[Grant Update] Zcash Ecosystem Security Lead

Thank you for doing this audit by request, appreciate it!

:zebra: :shield: :hearts:

4 Likes

This is our February report:

Security Audits:

  • We completed the audit of the Zcash integration for the Keystone Wallet.
  • We started and completed the audit of the Frost Server + Client (Demo)
  • We started and completed the audit of the Kotlin + Swift Payment URIs
  • We started the audit of P2PE2E
  • We started the audit of Coin Voting 2.0
  • We published the audit report for the Decred DEX Zcash (ZEC) integration

Consultations:

  • We did not complete any short consultation sessions in February.

Community engagement:

  • We have been planning participation in some events to highlight Zcash, the community and our role, from the perspective of security diligence.
  • We continued our communications with the projects in the ecosystem, especially with so many audits in parallel. estimated a few upcoming reviews and have been planning with the ZCG.

It was a busy month for us :sweat_smile: If you have any security needs, especially for Q2 2025, please reach out to us asap!

8 Likes

On March 12, we’ll be participating in a panel, “Enhancing Zcash Security w/ Least Authority and Zcash” hosted by the Open Source Technology Improvement Fund (OSTIF). And @pacu will also be talking with us!

Sign up to join the event: Enhancing Zcash Security w/ Least Authority and Zcash · Zoom · Luma

9 Likes

This is our March report:

Security Audits:

Consultations:

  • We did not complete any short consultation sessions.

Community engagement:

  • We are working with the teams to address issues found and suggestions made before publishing more Final Audit Reports.

If you have any security needs, especially for Q2 or Q3, please reach out to us!

9 Likes

This is our April report:

Security Audits:

Consultations:

  • We did not complete any short consultation sessions.

Community engagement:

  • We are working with the teams to address issues found and suggestions made before publishing more Final Audit Reports.

As usual, if you have any security needs, please reach out to us!

10 Likes

Can you audit my fork of Zebra launcher that adds a map visualization of peer nodes?

6 Likes

Hi @Milton. I’ve forwarded your request to Least Authority and asked them to estimate how many hours the audit would take. We should hear back from them early next week and will follow up with you then. Thanks.

2 Likes

This is our May report:

Security Audits:

  • We checked on the status of a few outstanding verification reviews and estimated one new potential audit.

Consultations:

  • We did not complete any short consultation sessions.

Community engagement:

  • As noted above, we are working with some teams to address issues found and suggestions made for verification reviews necessary before publishing more Final Audit Reports.

If you have any security needs or would like to plan an audit for 2025, please reach out to us!

7 Likes