LayerZero CEO responds to vulnerability rumors: There is no basis for the inference, and the protocol is secure

2024-07-01 11:17

BlockBeats news, on July 1, LayerZero Labs co-founder and CEO Bryan Pellegrino responded to the news of "LayerZero suspected serious vulnerabilities" on the social platform, saying, "This is completely unfounded. First of all, all the codes you mentioned were pushed in 2022. Second, all of these are application configurations, not protocol configurations.


The payload size limit is part of the application's security configuration, which sets DVNs. Even in the latest version, the application can override this limit. In other words, if the application cannot override this configuration, then LayerZero can prevent application messaging by configuring the "payload limit" to 0, which will violate the entire design principle of the protocol.


As stated in the initial response, just fork and test, as I am sure you have confirmed at the time, this cannot be executed. If it can be executed, it is because an application specifically chooses to set it up this way, just like an application on Ethereum chooses to write a wrong contract configuration.


Not only is this not a vulnerability, it is part of the protocol design. Any messaging protocol that has this configuration engraved into the protocol can now censor any application. The two are inseparable. We believe in the censorship resistance technology track. ”

Original link
举报 Correction/Report
Correction/Report
Submit
Add Library
Visible to myself only
Public
Save
Choose Library
Add Library
Cancel
Finish