Skip to content

Commit f2bb1dd

Browse files
committed
Added info about audits
1 parent 519b9cf commit f2bb1dd

5 files changed

+13
-0
lines changed

README.md

+13
Original file line numberDiff line numberDiff line change
@@ -18,6 +18,19 @@ Full specification is available in [specs.md](doc/specs.md).
1818

1919
Design description and analysis is available in [design.md](doc/design.md).
2020

21+
## Audits
22+
23+
Between May and August 2019, RandomX was audited by 4 independent security research teams:
24+
25+
* [Trail of Bits](https://www.trailofbits.com/) (28 000 USD)
26+
* [X41 D-SEC](https://www.x41-dsec.de/) (42 000 EUR)
27+
* [Kudelski Security](https://www.kudelskisecurity.com/) (18 250 CHF)
28+
* [QuarksLab](https://quarkslab.com/en/) (52 800 USD)
29+
30+
The first audit was generously funded by [Arweave](https://www.arweave.org/), one of the early adopters of RandomX. The remaining three audits were funded by donations from the [Monero community](https://ccs.getmonero.org/proposals/RandomX-audit.html). All four audits were coordinated by [OSTIF](https://ostif.org/).
31+
32+
Final reports from all four audits are available in the [audits](audits/) directory. None of the audits found any critical vulnerabilities, but several changes in the algorithm and the code were made as a direct result of the audits. More details can be found in the [final report by OSTIF](https://ostif.org/four-audits-of-randomx-for-monero-and-arweave-have-been-completed-results/).
33+
2134
## Build
2235

2336
RandomX is written in C++11 and builds a static library with a C API provided by header file [randomx.h](src/randomx.h). Minimal API usage example is provided in [api-example1.c](src/tests/api-example1.c). The reference code includes a `randomx-benchmark` and `randomx-tests` executables for testing.

audits/Report-Kudelski.pdf

445 KB
Binary file not shown.

audits/Report-Quarkslab.pdf

207 KB
Binary file not shown.

audits/Report-TrailOfBits.pdf

650 KB
Binary file not shown.

audits/Report-X41.pdf

381 KB
Binary file not shown.

0 commit comments

Comments
 (0)