æ»æè ãããæ©ãè匱æ§ãæ€åºããæåç£æ»ã®è²»çšã®äžéšã§æžãèªåã»ãã¥ãªãã£åæ

è¿å¹ŽãDeFiãããã³ã«ã¯ã¹ããŒãã³ã³ãã©ã¯ãã®æªçšã«ãã38åãã«ä»¥äžã倱ã£ãŠããããªãšã³ãã©ã³ã·ãŒæ»æãã¢ã¯ã»ã¹å¶åŸ¡ã®æ¬ é¥ãçµæžçæ¹ãããæãäžè¬çãªæ»æãã¯ãã«ãšããŠæ®ã£ãŠããŸããæåã«ããã»ãã¥ãªãã£ç£æ»ã¯é«é¡ïŒ1ä»¶ããã5äžãã«ã50äžãã«ïŒã§ãæéçå¶çŽãããïŒäžæµäŒæ¥ã§ã¯4ã8é±éã®ããã¯ãã°ïŒãå€§èŠæš¡ã§åããŠé¡åšåãã埮åŠãªã¯ãã¹ã³ã³ãã©ã¯ãçžäºäœçšãã°ãèŠéãããšããããŸããå€ãã®ãããžã§ã¯ãã¯ãåžå Žæå ¥ã®ã¿ã€ãã³ã°ã«éã«åãããããã«ç£æ»ãåããŠããªãã³ãŒããåºè·ããããã¯ãã¹ããªããŒã·ã§ã³ãªãã«åäžã®ç£æ»äººã®èŠç¹ã«äŸåãããããŠããŸãã
ãããã€åŸã«ã¯ç¶ç¶çãªã¢ãã¿ãªã³ã°ããªããç£æ»æã«å®å šã ã£ãã³ã³ãã©ã¯ãã§ããã¢ããã¹ããªãŒã ã®äŸåé¢ä¿ã倿Žãããããæ°ããªæ»æãã¿ãŒã³ãçºèŠãããããããšè匱ã«ãªãå¯èœæ§ããããŸãã
次ã®ãããžã§ã¯ãã®ããã®å®è£ ãã«ãŒããªã³ãããã£ãšèŠã€ãã
MicrocosmWorksã¯ãsymbolic executionãfuzzingãããã³AI pattern recognitionãçµã¿åãããç£æ»ãã©ãããã©ãŒã ãæ§ç¯ããŠãããæåã¬ãã¥ãŒã¢ãè€æ°ã®ã³ã³ãã©ã¯ããè€éãªã€ã³ã¿ã©ã¯ã·ã§ã³ã·ãŒã±ã³ã¹ã«ãŸãããããé »ç¹ã«èŠèœãšããcross-function reentrancyãprice oracle manipulation vectorsãgovernance attack surfacesãflash loan exploit pathsãããã³economic invariant violationsãªã©ã®åŸ®åŠãªè匱æ§ãæ€åºããŸããAI componentã¯ãåã ã®æ©èœãå€ç«ããŠåæããã®ã§ã¯ãªããprotocol architectureså šäœã®ç¶æ é·ç§»ãæšè«ããããšã§ãæ°ããªæ»æãã¿ãŒã³ãç¹å®ããããšã«åªããŠããŸãããã®ãã©ãããã©ãŒã ã¯ãæ¢ç¥ã®exploit databasesã«å¯Ÿããåœç€Ÿã®ãã³ãããŒã¯ã«ãããŠãæåã®ã¿ã®ç£æ»ããã15ã30%å€ãã®é倧ãªè匱æ§ãæ€åºããŸãã
MicrocosmWorksã¯ãå€éšåŒã³åºããããªã²ãŒãåŒã³åºãããããã·ãã¿ãŒã³ãä»ããŠããããã³ã«å šäœã®ãããã€ã¡ã³ãã«ãããå®è¡ãããŒã远跡ããã¯ãã¹ã»ã³ã³ãã©ã¯ãåæãšã³ãžã³ãå®è£ ããŠãããããã«ã³ã³ãã©ã¯ããäŸåããUniswapãAaveãChainlinkãªã©ã®å€éšãããã³ã«ãšã®çžäºäœçšãã¢ããªã³ã°ããŸãããã®ãã©ãããã©ãŒã ã¯ããããã³ã«éã®æ§æå¯èœæ§ãæªçšããæµå¯Ÿçãªãã©ã³ã¶ã¯ã·ã§ã³ã·ãŒã±ã³ã¹ãã·ãã¥ã¬ãŒãããè€æ°ã®ãããã³ã«ãçžäºäœçšãããšãã«ã®ã¿çŸãããµã³ãã€ããæ»æããªã©ã¯ã«æäœãã§ãŒã³ãã¬ããã³ã¹æªçšãšãã£ãã·ããªãªããã¹ãããŸããè¿å¹Žã®é«äŸ¡å€ãªDeFiãšã¯ã¹ããã€ãã®å€§éšåãã¯ãã¹ã»ãããã³ã«éã®çžäºäœçšãã¯ãã«ã䌎ã£ãŠããããããã®æ§æå¯èœæ§åæã¯éåžžã«éèŠã§ãã
