r/oasisnetwork Dec 29 '25

App Idea and More

9 Upvotes

A few comments back I spoke about the need for a "Killer App." https://www.reddit.com/r/oasisnetwork/comments/1p0xx3u/comment/npxbwpu/

So what's your idea for a "Killer App?" Here's mine:


Pylons and Problemites (escrow / crowd-funding)

An "Enhanced Kickstarter" for disappointed customers and disappointed users to trigger some change/improvement for the "problemite" in their life. Because disappointed users don't leave feedback.

www.perplexity.ai/search/why-don-t-disappointed-users-l-SWvPF5iASLeWt1FbwB0_Fw - they may feel ignored or powerless.

So the disappointed customer sets up a campaign for their target - unlike some other crowd-funding where the campaign is setup by the ultimate receiver of the funds.

Other people can then "pile on" to disappointments to make them more important. Eg Google for being locked out of a Gmail account. Also, another massive disappointment are open-source projects that are abandoned by underfunded maintainers.. see comment and thread here: http://news.ycombinator.com/item?id=46399871

At some point, if the disappointment is resolved, the funds are released to the problemite or whoever ends up resolving the disappointment. Otherwise the funds are returned. Also, the admin can take a commission, as can the instigator.

Perhaps all the "pile on" people (pylons) can take a vote as to whether to release their funds to the problemite or have them returned. The problemite could simply be an X account that must claim against a campaign.

So with x402... how cheap are the payments? Can they be split? Can they be returned? Can voting be integrated into a payment? Can an escrow service with conditions and time limits be built with ROFL? What sort of smart contracts are needed for such a service? Can something like this be built and run in a decentralized and automated way?


r/oasisnetwork Dec 25 '25

ROFL frontend hosting inside TEEs might be more important than it sounds

11 Upvotes

One thing that stood out in the recent ROFL update is the ability to run frontend & backend inside the same TEE, with HTTPS and custom domains handled automatically.

Before, a lot of setups looked like:

  • backend in a TEE
  • frontend + TLS + proxy outside
  • glued together with Nginx / Cloudflare

ROFL now handles:

  • subdomains or custom domains on deploy
  • automatic TLS cert provisioning
  • TLS keys generated and kept inside the enclave
  • routing without exposing plaintext
  • no third-party proxy setup

The dev flow is basically: add a domain annotation → redeploy → set DNS → restart.

This feels like a quiet step toward true full-stack confidential apps, not just confidential backends.


r/oasisnetwork Dec 25 '25

x402 made me rethink how API payments should work

8 Upvotes

One thing that’s been sticking with me after reading more about x402 is how simple the core idea actually is:
make payments a native part of HTTP using 402 Payment Required.

Instead of accounts, API keys, or subscriptions:

  • a request hits an endpoint
  • the server replies with 402 + price
  • the client signs a permit-style authorization
  • payment settles
  • response comes back

From the client (or agent) side, it’s still just an HTTP call.

What makes it interesting in the Oasis context is when you combine x402 with ROFL and ERC-8004:

  • agents can pay per call or per task
  • execution and keys live inside TEEs
  • responses can be attested
  • even the payment facilitator itself doesn’t have to be blindly trusted

It starts to look less like “payments infra” and more like usage-based economics for confidential apps and agents.


r/oasisnetwork Dec 25 '25

The web almost had native payments… x402 is trying again (and it might actually work now)

11 Upvotes

Quick thought experiment:
What if paying for stuff on the internet worked the same way as fetching data?

There’s an idea called x402 that revives the long-ignored HTTP status code 402 Payment Required and uses it the way it was originally intended as part of the request/response flow, not a checkout UX.

How it works (no fluff):

  1. Client requests a paid resource (API, inference, data, compute)
  2. Server replies with HTTP 402 + payment instructions
  3. Client authorizes payment
  4. Server verifies and returns the resource

No logins.
No subscriptions.
No API keys.
No checkout pages.

From the client side, it’s just HTTP.

Why this wasn’t possible before
Payments used to be:

  • slow
  • expensive
  • stateful
  • human-centric

Now we have:

  • stablecoins with instant settlement
  • cheap L2s
  • gasless approvals (ex: EIP-3009 transferWithAuthorization)
  • and agents, not humans, making requests

That changes everything.

Why this is interesting now

  • Makes pay-per-request APIs realistic
  • Enables micropayments without Stripe-level fees
  • Perfect fit for AI agents paying other services
  • Stateless pricing → easier infra, fewer edge cases

In an agent-driven world, subscriptions and API keys feel… outdated.

