{"id":20360,"date":"2023-07-29T00:04:44","date_gmt":"2023-07-29T00:04:44","guid":{"rendered":"https:\/\/nftandcrypto-news.com\/crypto\/worldcoin-releases-audit-reports-showing-resolved-security-issues\/"},"modified":"2023-07-29T00:04:46","modified_gmt":"2023-07-29T00:04:46","slug":"worldcoin-releases-audit-reports-showing-resolved-security-issues","status":"publish","type":"post","link":"https:\/\/nftandcrypto-news.com\/crypto\/worldcoin-releases-audit-reports-showing-resolved-security-issues\/","title":{"rendered":"Worldcoin releases audit reports showing resolved security issues"},"content":{"rendered":"
\n

Proof of humanity protocol Worldcoin released its audit reports on July 28 as criticism of its data collection practices continues to mount. The new reports were conducted by security consulting firms Nethermind and Least Authority.\u00a0<\/p>\n

According to an accompanying announcement from Worldcoin, Nethermind found 26 security issues with the protocol, of which 24 were \u201cidentified as fixed\u201d during the verification phase while one was mitigated and another was acknowledged.<\/p>\n

Least Authority discovered\u00a0three issues and made six suggestions, all of which \u201chave been resolved or have planned resolutions,\u201d the announcement stated.<\/p>\n

\n

Learn more about the results of two separate security audits of the Worldcoin protocol, performed by @NethermindEth<\/a> & @LeastAuthority<\/a>.https:\/\/t.co\/fXa50wNBYE<\/p>\n

\u2014 Worldcoin (@worldcoin) July 28, 2023<\/a><\/p><\/blockquote>\n

Worldcoin first rose to prominence in 2021 when it announced that it would give away free tokens to any users who verify their humanness, which they could do by having their iris scanned by a device called an \u201cOrb.\u201d The project was co-founded by Sam Altman, the co-founder of AI developer OpenAI. <\/p>\n

At the time, Altman and other team members argued that AI bots would become an increasing problem on the internet if people didn\u2019t find a way to verify their humanness without giving up their privacy. According to the protocol\u2019s documentation, The Orb produces a hash of the user\u2019s iris scan but does not keep a copy of the iris scan.<\/p>\n

Related: <\/strong>Worldcoin confirms it is the cause of mysterious Safe deployments<\/strong><\/em><\/p>\n

Nethermind\u2019s Worldcoin audit report. Source: Github<\/em><\/figcaption><\/figure>\n

Worldcoin initiated its public launch on July 25, after nearly two years of development and beta testing. But criticism of it erupted almost immediately. The United Kingdom’s Information Commissioner’s Office (ICO) reportedly said the government body was deciding whether to investigate the project for violating the country\u2019s data protection laws. French data protection agency CNIL also questioned Worldcoin\u2019s legality. <\/p>\n

The crypto community was divided over the project\u2019s launch, with some participants seeing it as the start of a dystopian future where privacy would be eliminated. In contrast, others saw it as a necessary step towards protecting humans against malicious AIs.<\/p>\n

The new audit reports cover a wide variety of security topics, including resistance to DDoS attacks, case-specific implementation errors, key storage and proper management of encryption and signing of keys, data leaking and information integrity, and others. Some issues found were the result of dependencies on Semaphore and Ethereum, including \u201celliptic curve precompile support or Poseidon hash function configuration,\u201d the announcement stated.<\/p>\n

All issues except one were fixed, mitigated, or have planned fixes. The one security issue that was not fixed by the time of verification has a severity of “undetermined” and is listed as “acknowledged.”<\/p>\n<\/div>\n