Duncan Townsend
@duncancmt
Followers
498
Following
825
Media
2
Statuses
371
shitcoin artist. crabby. @0xProject; prev @immunefi. $FU: https://t.co/B6W59qCZI0
duncancmt.eth
Joined June 2012
Good things come in threes. Read about our vision for @EkuboProtocol's third EVM version in the whitepaper: https://t.co/vL2LMlii5j Then check out the code here, find issues to earn $$$
hackmd.io
Most AMMs today follow the same pattern:
The Ekubo Audit Competition STARTS NOW! Let’s welcome @EkuboProtocol, the most advanced AMM ever. This $183,500 audit competition will run for 21 days with the largest prizes awarded to the highest + rarest vulnerabilities found. Check out the audit docs for more details!⤵️
4
13
82
It's always best to do calculations in high precision and without rounding using only the ring operations. Failing to understand the risks of breaking this rule is now pushing 10 figures of losses.
When you see calculations that are rounding up, there is a small chance that the rounding up is severely overstated, as it always at least returns 1 wei, even if the result would be like 0.0000001 wei.
1
0
3
These guys have been going over the @0xProject Settler codebase and making sure we've dotted all our i's and crossed all our t's. I think they're building some cool tech. Their team is hungry for success, and this is your chance to get some top-notch review for cheap.
Want a free AI-driven PR audit for your Solidity repo? Comment below and we’ll review it. #Web3Security
2
2
8
Inbound requests for custom hook support have greatly exceeded the 0x team's capacity to field them in a timely fashion. We are taking the following steps: - Hiring Senior Eng, Liquidity Integrations - Hiring Senior Eng, DEX Routing https://t.co/BTRlDNekXe - Streamlining
jobs.ashbyhq.com
COMPANY At 0x https://0x.org/, our mission is to "Create a Tokenized World Where All Forms of Value Can Flow Freely". We deliver this to web3 builders with a delightfully simple suite of developer...
1
8
34
ERC20 is really cool, but also really dangerous. To 10x the ERC20 ecosystem, we need powerful tools to produce human-readable descriptions of tokens behavior from deployed bytecode
Excited to be speaking at Crypto Hub Malta this October 8th! 🔐✨ I’ll be diving into Token Security Analysis with @dedaub — exploring how ERC-20 tokens evolve and the hidden risks in new deployments.
1
1
9
⚠️ Our white hat team, the @DonjonLedger, discovered a flaw in Tangem cards that makes brute force attacks possible. As always, the Donjon followed responsible disclosure to inform Tangem, user protection is our priority. We can now reveal our findings in full: 🧵👇
137
208
1K
I can say with confidence that Bailsec is worth every penny. Their integrity and transparency is beyond reproach
Our quotes are always 100% exact and fair. We never try to overcharge our clients. But 6 months ago, we had 2 cases where our teams completed audits earlier than estimated. We informed the partners ourselves and sent partial refunds back, several thousand dollars each. They
2
2
11
I currently use Proton for email. I've been wanting to move it, but I don't have a good idea for where to move it to. Can somebody sell me a good alternative?
0
0
2
another problem is the sheer incompetence of governments. you'd expect the top-funded entities on the planet (via taxes) to keep up with the latest technologies, at the very least for taxes, because that's how they get most of their funding.
incredible that we have been working on a better financial infrastructure for the world for 15+ years straight, and we still can't move on from using fricking banks that charge a gazillion in fees for updating a database entry
4
2
8
This is the spirit of DeFi.
Based Swap: A Simpler DEX aggregator on @base. 6 AMMs: @Uniswap @AerodromeFi @ZAMM_DEFI. Onchain solver. Swap UI on @ensdomains. 0 fees. Gas better than other routers with call compress. Try it now: Will run forever on @IPFS @ethereum. ------>>>>>>:
2
0
12
Last month, we turned down a $300k+ gig after being heavily underquoted by a “Tier 1” competitor. Our lead audit team estimated 30 days for one part of the scope, the competitor quoted 10 days! It seems the new norm is cutting corners (and quality) just to win deals at any
11
8
84
🧠 Token Engineering @ EthCC Series [2/12] Today’s talk: “Scaling Ethereum by Optimizing ZK Prover Networks” by Franklin Delehelle from @lagrangedev. This is part of our series covering key talks from the Token Engineering Track at @EthCC 2025. #TEatEthCC2025 ⚙️ The Challenge:
0
2
8
Come hear me make my point about scalability/decentralization dilemmas, the computational complexity class of DEX aggregation, developer goodwill, and desire paths.
2/5 🧵 Fusaka Two last-minute requests for PeerDAS: ▶️ @duncancmt points out that the block gas limit being set to 16.8M in PeerDAS is a breaking change for apps - can it be maintained at 30M? ▶️ @d_gusakov asks if the supernode threshold can change to accommodate CSM stakers
1
1
10
ERC20 is a powerful tool for communities to set their rules. If you're a token developer, check out what you can do with ERC20. If you're a DeFi developer, check out what you need to be aware of when handling foreign ERC20s
🧠 Token Engineering @ EthCC Series [1/12] This is part of our series covering the talks from the Token Engineering Track at @EthCC this year. #TEatEthCC2025 Today’s talk: “You don’t understand ERC 20” by @duncancmt from @0xProject. 🌱 ERC20’s Flexibility Is a Feature, Not a Bug
5
5
26
I know many changes look/feel inconsequential (who _really_ needs tens of millions of gas), but inevitably somebody depends on that behavior. When you break their dApp, you alienate them. Past perpetrators of this have been the whole EOF debacle and pruning logs in EIP-4444
1
0
1