Rust for Web 3.0
- 主要言語
- CodeQL
- スター
- 10.1k
- フォーク
- 2.1k
- 平均マージ
- 2日 15時間
- マージ済み PR(30日)
- 141
説明
**Description of the issue**
* Given Rust's growing adoption in Web3 and DeFi ecosystems, I’d like to propose adding new CodeQL queries that target recurring vulnerability patterns specific to these domains—such as unchecked authority, unsafe deserialization, and CPI-based reentrancy. These issues often follow consistent structures and could be systematically detected to improve security coverage for Rust smart contracts.
I’d love to contribute to expanding CodeQL’s coverage for Rust-based DeFi vulnerabilities since I have participated in many rust audit contest
コントリビューションガイド
調査の方向性
この Issue ではファイル、テスト、エントリポイントが指定されていません。まず、リポジトリに既にある Rust クエリのカバレッジを確認し、提案を unchecked-authority、unsafe-deserialization、または CPI-reentrancy の具体的なパターンに絞り込んでください。完了とするには、選択した脆弱性パターンに対する、定義済みでテスト可能な CodeQL クエリのセットが必要です。
索引モデルが issue の本文から書いたものです。
評価
- 技術スタック
- rust
- 領域
- blockchain, security
- issue の種類
- 機能追加
- 難易度
- 5/5
- 見積もり時間
- 1週間以上
- 活発さ
- 停滞
- 明瞭さ
- 説明が足りない
- 初心者へのやさしさ
- 25/100