Normalien ▪︎ Distributed systems Ph. D. ▪︎ Smart Contract Engineer @ OpenZeppelin ▪︎ #Ethereum Magician ▪︎ Prononced: adʁijɛ̃ kʁubwa

Lyon, France
If you use @safe, that means you probably are serious about the security of your assets. You should fenitielly check out the safe-lockdown project, and maybe even give it some love by contributing to the audit funding ! initiatives.thedao.fund/init…
1
4
197
Hadrien Croubois retweeted
same team, same standards, same open source commitment, now with S&P Global's institutional reach behind us 🫡
Today we are announcing that S&P Global has entered an agreement to acquire OpenZeppelin. Onchain finance is growing from an emerging market into core financial infrastructure, and the standards and rails our team and community built are becoming the rails of global finance. OpenZeppelin smart contracts facilitated over $37 trillion in value transferred, with the vast majority of the largest DeFi protocols, blockchain networks, stablecoins and tokenized funds relying on them. With S&P Global, we expect to accelerate the impact of onchain finance, backed by more than a century of trust in global markets, benchmarks, and risk frameworks. To our clients and to all the users of OpenZeppelin open source tools: • OpenZeppelin Contracts and all our open source applications and tools remain open source, free, and publicly maintained on GitHub. Building open source standards stays a core priority. • Audits, engineering work, and ecosystem programs continue with the same team, brand, quality, and customer experience, with what will be the added benefit of S&P Global's research capacity, market data, and institutional reach. For the last decade, OpenZeppelin has set the security standard for onchain finance. Today begins a new chapter for that mission, together with one of the most trusted names in global markets. Read the full announcement: openzeppelin.com/news/spglob…
10
5
88
3,758
Hadrien Croubois retweeted
S&P Global has entered into an agreement to acquire @OpenZeppelin, the security standard for onchain finance. The transaction complements S&P Global’s risk assessment and ecosystem development capabilities in digital asset markets, enhancing its ability to create the next generation of onchain security assessments, benchmarks,  and deliver essential intelligence as capital markets transition onchain. Read the full announcement: okt.to/qcLufd
11
16
177
9,740
Hadrien Croubois retweeted
Big news: S&P Global has entered an agreement to acquire OpenZeppelin. We started in 2015 with the vision of a secure, open financial system powered by blockchains and smart contracts. Ten years and $37 trillion in value transferred later, the standards and rails our team and community built carry major DeFi protocols and blockchain networks as well as the largest stablecoins and tokenized funds. With @spglobal, those standards and rails can now reach the benchmarks, risk frameworks, and institutional reach global markets already run on. Proud of the @OpenZeppelin team, everything we’ve accomplished, and everything we’ll continue to build together! openzeppelin.com/news/spglob…
130
52
665
105,004
Hadrien Croubois retweeted
Today we are announcing that S&P Global has entered an agreement to acquire OpenZeppelin. Onchain finance is growing from an emerging market into core financial infrastructure, and the standards and rails our team and community built are becoming the rails of global finance. OpenZeppelin smart contracts facilitated over $37 trillion in value transferred, with the vast majority of the largest DeFi protocols, blockchain networks, stablecoins and tokenized funds relying on them. With S&P Global, we expect to accelerate the impact of onchain finance, backed by more than a century of trust in global markets, benchmarks, and risk frameworks. To our clients and to all the users of OpenZeppelin open source tools: • OpenZeppelin Contracts and all our open source applications and tools remain open source, free, and publicly maintained on GitHub. Building open source standards stays a core priority. • Audits, engineering work, and ecosystem programs continue with the same team, brand, quality, and customer experience, with what will be the added benefit of S&P Global's research capacity, market data, and institutional reach. For the last decade, OpenZeppelin has set the security standard for onchain finance. Today begins a new chapter for that mission, together with one of the most trusted names in global markets. Read the full announcement: openzeppelin.com/news/spglob…
298
310
2,317
460,764
Hadrien Croubois retweeted
🚨 S&P Global annonce un accord pour acquérir OpenZeppelin, spécialiste de la sécurité des smart contracts et de l’infrastructure blockchain.
