Disclosing the Neo X Audit Report by Secure3

Neo
The Neo Pulse
Published in
3 min readAug 8, 2024

Today, we are pleased to disclose the report compiled by Secure3 following its audit of Neo X. Secure3 is a security contest platform dedicated to safeguarding Web3 technologies through decentralized intelligence. Neo chose Secure3 for its exceptional quality, speed, efficiency, and cost-effectiveness, helping us achieve optimal security coverage. Secure3 primarily handled the security audits for the bridge between Neo X and Neo N3. Check out the report details below.

Bridge Contract: https://app.secure3.io/3d3e97be60

Bridge Relayer: https://app.secure3.io/272859071c

To conduct a thorough review of Neo X, Secure3 organized a group of 30 security experts from its community for a one-month audit contest. After the event, the Secure3 team carefully reviewed each submission, rating every issue and remediation.

During the audit contest, the Secure3 community discovered several issues, notably:

  • Token registration and deregistration confusion.
  • Accounting for fees on transfer tokens and hashing issues.

Neo’s team addressed these issues by:

  • Disallowing the deregistration of token bridges to fix the first issue.
  • Introducing a balance check before and after transfers to fix the second issue.

Thanks to Secure3’s careful and meticulous audit, the native bridge between Neo X and Neo N3 is now secure and stable for asset transfers.

This audit marks the beginning of a long-term collaboration between Neo and Secure3. Secure3’s familiarity with our language and structure positions it well to provide ongoing audit services for projects within the Neo X ecosystem. We are confident that collaborating with security companies like Secure3 will ensure a transparent, collaborative, and verifiable security ecosystem.

About Neo

Founded in 2014, Neo is an open-source, community-driven blockchain platform designed to welcome developers into the Smart Economy. By enabling developers to digitize and automate the management of assets through smart contracts, Neo is built to realize the optimized digital world of the future. As the most developer-friendly blockchain, Neo meets developers where they are by integrating seamlessly with the world’s most widely used languages and tools and providing the most feature-complete blockchain platform for building full-stack decentralized applications. With native support for powerful infrastructure including decentralized storage, oracles, and domain name service, Neo is the ideal foundation for developers to build the next generation Internet.

Neo X is Neo’s sidechain. With its MEV resistance and full compatibility with Ethereum tooling, Neo X excels in cross-chain scalability and DeFi applications through its use of the dBFT consensus mechanism and enveloped transactions.

Official Website | X | Discord | Telegram | Facebook | Reddit | YouTube

About Secure3

Secure3 is a decentralized security platform dedicated to securing Web3 with decentralized intelligence. We provide robust security products and solutions, including Audit Contests and Bug Bounties. By aligning top-tier security experts to compete for auditing based on transparent security standards, incentive models, and auditor performance, we maximize the security contributions of the audit community. Through these innovative solutions, our mission is to build an efficient, reliable, and transparent Web3 security ecosystem.

Website | Case | Twitter | Discord

--

--