github / github/codeql

Rust for Web 3.0

未關閉
#20,456 2 則留言 1 個 reaction 已指派 0 人 在 GitHub 檢視
question
主要語言
CodeQL
星號
10.1k
分支
2.1k
平均合併
2 天 15 小時
30 天內合併 PR
141

描述

**Description of the issue**

* Given Rust's growing adoption in Web3 and DeFi ecosystems, I’d like to propose adding new CodeQL queries that target recurring vulnerability patterns specific to these domains—such as unchecked authority, unsafe deserialization, and CPI-based reentrancy. These issues often follow consistent structures and could be systematically detected to improve security coverage for Rust smart contracts.

I’d love to contribute to expanding CodeQL’s coverage for Rust-based DeFi vulnerabilities since I have participated in many rust audit contest

貢獻指南

開啟貢獻指南

研究方向

The issue names no files, tests, or entry points. Start by reviewing the repository’s existing Rust query coverage and narrowing the proposal to specific unchecked-authority, unsafe-deserialization, or CPI-reentrancy patterns. Done would require a defined, testable set of CodeQL queries for the selected vulnerability patterns.

由索引模型根據 Issue 內容生成。

評估

技術堆疊
rust
領域
blockchain, security
Issue 類型
功能
難度
5/5
預估耗時
一週以上
活躍度
停滯
描述清晰度
需要釐清
新手友好度
25/100

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。