BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Solana JIT: Lessons from fuzzing a smart-contract co
 mpiler\n   When: Sunday\, Aug 14\, 14:00 - 14:45 PDT\n   Where: Caesars Fo
 rum - Alliance 301-309\, 321 (Track 4) - [1]Map\n\n   SpeakerBio:Thomas Ro
 th\n   Thomas Roth is a security researcher from Germany. In the past he h
 as\n   published research on topics like TrustZone\, fault injection\, pay
 ment\n   terminals\, cryptocurrency-wallets and embedded security.\n\n   D
 escription:\n   Solana is a blockchain with a $37 billion dollar market ca
 p with the\n   security of that chain relying on the security of the smart
  contracts\n   on the chain - and we found very little research on the act
 ual\n   execution environment of those contracts. In contrast to Ethereum\
 ,\n   where contracts are mostly written in Solidity and then compiled to\
 n   the Ethereum Virtual Machine\, Solana uses a different approach: Solan
 a\n   contracts can be written in C\, Rust\, and C++\, and are compiled to
 \n   eBPF. Underneath the hood\, Solana uses rBPF: A Rust BPF implementati
 on\n   with a just-in-time compiler. Given the security history of eBPF in
 \n   the Linux kernel\, and the lack of previous public\, low-level Solana
 \n   research\, we decided to dig deeper: We built Solana\n   reverse-engi
 neering tooling and fuzzing harnesses as we slowly dug our\n   way into th
 e JIT - eventually discovering multiple out-of-bounds\n   vulnerabilities.
 \n   '\n\n   1. https://defcon.outel.org/consolidated_page.html#CaesarsAll
 ianceBR\n\n\n
DTEND:20220814T214500Z
DTSTART:20220814T210000Z
LOCATION:DC - Caesars Forum - Alliance 301-309\, 321 (Track 4)
SUMMARY:Solana JIT: Lessons from fuzzing a smart-contract compiler
END:VEVENT
END:VCALENDAR