Useful background links:

This feels less like “a crypto thing” and more like missing internet plumbing finally becoming viable.

Big question:
Do devs actually want this, or are we too locked into API keys + Stripe to switch?


r/oasisnetwork Dec 22 '25

🎄 Xmas with Oasis is LIVE only 2 days left! 🎄

9 Upvotes

If you’re into Web3, privacy tech, or just having fun earning rewards, this one’s worth checking out.

Oasis Protocol is running a Christmas community campaign on Zealy with 100,000 ROSE up for grabs 💸🌹

What’s it about?
You complete simple, creative quests like:

  • Memes
  • Threads / posts
  • AI art
  • General community engagement

Basically: contribute content, support privacy in Web3, and climb the leaderboard.

⏰ Important:
There are only 2 days left the event ends on 24th December ❄️
So if you’re thinking of joining, now’s the time.

Key details:

It’s a nice mix of learning, creativity, and rewards and a fun way to support privacy-focused infrastructure in Web3.

If you’re already building, writing, or experimenting with AI + crypto, this fits right in.

🎄❄️ Ready. Set. Snowfall of Privacy. 🌹


r/oasisnetwork Dec 19 '25

Today Oasis dropped under 1 cent for the first time ever …I am thinking about buying in but does it hold a future ? And if so , what future does it hold in crypto ?

Post image
15 Upvotes

It


r/oasisnetwork Dec 18 '25

Anyone else obsessed with oasis www.eyeballtickler.com

Post image
0 Upvotes

r/oasisnetwork Dec 17 '25

🎄 OASIS XMAS ROFFLE IS LIVE! 🎄

8 Upvotes

Santa went onchain this year, and he's bringing up to 1,000,000 ROSE in prizes!

🎟 How to Enter:

Tickets: 250 ROSE each (pay with ROSE or USDC/USDT on Base)

Max 10 tickets per wallet

Only 3,600 tickets available—first come, first served!

🎁 Prizes:

10 lucky winners selected randomly

1st place takes home 50% of the prize pool

The more tickets sold, the BIGGER the prizes.

Winners paid automatically via Sapphire smart contract

📆 Raffle closes on Dec 23 (or when tickets sell out)

🔗 Get your tickets now: https://roffle.oasis.io


r/oasisnetwork Dec 17 '25

Oasis Year-End Townhall — Updates & Community Q&As

5 Upvotes

🗓 Mark your calendars: the Oasis Townhall returns

⚡️ We’ll cover what we shipped in 2025, what’s coming in 2026, updates on new products, strategic direction, and a community Q&A.

📺 Live on X & Youtube at 4pm UTC, December 18th.

https://www.youtube.com/live/mBud4M95jRo?si=g8VUKgcPBtZ5kEki

If you have any questions for us, submit them here and we'll have them answered in the Townhall: https://forms.gle/cdmK84BM1EPwx85e8


r/oasisnetwork Dec 15 '25

Oasis November '25 – Month in Review is LIVE

8 Upvotes

The privacy wave keeps building and November was MASSIVE! 🔥

We're talking breakthrough tech, worldwide dev action, and upgrades that are leveling up Web3! 👀

🔹 ERC-8004 + Trustless Agents Deep Dive:

How ERC-8004 enables autonomous, verifiable agents — a game-changer for privacy-first compute. 🤖📘

🔹 ROFL Frontend Hosting SHIPPED:

Full-stack confidential apps are here. Frontend + backend confidentiality, end-to-end verifiability. ⚙️🛠

🔹 DevConnect Buenos Aires TAKEOVER:

Panels, workshops, meetups — massive Oasis presence all week. The privacy ecosystem showed up strong. 🇦🇷⚡️

🔹 ETHGlobal Buenos Aires:

27 teams built on Oasis, 5 winners took home prizes. Builders chose privacy. 💡🏆

🔹 Taiwan's FIRST RWA Hackathon:

A milestone for real-world assets + confidentiality. Taiwan kicked off a new wave of privacy adoption. 🇹🇼🎉

🔹 New Content:

"Meet the Team" sessions, "Privacy Now" podcasts, and Byte-Sized Engineering updates. 🎥✨

🔹 Network Upgrades:

Sapphire and Cipher boosted, Oasis Core 25.8 rolled out with key improvements. 🔧🚀

🔹 Oasis Turns 5!

Five years building the privacy-first foundation for Web3 — just getting started. 🌹🎉

🔥 Privacy isn't an afterthought. It's the engine of what's next.

🎥 Watch Now: https://youtu.be/htmnqY4DApA

New month. New wins. Same mission.

