github / github/codeql

Rust for Web 3.0

オープン
#20,456 コメント 2 件 リアクション 1 件 担当者 0 名 GitHub で見る
question
主要言語
CodeQL
スター
10.1k
フォーク
2.1k
平均マージ
2日 15時間
マージ済み PR(30日)
141

説明

**Description of the issue**

* Given Rust's growing adoption in Web3 and DeFi ecosystems, I’d like to propose adding new CodeQL queries that target recurring vulnerability patterns specific to these domains—such as unchecked authority, unsafe deserialization, and CPI-based reentrancy. These issues often follow consistent structures and could be systematically detected to improve security coverage for Rust smart contracts.

I’d love to contribute to expanding CodeQL’s coverage for Rust-based DeFi vulnerabilities since I have participated in many rust audit contest

コントリビューションガイド

コントリビューションガイドを開く

調査の方向性

この Issue ではファイル、テスト、エントリポイントが指定されていません。まず、リポジトリに既にある Rust クエリのカバレッジを確認し、提案を unchecked-authority、unsafe-deserialization、または CPI-reentrancy の具体的なパターンに絞り込んでください。完了とするには、選択した脆弱性パターンに対する、定義済みでテスト可能な CodeQL クエリのセットが必要です。

索引モデルが issue の本文から書いたものです。

評価

技術スタック
rust
領域
blockchain, security
issue の種類
機能追加
難易度
5/5
見積もり時間
1週間以上
活発さ
停滞
明瞭さ
説明が足りない
初心者へのやさしさ
25/100

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。