum’s transaction gas limit. This was not flagged earlier due to a bug in the backend service used by our simulation tools. We have since extended our tooling to handle these cases.
  2. As previously noted, Proposal 549, besides setting supply caps, would have also fixed the issue in 548. However, since 548 is not executable and 549 was still pending (no voting had started), we cancelled it to keep each proposal self-contained.

Redirect incident

We are working on a post-mortem for the redirect incident and will publish it soon.

1 Like

Proposal Updates March 13th

Proposal 552 has been reviewed and no issues were found.

Multisig transactions

All the transaction mentioned in this post have been reviewed.

Redirect incident post-mortem

We published the post-mortem of the redirect incident which can be found here.

1 Like