2
1
3
6,113
It looks like Claude should fall under ITAR
Houthi rebels using Claude to guide rockets is a whole new level of cyberpunk dystopia
1
5
326
I have a question to anyone that think we can just « shut down the grid » and that would stop any IA: How long can you survive if the running water infrastructure of your country goes down (for lack of power, computer system, … whatever) ? I’m not sure we would last 2 weeks
1
7
206
Hadrien Croubois retweeted
watch out odysseus, despite smooth boundary conditions it is generating a singularity
Made with AI
30
412
6,912
132,663
Hadrien Croubois retweeted
13
455
5,181
35,590
Hadrien Croubois retweeted
Il y a 18 mois, j’étais très sceptique sur l’IA dans le développement. Aujourd’hui chez Clever, on est quasiment au bout de la réécriture en Rust de 15 ans de legacy. C’est ce chemin que je raconte dans le nouvel épisode d’Underscore_ avec Micode et Matthieu Lambda : comment on passe de quelques expérimentations à une vraie industrialisation de l’IA dans une boîte tech. Entre les deux, j’ai dû accepter que le métier de dev avait changé. Et derrière, aller voir les équipes, tester avec elles, convaincre les plus sceptiques. On a aussi essayé de choisir un outil pour tout le monde. Évidemment, ça n’a pas tenu longtemps, le marché bouge trop vite. Donc maintenant, les gens testent, on compare, et on garde ce qui marche. Au final, on n’est plus vraiment dans une logique de POC. On parle de ce qui se passe quand on intègre l’IA pour de vrai dans une boîte de plus de 100 personnes. Merci à @Micode, @MatthieuLambda et à toute l’équipe d’@UnderscoreTalk pour l’invitation. C’est ici : youtu.be/AiytemqB_F0?si=A35I…
43
94
538
132,768
Programmers should, at some point in their live: - design a protoCPU with pen and paper - write some assembly by hand - write a compiler - write an OS syscall library (malloc) - write a parallele program with message passing and mutex/semaphores Bonus: - write something embeded
Google researcher @lauriewired warns the shift from C++ to Python in universities is creating programmers who don't understand how computers actually work: "When I was in college getting my CS degree, my year was one of the last years that was using C++ as the core language for teaching students. Actually they were switching over to Python of all languages." "One of the biggest issues that I have is that a lot of these higher level languages are really abstracting away what is happening under the hood. If you're not aware of how the computers work in general, then you're gonna have problems when it comes to debugging." "Starting with a language like C++ gives you the ability to do these really high level abstractions, but it also gives you the ability to customize your memory management and get really close to the underlying machine. Especially if you're trying to work in high performance computing, game development, or high frequency trading." "At C++ conferences, there's almost this fundamental anger response when it comes to mentioning something like C or C++. People start complaining about the complexity of it." @Google
37
78
1,052
60,210
Unpopular opinion: the vast majority of user should not be allowed anywhere near a terminal and mainstream OS should make it difficult to get to it.
Je viens de tomber sur une tentative de hack la plus évoluée et vicieuse que j'ai vu. J'ai d'ailleurs failli me faire avoir Un faux CAPTCHA Cloudflare, extrêmement bien fait Décorticage de la technique. 🧵
1
4
672
There should be a « dev mode » toggle in the settings that takes 24h to activate. Real devs will touch it on day one of getting a new computer and that is fine. Other users will be protected against the kind of attacks.
1
3
169
Est ce qu’il existe des dilutions homéopathiques de sucre (sur gélules de sucre) pour les diabétiques ?
2
289
Hadrien Croubois retweeted
Introducing terminal-code: VS Code inside the terminal - VS Code compatible CLI - works over ssh - syncs with your terminal theme terminal-code.com
518
621
7,656
2,631,003
Au delà du mépris de la réponse, la @dgfip_officiel serait bien avisé de demander de l’aide à un IA pour sécuriser son infra. En temps normal j’ai tendance à préféré des humain expert, mais au vu des failles béantes, meme Claude ferait des recommandations pertinentes (2FA !)
J’ai écrit au fisc pour savoir si j’étais concerné par la fuite de données, appréciez la teneur et le ton de la réponse 🤣🤣🤣 @jdl288
4
477
Hadrien Croubois retweeted
On pourrait ouvrir une commission d'enquête sur toutes ces fuites d'information ?