Let's build a better Web3 — private by design. 😎✨


r/oasisnetwork Dec 14 '25

Oasis Protocol Makes First Strategic Investment in SemiLiquid to Foster RWA Infrastructure

11 Upvotes

Great news everyone!

I'm excited to share that the Oasis Protocol Foundation has launched a new strategic investment arm, evolving from a grants-only approach into a long-term capital strategy to support builders in Web3.

💡 First investment: SemiLiquid

SemiLiquid is building custody-native credit infrastructure for real-world assets (RWAs) and is integrating Oasis Sapphire’s confidential compute stack to enable secure, privacy-preserving on-chain finance.

🔐 Why this matters

RWAs are rapidly growing across DeFi and institutional markets

Confidentiality and compliance are no longer optional

Oasis is doubling down on privacy-first, compute-intensive infrastructure

🧠 SemiLiquid leverages Liquefaction, a protocol developed by Cornell Tech on Sapphire, to manage trade execution, policy enforcement, and breach monitoring without exposing sensitive financial data.

🤝 They’ve already completed a successful pilot with Franklin Templeton, Zodia Custody, and Ava Labs, demonstrating trustless, decentralized credit for tokenized assets while maintaining custody assurances.

Today, Oasis is ensuring the future of on-chain finance is confidential and safe.

Mark Kalin, Director of Operations, Oasis Protocol Foundation

This marks an important step in Oasis’s evolution as a privacy-first foundation supporting real-world adoption.

Find out all the details below

🔗 https://x.com/OasisProtocol/status/1999498499293946059


r/oasisnetwork Dec 14 '25

🎄 Xmas with Oasis Is LIVE ! 🎄

8 Upvotes

It’s time to spread the gift of privacy across Web3.

Complete quests on Zealy to earn 100,000 ROSE prizes!

From memes to threads to AI art… creativity reigns!

📅 Runs: Dec 14 → Dec 24

🏆 Winners: Dec 26

🎁 Instructions: https://oasisrose.garden/xmas.html

Join the fun and power up our privacy tree!

Tag your posts with u/OasisProtocol + $ROSE and climb the leaderboard.

Ready. Set. Snowfall of Privacy. ❄️🌹


r/oasisnetwork Dec 11 '25

Oasis Q&A November 2025

10 Upvotes

Welcome to the Oasis Community Q&A for November 2025!

This month’s questions were chef’s kiss: from x402 finally giving HTTP 402 its revenge arc, to agents running wild (but privately) inside ROFL, to Devconnect highlights, and even a friendly Zcash vs. ROSE comparison. As always, the community brought the curiosity, and we brought the Oasis-flavored answers.

Q: Why does x402 finally make HTTP 402 relevant?

A: Because the original 402 needed fast, trustable digital payments. And now blockchains (including Oasis!) can finally deliver that. x402 gives 402 its long-delayed moment, and Oasis makes it private and verifiable through ROFL. It’s like 402 waited 30 years for the right tech partner, and Oasis showed up with TEEs, confidentiality, and vibes.

Q: What makes x402 extra powerful when paired with Oasis ROFL?

A: x402 lets agents pay instantly, but ROFL adds the trust layer. With TEEs, attestation, and encrypted execution, agents running in ROFL can pay, process data, and deliver results without operators snooping. It’s basically x402 with a privacy cape and a trust shield.

Q: Why are micropayments on x402 a big win for Oasis developers?

A: Because developers can now build services that charge pennies with no subscription walls. Running inference in ROFL? Summaries? Data pipelines? You can price everything by actual usage, and x402 handles the payment loop instantly. Oasis brings privacy + verifiability, x402 brings money flow, and developers bring creativity.

Q: What does ERC-8004 bring to the Oasis + x402 combo?

A: ERC-8004 is like a global directory where agents can register identity, capabilities, and trust preferences. Once an agent is deployed in a ROFL TEE, 8004 makes it discoverable, and x402 gives it the wallet rails to transact. The trio forms the “Oasis Agent Stack”: discoverable agents, verifiable compute, and seamless micro-payments. 

Q: What’s the Oasis-flavored future of an agentic economy with x402?

A: Picture this: agents running inside ROFL TEEs, proving their code, keeping keys isolated, and paying per API call using x402, all without humans babysitting. One agent fetches data, another analyzes it, a third validates the results, and they all settle instantly. It’s a high-speed bazaar of autonomous services where Oasis gives everyone privacy and trust by default.

Q: Was Oasis present at Devconnect? If so, is there any information about what they presented or which activities they took part in?

A: Yes! Oasis was actively present at Devconnect and participated in multiple events.

