Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (2,633)
  • Analysis (2,780)
  • Bitcoin (3,388)
  • Blockchain (2,065)
  • DeFi (2,490)
  • Ethereum (2,358)
  • Event (97)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (2,552)
  • Press Releases (10)
  • Reddit (2,060)
  • Regulation (2,371)
  • Security (3,255)
  • Thought Leadership (3)
  • Videos (43)
Hand picked
  • A16z Crypto wants DeFi to abandon ‘code is law’ in favor of ‘spec is law’ to combat $649 million mining problem – DL News
  • Ethereum founder Vitalik Buterin calls for ‘garbage collection’ to save the blockchain
  • How do you feel about the current Cryptomarket ?
  • Bitcoin Lags As Global Liquidity Increases – Why Is BTC’s Reaction Late?
  • Pi Coin Price Returns to October Lows: What’s Behind the Drop?
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»DeFi»A16z Crypto wants DeFi to abandon ‘code is law’ in favor of ‘spec is law’ to combat $649 million mining problem – DL News
DeFi

A16z Crypto wants DeFi to abandon ‘code is law’ in favor of ‘spec is law’ to combat $649 million mining problem – DL News

January 19, 2026No Comments
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


  • DeFi protocols need to adopt a more principled security approach to mature.
  • They could use standardized specifications that limit what a protocol is allowed to do.
  • Many protocols already adopt so-called invariant controls.

DeFi protocols must move beyond “patch-after-hack” security guarantees and hardcode security in their software if the $168 billion industry is to mature, according to a16z Crypto.

In a January 11 post, Daejun Park, a senior security researcher at the company, argued that DeFi developers should take a more principled approach to security instead of relying on trial and error.

Central to this change, according to Park, is the use of standardized specifications that limit what a protocol is allowed to do and automatically roll back any transactions that violate these predefined assumptions about correct behavior.

“Almost all exploits to date would have triggered one of these checks at runtime, which could potentially stop the hack,” Park said. “So the once popular idea that ‘code is law’ is evolving into ‘specification is law.’ »

Such an idea, sometimes called runtime enforcement or invariant controls, is not new. But it’s getting a facelift as DeFi protocols struggle to defend against hackers exploiting bugs in their code.

Last year, hackers stole more than $649 million through code exploits, according to a report from Slowmist, a blockchain security company.

Even proven protocols like Balancer, whose code had been active on the Ethereum blockchain since 2021, were not immune. The company lost $128 million in November after a hacker exploited a code bug.

In recent months, DeFi developers are concerned that hackers are increasingly using artificial intelligence to detect vulnerabilities in the DeFi protocol and exploit them.

“Not the miracle solution”

Park’s suggestions, if widely adopted, could go a long way toward preventing exploits. But they are not without their drawbacks.

DeFi protocols often have an advantage over their competitors by offering the cheapest fees. Adding additional controls on transactions would increase gas costs, which could cause them to lose users, said Gonçalo Magalhães, head of security at Immunefi. DL News.

Magalhães said that invariant controls are a great security strategy, but they can’t account for everything, especially exploits that a protocol’s developers can’t reasonably anticipate. “It’s not the silver bullet,” he said.

It’s also difficult to get the controls to work properly, said Felix Wilhelm, co-founder of Asymmetric Research, a crypto security company. DL News.

“For many real-world vulnerabilities and hacks, it is difficult, if not impossible, to write an invariant that detects the hack without also triggering it under normal circumstances,” he said.

Wilhelm said enforcement of runtime is an important part of protocol security. But it is generally used to detect anomalies, such as an unusual flow of funds over a short period of time.

“While useful, this often only serves to limit the impact or alert the team, rather than stopping the attack outright,” he said.

Many protocols already adopt invariant controls.

Kamino, a Solana-based lending protocol, began verifying critical invariants using Certora Prover in March last year.

The XRP Ledger, the blockchain behind the $120 billion XRP token, has also implemented invariant verification. Blockchain developers said the verifications are necessary because XRP Ledger is complicated and there is a high risk of incorrect code execution.

“Invariants should not trigger, but they guarantee the integrity of the XRP Ledger against bugs that have not yet been discovered or even created,” the XRP Ledger developers said.

Tim Craig is DL News’ DeFi correspondent based in Edinburgh. Contact us with advice at tim@dlnews.com.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleEthereum founder Vitalik Buterin calls for ‘garbage collection’ to save the blockchain

Related Posts

DeFi

CoinDeskHere’s Why Coinbase and Other Companies Wore Under Major Crypto BillCoinbase wasn’t the only company alarmed by the Senate Banking Committee’s crypto market structure bill… 22 hours ago

January 19, 2026
DeFi

Senator Crypto Bill Increases DeFi and Stablecoin Yield for Key Audience

January 19, 2026
DeFi

DeFi Mutuum Finance (MUTM) protocol advances

January 18, 2026
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

Digital Assets Forum Expands to Two Days in London, Uniting Traditional Finance and the Digital Assets Industry

January 16, 2026

Following two sold-out editions, Europe’s premier digital assets conference returns to London, doubling in size…

Event

Solana Accelerate Joins Consensus Hong Kong, Bringing Web3’s Most Dynamic Community to Asia’s Premier Crypto Gathering

January 14, 2026

HONG KONG, Jan. 8, 2026 — CoinDesk, the leading media, events, indices, and data platform…

1 2 3 … 70 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

Pi Coin Price Returns to October Lows: What’s Behind the Drop?

January 19, 2026

Hyperliquid Leads Solana and Ethereum in Fees – What This Means for HYPE

January 19, 2026

Backers demand refunds as Trove abandons hyperliquid integration for Solana

January 19, 2026
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2026 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 92,317.00
ethereum
Ethereum (ETH) $ 3,172.89
tether
Tether (USDT) $ 0.999365
bnb
BNB (BNB) $ 921.83
xrp
XRP (XRP) $ 1.99
usd-coin
USDC (USDC) $ 0.999797
tron
TRON (TRX) $ 0.311223
staked-ether
Lido Staked Ether (STETH) $ 3,172.60
dogecoin
Dogecoin (DOGE) $ 0.129032
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.00