I stayed late at the office to explain how security testing for smart contract works. Read our summary here:https://forum.zeppelin.solutions/t/using-automatic-analysis-tools-with-makerdao-contracts/1021/2 …
-
-
Replying to @dguido
we all agree manual code review is necessary but if automated tools report the boring issues we can have more time to review the business logic1 reply 0 retweets 3 likes -
I think I don't follow your argument, we were trying to catch a business logic error
2 replies 0 retweets 0 likes
Automated tools tighten the constraints on issues you need to discover by hand. If you know their limitations, they help you extend your reach into a codebase within a limited time window.
10:55 PM - 12 Jul 2019
0 replies
0 retweets
3 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.