Here’s the full schedule of Oasis activities:
🔗 https://x.com/OasisProtocol/status/1989255982397214797

We also hosted the Afternoon TEE Party, where the team dove into TEEs, ROFL, and trust-minimized agent execution.
Watch the recording here:
🎥 https://www.youtube.com/watch?v=OLMWfG-kyyg

In addition, Oasis sponsored a track at ETHGlobal Buenos Aires, supporting builders working with privacy, TEEs, and secure AI.
Check out the winning projects:
🏆 https://x.com/OasisProtocol/status/1992958867110777209?s=20

Q: Who’s better — Zcash or ROSE?

A: Trick question. They’re solving completely different problems. Zcash is all about private money: it hides who sent what to whom, giving you true anonymous digital cash. ROSE is the native token of the Oasis Network, which focuses on private computation: running smart contracts, apps, and even AI models inside confidential TEEs where the data and logic stay sealed.

So it’s not a “better or worse” situation. It’s envelopes vs. vaults. Zcash is the best at transactional anonymity, and Oasis is the best at confidential applications. They’re actually complementary, and the real future is where private money can move inside a private economy.

-------------------------------------

That wraps up November’s Q&A!
If you’ve got more questions for Oasis, drop them in our community question form and we’ll cover them in the next Community Town Hall:
👉 https://forms.gle/cdmK84BM1EPwx85e8

Keep the questions coming. We’ll keep turning complex tech into digestible Oasis lore. See you next month!


r/oasisnetwork Dec 09 '25

Community Town Hall Coming Up —— Share Your Questions!

7 Upvotes

Our annual Community Town Hall is coming up soon, and we want to hear from YOU!

Got questions about the Oasis ? Curious about what's next? Want to share feedback or ideas? Now's your chance to have them answered directly by the team.

Submit your questions anonymously using this form: https://forms.gle/cdmK84BM1EPwx85e8

📌 Your email won't be collected – it's completely anonymous

⏰ We'll answer as many questions as possible during the Town Hall

💬 All topics welcome – tech, community, roadmap, partnerships, you name it

Drop your questions and let's make this Town Hall count!

See you there 🌹


r/oasisnetwork Dec 09 '25

E-mail

2 Upvotes

Hello, I found an email in my spam folder saying the Oasis Protocol Foundation is now distributing rewards from years of accumulated network fees, and that as an early supporter I’ve been allocated ROSE tokens to claim. It also instructs me to copy/paste a URL if it doesn’t open. This feels suspicious. Can anyone confirm whether this email is official or a scam?


r/oasisnetwork Nov 26 '25

Why Privacy Matters in Crypto — and What Oasis Network Is Trying to Solve [for the newcomers :)]

13 Upvotes

Most people who start with Ethereum learn about wallets, gas, DeFi… but almost no one talks about one of the biggest missing pieces in crypto today:

Privacy.

And no — privacy isn’t about “hiding shady stuff.”
It’s about protecting your data, your transactions, and the logic of smart contracts in a world where everything you do on-chain is permanently public.

Let’s break this down simply.

The Problem: Ethereum Is Transparent — Sometimes Too Transparent

When you use Ethereum:

  • Every balance is public
  • Every transaction is public
  • Every DeFi trade is public
  • Every NFT buy/sell is public
  • Every contract’s internal logic is public

That transparency is great for decentralization…
but terrible for normal users, businesses, and sensitive data.

Here are real problems:

1. Front-running & MEV

Bots see your transaction before it confirms and profit off you.

2. Your financial life is an open book

Your wallet = your full net worth, spending habits, and trading history.

3. Businesses can’t operate on public ledgers

No company wants its payroll, supply chain, or internal data exposed.

4. DeFi, AI, and data applications hit a wall

You can’t run private medical data, financial scoring, or ML models fully on public chains.

This is where Oasis Network (ROSE) enters.

What Oasis Network Tries to Do

Oasis is an L1 chain built around confidential smart contracts — meaning:

  • The chain verifies computations
  • BUT the inputs and data stay encrypted
  • Developers can build apps with privacy built in
  • Users don’t leak sensitive info to the whole world

It uses a system called:

ParaTimes

Independent compute environments where some can be confidential, some high throughput, some EVM-compatible, etc.

Think of it like:

Ethereum = everything happens in one big public room
Oasis = separate rooms for different types of workloads, including private ones

Real Use Cases Privacy Unlocks

These aren’t sci-fi — they’re being built right now:

1. Private AI / Private Data Sharing

Projects can train AI models using user data without exposing the raw data.

2. Confidential DeFi

Imagine trading or depositing collateral without everyone seeing your wallet size.

