a16z crypto urges defi to adopt 'spec is law' for security

a16z Crypto has called for decentralized finance protocols to shift from 'code is law' to 'spec is law' to enhance security amid rising exploits. In a January 11 post, senior researcher Daejun Park advocated for standardised specifications and invariant checks to prevent hacks. This approach aims to mature the $168 billion sector by hard-coding safety guarantees.

Decentralized finance, or DeFi, faces ongoing threats from code exploits, with hackers stealing over $649 million last year, according to blockchain security firm Slowmist. Even established protocols like Balancer, operational on Ethereum since 2021, suffered a $128 million loss in November due to a code vulnerability. Developers are increasingly concerned about hackers leveraging artificial intelligence to identify weaknesses.

In response, a16z Crypto's Daejun Park proposed moving beyond reactive 'patch-after-the-hack' methods. He recommended embedding safety through standardised specifications that limit protocol actions and automatically reverse violating transactions. 'Almost every exploit to date would have tripped one of these checks during execution, potentially halting the hack,' Park wrote. 'So the once-popular idea of “code is law” evolves into “spec is law.”'

This concept, known as runtime enforcement or invariant checks, is gaining traction. Protocols such as Kamino, a Solana-based lending platform, integrated checks using Certora Prover in March 2023. The XRP Ledger, supporting the $120 billion XRP token, has also implemented them to safeguard against undetected bugs. 'Invariants should not trigger, but they ensure the XRP Ledger’s integrity from bugs yet to be discovered or even created,' its developers stated.

However, experts caution that invariant checks are not foolproof. Gonçalo Magalhães, head of security at Immunefi, noted they could raise transaction fees, deterring users in a cost-sensitive market. 'It’s not the silver bullet,' he said. Felix Wilhelm of Asymmetric Research added that crafting effective checks is challenging, as they may falsely trigger during normal operations or fail to stop sophisticated attacks outright. While useful for anomaly detection, such as unusual fund flows, they often mitigate rather than prevent damage.

Park's ideas underscore DeFi's push toward principled security to foster growth, though implementation hurdles remain.

Artikel Terkait

U.S. Senate committees holding markup sessions on crypto regulation bill, featuring bipartisan senators, blockchain symbols, and SEC/CFTC oversight elements.
Gambar dihasilkan oleh AI

Senate committees plan markups on crypto market structure bill

Dilaporkan oleh AI Gambar dihasilkan oleh AI

Two U.S. Senate committees have scheduled simultaneous markup sessions for January 15 on legislation to regulate cryptocurrency markets, aiming to clarify oversight between the SEC and CFTC. Bipartisan negotiations are showing early progress on key issues like decentralized finance, though concerns persist over stablecoin yields and investor protections. The push comes amid efforts to advance a unified bill toward a potential floor vote.

Ethereum co-founder Vitalik Buterin has voiced concerns over the European Union's Digital Services Act, warning it could eliminate space for controversial digital ideas. In a recent social media post, he advocated for greater user empowerment instead. This comes amid a surge in privacy-focused cryptocurrencies in 2025.

Dilaporkan oleh AI

Building on 2025's regulatory milestones like the GENIUS Act and bank integrations, the US crypto sector in 2026 shifts focus to enforcing and refining rules—including accounting standards, stablecoin oversight, and tax reporting—to promote compliance and stability.

The U.S. Senate Banking Committee is set to mark up the Digital Asset Market Clarity Act of 2025 on January 15, 2026, aiming to establish a federal framework for digital assets. The bill would divide regulatory oversight between the Securities and Exchange Commission and the Commodity Futures Trading Commission. Controversy surrounds provisions related to decentralized finance, with advocacy groups launching ads to oppose them.

Dilaporkan oleh AI

U.S. Securities and Exchange Commission Chairman Paul Atkins cautioned that blockchain technology could enable excessive government surveillance of financial activities. Speaking at a roundtable on privacy and surveillance, he urged policies to protect investor privacy while ensuring illicit finance protections. Atkins emphasized balancing innovation with civil liberties in the crypto sector.

Dean Khan Dhillon argues that the cryptocurrency industry's approach to product discovery hinders institutional adoption of tokenization. He highlights a mismatch between how retail traders find opportunities and the methodical processes of traditional finance players. For pension funds and family offices to embrace tokenized assets, crypto needs a more sophisticated distribution model.

Dilaporkan oleh AI

The Federal Reserve has withdrawn a 2023 policy that restricted certain banks' involvement in crypto activities, citing evolving understandings of financial innovation. The move distinguishes between insured and uninsured state member banks, potentially allowing the latter more flexibility in crypto operations. This change comes amid recent legal and legislative wins for special purpose depository institutions in the crypto space.

 

 

 

Situs web ini menggunakan cookie

Kami menggunakan cookie untuk analisis guna meningkatkan situs kami. Baca kebijakan privasi kami untuk informasi lebih lanjut.
Tolak