Why can 512 validators mislead every light client on Ethereum today?
Oportunidade
Ethereum's light client protocol trusts a rotating committee of 512 validators to attest to the chain head, but their combined stake is roughly 16,000 ETH, a fraction of a percent of total validator stake, and their ETH is non-slashable in the light-client context. A dishonest supermajority of the committee could feed light clients an invalid chain head without facing penalties proportional to what they could steal. Mobile wallets, bridge relayers, and cross-chain oracles increasingly rely on these light clients rather than full nodes, so the attack surface is expanding with each quarter. A 2024 Princeton paper formally identifies the gap and proposes stake-matched security levels as a fix, and EIP-8390 proposes removing the sync committee entirely in favor of ZK proofs, but neither is implemented on mainnet. A user relying on a light client today has no way to know their security guaran
Por que importa
Light clients are becoming the default trust anchor for the most common on-chain interactions, and their security budget is still priced at a rounding error of the network's total stake.
Como avalio a oportunidade
A Pontuação de Oportunidade é minha própria leitura, não uma medição: o quanto dói, com que frequência aparece e o quanto pouco existe para resolvê-lo hoje. Quanto maior, mais vale a pena construir, na minha opinião.
O quanto de dor causa quando aparece.
Com que frequência as pessoas realmente se deparam com isso.
O quanto pouco de boas ferramentas existe para isso hoje.
Mais problemas que merecem ser resolvidos
Por que não consigo provar que sou solvente sem mostrar meu saldo?
BlockchainPor que mover dinheiro entre blockchains ainda é mais assustador do que a internet nos primórdios?
BlockchainPor que conformidade regulatória ainda significa um PDF e uma reza?
BlockchainPor que a autocustódia ainda é uma escolha entre perder suas chaves e confiar em uma empresa?
BlockchainPor que tokenizar um ativo real ainda exige dez intermediários?
BlockchainPor que uma stablecoin não consegue pagar alguém sem internet?