MicrocosmWorks ã¯ããããã·ã³ã³ãã©ã¯ãã®ã¢ããã°ã¬ãŒããã¬ããã³ã¹ãã©ã¡ãŒã¿ã®å€æŽã管çè ããŒã®ãã©ã³ã¶ã¯ã·ã§ã³ãããã³ãããã³ã«ãšçžäºäœçšããæ°èŠãããã€æžã¿ã³ã³ãã©ã¯ããç£èŠããç¶ç¶çãªç£æ»ç£èŠãæ§ç¯ãã倿Žãæ€åºãããéã«ãé¢é£ããã»ãã¥ãªãã£åæãèªåçã«åå®è¡ããŸããã·ã¹ãã ã¯ãŸããç¹å®ã®ã³ã³ãã©ã¯ãã¢ãŒããã¯ãã£ãæšçãšããæ¢ç¥ã®ãšã¯ã¹ããã€ãæè¡ã«é¡äŒŒãããã¿ãŒã³ã«ã€ããŠãã¡ã ããŒã«ã¢ã¯ãã£ããã£ããã³ãªã³ãã§ãŒã³ãã©ã³ã¶ã¯ã·ã§ã³ãç£èŠããŸãããã®ç¶ç¶çãªç£èŠã«ãããã¢ããã°ã¬ãŒããèšå®ã®ããããŸãã¯åºç¯ãªDeFiãšã³ã·ã¹ãã ã®å€åãéããŠç£æ»åŸã«çºçããè匱æ§ããç¹°ãè¿ãããå®å šãªæåç£æ»ã®ããäžéšã®ã³ã¹ãã§ææããŸãã
MicrocosmWorksã¯ããšã°ãŒã¯ãã£ããµããªãŒãéèŠåºŠå¥ã«åé¡ãããææäºé ïŒCritical, High, Medium, Low, InformationalïŒãproof-of-concept exploit codeãå«ãè©³çŽ°ãªæè¡èª¬æãä¿®åŸ©ã®æšå¥šäºé ãã³ãŒãã«ãã¬ããžã¡ããªã¯ã¹ãããã³ä¿®æ£ã®æçµæ€èšŒãå«ãç¶²çŸ çãªç£æ»ã¬ããŒããçæããŸãããããã®ã¬ããŒãã¯ãäž»èŠãªååŒæïŒBinance, CoinbaseïŒãæ©é¢æè³å®¶ãããã³ä¿éºäŒç€Ÿã®ãã¥ãŒããªãžã§ã³ã¹èŠä»¶ãæºããããã«ãã©ãŒããããããŠããŸãããã©ãããã©ãŒã ã¯ã第äžè ãçæ£æ§ãæ€èšŒã§ããæå·çœ²åãããã¬ããŒãã¢ãŒã«ã€ããç¶æããç£æ»å®äºã«é¢ããäžæ£ãªäž»åŒµãé²ããŸããã¬ããŒãäœæããã³å°éå®¶ã«ããã¬ãã¥ãŒãµã€ã¯ã«ã«ãããè²»çšã¯ãAIã«ããææäºé ãæ€èšŒããåºçå質ã®ããã¥ã¡ã³ããäœæããããã«å¿ èŠãªã¢ããªã¹ãã®æéãéåžž$30ïœ$50/æéã§ãã
MicrocosmWorksã¯ãSolidity (Ethereum, Polygon, Arbitrum, Optimism, BSC, Avalanche C-Chain)ãRust (Anchorçµç±ã®Solana, CosmWasm, Near)ãMove (Sui, Aptos)ãããã³Cairo (Starknet) ã®ç£æ»åæããµããŒãããŠããããšã³ã·ã¹ãã å šäœã®ãããã€ãããã¹ããŒãã³ã³ãã©ã¯ã䟡å€ã®å€§éšåãã«ããŒããŠããŸãããã©ãããã©ãŒã