Gate News bot message, the Sui official announced an upgrade to its bug bounty program. The current bug bounty program aims to reward researchers and reporters who report vulnerabilities affecting Sui itself. The bounty amount can reach up to 1 million dollars, with the specific amount depending on the validity of the reported vulnerability and its potential impact.
Sui stated that the current bug bounty program does not cover issues found in Sui applications, and most L1 bug bounty programs are similar. Moreover, the L1 teams cannot reasonably conduct comprehensive audits or take responsibility for the numerous protocols built on their platforms, which is understandable. However, while this has become the norm, it does not mean that improvements cannot be made.
Although the current bug bounty program mainly focuses on the Sui core infrastructure and does not cover protocols, applications, or smart contracts built on it, the scope of the bounty will be expanded in the next six months to pay additional bounties for any protocol with a TVL exceeding $50 million, helping to incentivize bounty hunters to identify errors in the code of large protocols like Cetus built on Sui, in order to prevent such security incidents from occurring in the future.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
Sui plans to include ecological protocol with TVL exceeding 50 million USD in the bug bounty program.
Gate News bot message, the Sui official announced an upgrade to its bug bounty program. The current bug bounty program aims to reward researchers and reporters who report vulnerabilities affecting Sui itself. The bounty amount can reach up to 1 million dollars, with the specific amount depending on the validity of the reported vulnerability and its potential impact.
Sui stated that the current bug bounty program does not cover issues found in Sui applications, and most L1 bug bounty programs are similar. Moreover, the L1 teams cannot reasonably conduct comprehensive audits or take responsibility for the numerous protocols built on their platforms, which is understandable. However, while this has become the norm, it does not mean that improvements cannot be made.
Although the current bug bounty program mainly focuses on the Sui core infrastructure and does not cover protocols, applications, or smart contracts built on it, the scope of the bounty will be expanded in the next six months to pay additional bounties for any protocol with a TVL exceeding $50 million, helping to incentivize bounty hunters to identify errors in the code of large protocols like Cetus built on Sui, in order to prevent such security incidents from occurring in the future.