Quantstamp_RT-Monitor_Progress Report_Q4 2021

Quantstamp_RT-Monitor_Progress Report_Q4 2021

Summary

Quantstamp provided a Real-Time Security Monitoring Solution (RT-Monitor) to detect any abnormal transactions for the Klaytn blockchain. We customized the different types of analyses based on the needs of Klaytn and on the advice of its team. We were able to build a novel and new way to analyze Klaytn tokens and smart contracts.

RT-Monitor monitors for overflow issues (that may occur due to malicious minting or the batch-overflow bug), mint/burn events, and contract owner changes. As the RT-Monitor has been in production for Klaytn since December 2020, Klaytn has enhanced security monitoring abilities. Klaytn ecosystem and users benefit from our experience as researchers, software engineers, and security auditors. Quantstamp has observed the best processes and models for real-time monitoring solutions and other security measures, these methods have been implemented into the Klaytn real-time security monitoring solution.

This progress report summarizes the major maintenance and support activities during the fourth quarter of 2021.

Project Milestones and Schedule

Continued maintenance of the Real-Time Security Monitoring Solution.

Key Deliverables

Status Update

Monitored Tokens: 21

ABL, att, BFCK, BPT, CLBK, COSM, DTA, ISR, KSP, KDAI, MNR, KETH, KORC, KUSDT, KWBTC, PXL, WIKEN, SSX, TEMCO, KUSD, SKLAY

Maintenance & Supports:

  • Checks have failed for some contracts as below:

The same problem continues with [SKLAY] and [BPT] as reported in the previous quarters.

Proposal for UI/UX Improvement:

The monitor was designed to monitor up to 25 tokens and notify some pre-designated people with good technical understanding of the events detected. Now it needs to be improved as there are already over 150 tokens available on Klaytn blockchain and any abnormal events need to be publicly and transparently available to the whole Klayten ecosystem and community members in a more easy-to-search and easy-to-understand manner as there are many community members who don’t have good technical knowledge.

Therefore a proposal was submitted to renew the license of the Klaytn RT-Monitor and further improve the UI/UX of the Klaytn RT-Monitor to benefit the whole Klaytn ecosystem and community members.

Collaboration with Klaytn Foundation:

Agreed to work with the Klaytn Foundation Marketing Team to increase the Klaytn community’s awareness of the RT-Monitor through some collaborative works. (eg. Place the link of the RT-Monitor on the Foundation website, Tweets, etc.)

Budget

  • Q4 2021 Licensing Fee: 30,000 USD