ã®åæãšã³ãžã³ã¯èšèªåºæã§ãããããããã®åºæã®è匱æ§ãã¿ãŒã³ãçè§£ããŠããŸããäŸãã°ãSolidityã®ãªãšã³ã©ã³ããªã¹ã¯ãSolanaã®ã¢ã«ãŠã³ãæ€èšŒèŠä»¶ãMoveã®ãªãœãŒã¹å®å šæ§ã¢ãã«ãšãã£ãéããçè§£ããŠããŸããæ°ãããã§ãŒã³ãèšèªã®ãµããŒãã远å ããã«ã¯ãéåžž4ã8é±éã®ãã©ãããã©ãŒã éçºæéãèŠããMicrocosmWorksã¯æ°ãããã§ãŒã³ãæå³ã®ããTVLãç²åŸããã«ã€ããŠç¶ç¶çã«ã«ãã¬ããžãæ¡å€§ããŠããŸãã
å°éããŒã ãã客æ§ã®ããžãã¹ã®ããã«ãã®ãœãªã¥ãŒã·ã§ã³ãæ§ç¯ããæ¹æ³ã«ã€ããŠãåãåãããã ããã
ãåãåããMicrocosmWorksã¯ãéçè§£æãã·ã³ããªãã¯å®è¡ããã¡ãžã³ã°ãAIãæŽ»çšããèåŒ±æ§æ€åºãçµ±åããèªåã¹ããŒãã³ã³ãã©ã¯ãç£æ»ãã©ãããã©ãŒã ãæäŸããŸãããã®ã·ã¹ãã ã¯ããªãšã³ãã©ã³ã·ãŒãæŽæ°ãªãŒããŒãããŒãã¢ã¯ã»ã¹å¶åŸ¡ã®èª€èšå®ããã©ãã·ã¥ããŒã³æ»æãã¯ãã«ãçµæžçæªçšãç¶²çŸ ããç¶ç¶çã«æŽæ°ãããè匱æ§ããŒã¿ããŒã¹ã«å¯ŸããŠãSolidityãVyperãããã³Rust (Solana) ã®ã³ã³ãã©ã¯ããåæããŸããæ°åã®ç£æ»æžã¿ã³ã³ãã©ã¯ãã§ãã¬ãŒãã³ã°ãããAIã¢ãã«ã¯ãã«ãŒã«ããŒã¹ã®ã¢ãã©ã€ã¶ãŒãèŠéãçããããã¿ãŒã³ãç¹å®ããåœ¢åŒæ€èšŒã¢ãžã¥ãŒã«ã¯éèŠãªé¢æ°ã®æ£åœæ§ããããã£ã蚌æããŸãããããã€åŸã®ã¢ãã¿ãªã³ã°ã¯ããªã³ãã§ãŒã³ã®ãã©ã³ã¶ã¯ã·ã§ã³ãç£èŠããæŽ»çºãªæªçšè©Šè¡ã瀺ãç°åžžãªãã¿ãŒã³ãæ€åºããŸãã
ãã®ãã©ãããã©ãŒã ã¯å€æ®µéåæãã€ãã©ã€ã³ãšããŠæ©èœããåæ®µéã§ã³ã³ãã©ã¯ãã®ã»ãã¥ãªãã£ç¶æ³ã«é¢ããããæ·±ãæŽå¯ãæäŸããŸãããœãŒã¹ã³ãŒãã¯Gitçµ±åãŸãã¯çŽæ¥ã¢ããããŒããéããŠå ¥åãããã³ã³ãã€ã«ããã³äžé衚çŸã®æœåºãçµãŠã䞊ååæãšã³ãžã³ã«éãããŸããåãšã³ãžã³ã¯ãçµ±äžãããæ·±å»åºŠã©ã³ã¯ä»ãã¬ããŒãã«çµæãæäŸããŸããæ©æ¢°åŠç¿çžé¢ã¬ã€ã€ãŒã¯ãè€æ°ã®ãšã³ãžã³ããã®çºèŠãéçŽããã¯ãã¹ããªããŒã·ã§ã³ãéããŠèª€æ€ç¥ãæé€ãã以åã«ç£æ»ãããã³ã³ãã©ã¯ãã®å±¥æŽä¿®æ£ããŒã¿ã«åºã¥ããŠä¿®åŸ©ãã¿ãŒã³ãææ¡ããŸãã
delegatecallã€ã³ãžã§ã¯ã·ã§ã³ããããã·ãã¿ãŒã³ã«ãããã¹ãã¬ãŒãžè¡çªïŒãæ€åº
颿°éããã³ã³ã³ãã©ã¯ãéã®çžäºäœçšã·ãŒã±ã³ã¹ãå«ãïŒãç¹å®
ã¹ã³ã¢ãæç€ºããã³ãŒãäŸãšãšãã«å ·äœçãªä¿®åŸ©æé ãææ¡
ã®è©Šã¿ãæ¢ç¥ã®æªçšã·ã°ããã£ããªã¢ã«ã¿ã€ã ã§æ€åº
| ã¬ã€ã€ãŒ | ãã¯ãããžãŒ |
|---|---|
| ããã¯ãšã³ã | Python (åæã³ã¢), Rust (ã·ã³ããªãã¯å®è¡åš), Go (ç£èŠãšãŒãžã§ã³ã), FastAPI |
