Skip to content

Update supply-chain-rpc-security.mdx#517

Open
yuvalava wants to merge 2 commits into
security-alliance:developfrom
yuvalava:patch-1
Open

Update supply-chain-rpc-security.mdx#517
yuvalava wants to merge 2 commits into
security-alliance:developfrom
yuvalava:patch-1

Conversation

@yuvalava

Copy link
Copy Markdown

Frameworks PR Checklist

Thank you for contributing to the Security Frameworks! Before you open a PR, make sure to read information for contributors and take a look at the following checklist:

  • Describe your changes, substitute this text with the information:
  • Expands the RPC Provider Compromise section.
  • Reframes the risk as availability + integrity, rather than just single-provider failure. The existing text reads primarily as an availability story (Infura). Integrity is a different threat model and worth calling out separately.
  • Adds the April 2026 KelpDAO / LayerZero incident as a notable case — audited contracts drained via RPC compromise, no smart contract bug.
  • Adds a short tiered ladder of RPC cross-validation defenses (simple quorum → multi-source → risk-aware → failover-tightened) plus a brief mention of cryptographic verification.

No changes outside this section.
cc @scode2277 @ipatka

  • If you are touching an existing piece of content, tag current contributors from the attribution list
  • If there is a steward for that framework, ask the steward to review it
  • [] If you're modifying the general outline, make sure to update it in the vocs.config.ts adding the dev: true parameter
  • [] If you need feedback for your content from the wider community, share the PR in our Discord
  • Review changes to ensure there are no typos; see instructions below.

@github-actions

github-actions Bot commented Jun 15, 2026

Copy link
Copy Markdown
built with Refined Cloudflare Pages Action

⚡ Cloudflare Pages Deployment

Name Status Preview Last Commit
frameworks ✅ Ready (View Log) Visit Preview fee8ad6

Comment thread docs/pages/supply-chain/web3-supply-chain-threats.mdx Outdated
Co-authored-by: Sara Russo <sararusso984@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants