EthereumZuri.ch 2024

Damian Rusinek

Web3 Security Reviewer & Researcher with over 5 years of experience in Web3Sec.

  • Programming:
    Beginning his journey in 2005 as a backend developer, Damian collaborated with a diverse array of companies spanning multiple industries. By 2009, he pivoted towards cyber security, embarking on an academic pursuit that culminated in a PhD from Warsaw University of Technology.

  • WebSec:
    With a solid foundation in programming, Damian ventured into Web2 security in 2016. His expertise led him to conduct numerous pentests and source code reviews, predominantly for banking and fintech sectors.

  • Web3Sec:
    In 2018, Damian delved into the Web3 security domain, pioneering the Smart Contract Security Verification Standard – the most extensive security checklist for Web3 initiatives to date. Throughout this period, he has been a speaker at various conferences, including EthCC, Web3 Security Conference, ETHWarsaw, OWASP AppSec Global, Confidence and InfoShare.

  • By 2022, Damian took another significant step by co-founding Composable Security, a firm dedicated to Web3 security assessments and consultations.


Session

04-06
12:55
20min
Secrets of Uniswap V4: A Deep Dive into Hooks Security
Damian Rusinek

During the presentation, I would like to share practical insights and tips from our in-depth research conducted with the support of a grant from the Uniswap Foundation. It will be a journey into the heart of Uniswap V4's architecture, where we'll unravel the complexities and innovations of its hooks mechanism. Based on examples, I will discuss the threats specific to most popular hook use cases. This talk promises to be a treasure trove of insights for anyone keen on mastering Uniswap V4 hooks and fortifying their security.

Key Takeaways for audience:

  • A richer understanding of Uniswap V4's innovative architecture.
  • Practical strategies for developing and securing hooks.
  • Insights from research supported by the Uniswap Foundation Grant.
  • Further materials they can use to increase the security of their hooks.
Security
Verge Stage