We are constantly striving to make the Aztec Network more secure by developing internal tooling and seeking external expertise.
To prepare for a barrage of future audits before the mainnet launch, we ran a test exercise with three well-established auditing companies including ZKSecurity, Zellic, and Spearbit.
These three partners performed an audit of the same piece of code. The goal was to check the quality of the audits and establish a working relationship with the teams.
We chose to check out a circuit standard library primitive called Bigfield for a few reasons:
- It is one of the most complex primitives in our codebase.
- Parts of the primitive date back several years and have gone through internal audits.
- Parts of the primitive have been added fairly recently and were waiting on an internal review (we were 99% sure that there were serious bugs there).
We are happy to announce the completion of all the audits and thank all companies for the collaboration and showing great expertise. The reports can be found here, and you can view a table with comparison issues (with low severity or higher) here.
Stay updated on all things Noir and Aztec by following Noir and Aztec on X, and join the Aztec developer community on Discord.