78
261
1,429
25,825
Hadrien Croubois retweeted
Goodbye, Poseidon! An epic 8-year, 8-figure rabbit hole in post-quantum cryptography reaches its dream conclusion. The Ethereum Foundation is abandoning Poseidon for L1, pivoting to SHA or BLAKE. This milestone unlocks ultimate security for lean Ethereum and foreshadows a golden era of hash-based cryptography. Since 2018, the Ethereum Foundation has invested in magic cryptographic bricks, so-called "SNARK-friendly hashes". In 2019, Poseidon was born. It held strong and became the dominant SNARK-friendly hash, securing billions via zkrollups and zkVMs. In a stunning reversal, breakthrough SNARK designs show that SNARK-friendly hashes aren't necessary after all. Off-the-shelf traditional hash functions like SHA2 and BLAKE2s can now match Poseidon in a SNARK. In hindsight the key was not SNARK-friendly hashes, but hash-friendly SNARKs. The secret is doing maths over the smallest prime number: 2. So-called "binary fields" natively speak the language of bits, aligning with the boolean operations inside traditional hashes. This is a stark departure from "prime fields", where awkward large-prime arithmetic makes bit manipulation painfully expensive. We're talking sci-fi cryptography. 1M traditional hash calls proven per second, on a laptop. Just 100x overhead vs native CPU boolean compute. Nobody predicted such performance, not even the handful of binary-field visionaries. Hat tip to the research geniuses: Jim and Ben with Binius in 2023; Ron, Benedikt and William with Flock in June. With SHA2, the lean aesthetic of minimal assumptions reaches its climax. The EF's principled stance on pure hash-based cryptography has aged like fine wine. We now enjoy foundations the world can trust for decades and centuries, foundations worthy of the dream of an internet of value. Speed of deployment is a secondary win. There's no longer a need to wait years for Poseidon cryptanalysis to bake. Emile and Thomas from the EF post-quantum team are moving at breakneck speed with binary fields. The strawmap now points to a production-grade leanVM in 2027, with CL, DL, EL deployments in 2028. As AI becomes exceptional at cryptanalysis, the contrarian bet to avoid riskier structures like lattices and isogenies is visibly paying off. The past weeks have been brutal. Lattice-based "HAWK" and isogeny-based "SQIsign", both signature schemes in NIST's Round 3, have suffered blows. Sources I trust say more blood is coming. On AI, the open autoresearch trend kicked off by ECDSA[.]fail is spreading fast, with amazing outcomes from zk[.]golf and SNARK[.]fast. Days ago SNARK[.]fast crossed 1.8M BLAKE3/sec proven on an M3 Max. Stay tuned for fresh autoresearch challenges dropping tomorrow. Also tomorrow: Ethproofs call #10, dedicated to binary fields. Possibly the most noteworthy Ethproofs call yet. Experts leading the charge will present the future of hash-based SNARKs at 2pm UTC. What an incredible time to be alive. To witness history, DM me for a calendar invite :) Today I can confidently claim that hash-based cryptography has won out for blockchain post-quantum signatures. SNARK succinctness compresses arbitrarily many signatures into one small proof per block. SNARK flexibility yields k-of-n threshold signatures, complex multisigs, and more. Ultimate security. Uncompromising performance. Full programmability. Believe in something. Believe in hashes.
143
351
1,981
439,890
Et ils veulent rendre obligatoire la déclaration de wallets crypto auto-hébergés 🙃
🚨 FUITES INFOS | @dgfip_officiel — ~678 000 lignes revendiquées La Direction générale des Finances publiques (DGFiP), administration française en charge du calcul et du recouvrement de l'impôt pour les particuliers comme pour les professionnels, est concernée par une revendication de fuite de données. Une annonce a été publiée le 12 août 2026 sur un forum cybercriminel, faisant état d'un accès obtenu via un VPN interne compromis à un outil de recherche de contribuables, avec une extraction automatisée interrompue avant son terme ; un impact potentiellement plus large est évoqué sans avoir pu être établi. ⚠️ Revendiquée — non confirmée officiellement 📂 Données concernées : · Identité complète et date de naissance · Identifiant fiscal (SPI) · Adresse, téléphone, e-mail · Situation familiale et revenu fiscal de référence · Historique de contacts avec les services fiscaux 🔗 Détails et suivi → fuitesinfos.fr/article/2026-… #FuitesInfos #DataBreach #Cybersécurité #ServicePublic #DarkWeb
5
463