zksync-era

1 article
sort: new top best
clear filter
0 7/10
vulnerability

ChainLight researchers discovered a critical soundness bug in zkSync Era's ZK-circuit that allowed malicious provers to generate fake proofs for invalidly executed blocks. The bug was responsibly disclosed to Matter Labs, which deployed a fix and awarded a 50K USDC bounty.

zkSync Era ChainLight Matter Labs EraVM zk_evm sync_vm L2EthToken MsgValueSimulator Code4rena
medium.com · ChainLight · 19 hours ago · details