With the highly anticipated Shapella update just around the corner, the Ethereum Foundation has increased the bug bounty.
As per the last call from the developers, the bounty was updated as part of last minute testing efforts.
bug bounty
At the 105th All Core Developers Consensus (ACDC) call, Ethereum Foundation security researcher Fredrik Svantes, revealed that the maximum bug bounty for identifying a vulnerability in the Shanghai/Capella update has doubled from $250,000 to $500,000 between now and the time of the fork.
This isn’t the first time the organization has increased its bug bounty program. The Ethereum Foundation announced that it quadrupled payouts ahead of the blockchain’s transition to proof-of-stake for all “vulnerability merger-related bounties” for white hats testing the network.
The bug bounty program offers financial compensation to individuals or groups that find security flaws or vulnerabilities in an organization’s systems. In the case of Ethereum, the rewards depend on severity, which is calculated according to the OWASP risk scoring model based on network impact and probability.
Their bug bounty program includes the strength of the protocols (the blockchain consensus model, wired and peer-to-peer protocols, proof-of-stake, etc.) and protocol/implementation compliance with respect to to network security and consensus integrity. It also includes classic client security and the security of cryptographic primitives.
On the other hand, targets such as infrastructure (including web pages, DNS, email, etc.), as well as ERC20 contract bugs, are not part of the bounty scope.
Ethereum Shapella Update
The final dress rehearsal for the Shapella upgrade took place on March 14 on the Goerli testnet, setting the stage for staked ETH withdrawals to go live on the mainnet.
The Goerli testnet initially experienced low network engagement after its upgrade. During this time, less than two-thirds of the validators had updated their software clients on time, while the majority of testnet validators updated their nodes after the update. Shapella was terminated the next day, allowing Goerli users to fully or partially withdraw the staked ETH from the Beacon Chain from the testnet.
Preparation for the upgrade, which is also known as Shanghai-Capella, is in full swing and is scheduled to go live on April 12 at block number 6,209,536. While the main focus is on Ethereum Improvement Proposal-4895, it will also cover other improvements that aim to optimize gas costs for certain activities.
Also, the developers encouraged all node operators on the Ethereum network to update their nodes before the upgrade.
Binance Free $100 (Exclusive) – Use this link to sign up to receive $100 free and 10% off your first month’s fees for Binance Futures (terms).
PrimeXBT Special Offer – Use this link to sign up and enter the code POTATO50 to receive up to $7,000 on your deposits.