| AI / ML | PyTorch, CodeBERT (ãã¡ã€ã³ãã¥ãŒãã³ã°æžã¿), Slither, Mythril, Echidna fuzzer |
| ããã³ããšã³ã | Next.js, Monaco Editor (ãã©ãŠã¶å ã³ãŒããã¥ãŒ), React Flow (ã³ãŒã«ã°ã©ãå¯èŠå) |
| ããŒã¿ããŒã¹ | PostgreSQL (ç£æ»ããŒã¿), Neo4j (ã³ã³ãã©ã¯ãäŸåé¢ä¿ã°ã©ã), ClickHouse (ãã©ã³ã¶ã¯ã·ã§ã³åæ) |
| ã€ã³ãã©ã¹ãã©ã¯ã㣠| AWS (ECS, Lambda), Docker, GitHub Actionsçµ±å, Alchemy/Infura RPCããŒã |
éçºã¯ãåæãšã³ãžã³ãã€ãã©ã€ã³ïŒ1ã6é±ç®ïŒãšã¬ããŒãUIãåããWebãã©ãããã©ãŒã ïŒ3ã8é±ç®ïŒã®2ã€ã®äžŠè¡ãã©ãã¯ã§é²ããããŸããéçè§£æãšã³ãžã³ãšã·ã³ããªãã¯å®è¡ãšã³ãžã³ãæåã«çµ±åãããAIã¢ãã«ãå³éžãããè匱æ§ããŒã¿ã»ããã§ãã¡ã€ã³ãã¥ãŒãã³ã°ãããŠããéãå³åº§ã«äŸ¡å€ãæäŸããŸããç¶ç¶çç£èŠãšãŒãžã§ã³ãã¯5ã8é±ç®ã«éçºãããæ€èšŒã®ããã«äžé£ã®äŸ¡å€ã®é«ãDeFiã³ã³ãã©ã¯ããšãšãã«ãããã€ãããŸãã
8ã10é±ç®ã¯ãæ¢ç¥ã®æªçšåçŸã«å¯Ÿããçµ±åãã¹ãã誀æ€ç¥ã®èª¿æŽãç£æ»ã¬ããŒã圢åŒã®ããã¥ã¡ã³ãåã«éç¹ã眮ãããŸãã
| ã¡ããªã¯ã¹ | æ¹å | 詳现 |
|---|---|---|
| ç£æ»å®äºãŸã§ã®æé | 95%é«éå | èªååæã«ãããæåç£æ»ã§4ã8é±éãããã¿ã€ã ã©ã€ã³ã«å¯Ÿããæ°åã§å æ¬çãªçµæãæäŸ |
| èåŒ±æ§æ€åº | 92%ã®ãªã³ãŒã«ç | è€æ°ã®ãšã³ãžã³ãçµã¿åãããã¢ãããŒãã«ãããåäžããŒã«ã§ã¯èŠéãè匱æ§ãæ€åºããéå»ã®æªçšäºäŸã«å¯ŸããŠæ€èšŒæžã¿ |
| 誀æ€ç¥ç | 8%æªæº | AIçžé¢ã¬ã€ã€ãŒããã€ãºãé€å»ããéçºè ãæ¶ç©ºã®çºèŠã§ã¯ãªãçã®ã»ãã¥ãªãã£åé¡ã«å¯ŸåŠã§ããããã«ä¿èšŒ |
| ç£æ»ã³ã¹ã | 80%åæž | 1åæããã500ãã«ã2,000ãã«ã®èªåã¹ãã£ã³ã«ãããéãããäºç®ã®åææ®µéãããžã§ã¯ãã§ãã»ãã¥ãªãã£ãå©çšå¯èœã« |
| ãããã€åŸä¿è· | 24æé365æ¥ã®ã«ã㌠| ç¶ç¶çãªç£èŠã«ããæªçšè©Šè¡ãæ°ç§ä»¥å ã«æ€åºããéå€§ãªæå€±ãçºçããåã«ç·æ¥åæ¢ãå¯èœã« |
| éçºé床 | 3åé«éå | ã€ã³ã©ã€ã³IDEãã£ãŒãããã¯ãšCI/CDçµ±åã«ããããµã€ã¯ã«çµäºæã§ã¯ãªãéçºäžã«åé¡ãææ |
è€æ°ã®ãã§ãŒã³ã«ãŸãããã·ãŒã ã¬ã¹ãªãã³ããååŒããã€ã€ãªãã£å·è¡ãåããã¯ãªãšã€ã¿ãŒåªå ã®ããŒã±ãããã¬ã€ã¹ãç«ã¡äžããŸãã