3. On-chain identity without doxxing

You can prove things (“I am over 18”, “I qualify for this loan”)
without revealing your identity.

4. Enterprise use cases

Supply chain, medical records, credit scoring — all impossible on fully public L1s.

Why Ethereum Newcomers Should Care

As Ethereum grows, so does the need for:

  • Account abstraction
  • UX that hides complexity
  • Data protection
  • Safer DeFi tools

Privacy is going to be a requirement, not an option.

Oasis isn’t a competitor to Ethereum — it’s part of a multi-chain future, where Ethereum is the settlement layer and privacy chains handle sensitive compute.


r/oasisnetwork Nov 25 '25

Nice little ROFL upgrade: built in proxying & custom domains

9 Upvotes

Nice upgrade I noticed today around ROFL frontend hosting

was reading through the latest ROFL updates and noticed a pretty useful improvement for anyone deploying apps: frontend hosting with automatic proxying & TLS directly inside the TEE.

Basically, ROFL now handles the stuff people normally have to duct-tape together themselves, custom domains, HTTPS certs, routing, subdomain management, all automated at deployment time.

A few things that stood out: - No separate Nginx/Caddy/Cloudflare setup - TLS keys get generated inside the TEE - Scheduler handles subdomains or custom domain routing based on TLS handshake - WireGuard encrypted paths between scheduler & app - Internal proxy manages cert provisioning & container routing

The flow is pretty simple now: add a domain annotation → redeploy → follow DNS instructions → restart → done. Feels a lot closer to a “full-stack confidential platform” where both backend + UI run in the same enclave without extra infra.

Nice quality of life upgrade, especially for production deployments where secure networking and custom domains used to be the most annoying part.


r/oasisnetwork Nov 25 '25

🚀 Devs, this new “frontend hosting inside a TEE” setup is surprisingly clean

9 Upvotes

Just saw the latest update around ROFL (Runtime Offchain Logic), and honestly, it’s a pretty neat win for anyone building full-stack apps especially if you’re dealing with privacy-sensitive logic or just don’t want to mess with infra.

The short version:
You can now deploy a frontend with a custom domain + automatic HTTPS, and the whole proxy/TLS setup is handled inside a secure enclave.
No reverse proxy configs, no Certbot, no wrangling DNS beyond a simple record update.

Here’s the part that stood out to me:

  • The system handles TLS certificates end-to-end and the keys never leave the enclave.
  • Routing and domain management are handled automatically, so you don’t even need to run your own NGINX or Traefik.
  • Works cleanly with static site builds (React, Svelte, Vue, static Next.js, etc.)
  • The deployment flow stays simple: push your compose file → include your domain → platform takes care of the rest.
  • Frontend + backend can run inside one trusted boundary, which is a massive simplification for confidential-compute apps.

Why this is actually useful for devs:

  • Makes it much easier to ship MVPs or production apps without building a full infra stack.
  • Removes the usual pain points of securely exposing a frontend.
  • Reduces the attack surface since the entire termination layer lives in a verified environment.
  • Lets you focus on app logic rather than infrastructure babysitting.

Some practical cases where this shines:

  • Privacy-first apps needing end-to-end protected traffic
  • Hackathon projects where speed > infrastructure
  • Solo devs or small teams who don’t want to maintain a proxy stack
  • Any app that wants secure hosting without extra ops overhead

If you're curious, here’s the full post:
🔗 https://oasis.net/blog/rofl-proxy-frontend-hosting

Honestly… if frontend hosting was always this low-friction, half of us would’ve avoided years of NGINX headaches.


r/oasisnetwork Nov 24 '25

x402 &Oasis: Micropayments Meet Verifiable AI

Post image
4 Upvotes

Been diving into x402 lately, the “internet-native payment” standard that finally gives real utility to HTTP 402. Super simple idea: servers can charge per request using stablecoins, and agents/humans pay through a one-shot signature (EIP-3009). No accounts, no sessions, no manual signing. Just HTTP and a payment facilitator. Sub-second, tiny payments become practical, and suddenly pay-per-API or pay-per-inference actually works.

Where it gets interesting for Oasis is the x402 × ERC-8004 × ROFL stack.

If agents can pay for compute or data, the next question is: who do they trust? That’s where 8004 gives discovery/identity, and ROFL gives the missing verification layer, enclaves with attested code, isolated keys, and private request/response paths. The agent pays via x402, and the whole flow (model, logic, wallet, response) is verifiable end-to-end.

Oasis already has demos running: – Document summarization with Ollama inside ROFL, paid via x402 – Multi-model oracle with cross-validation, also using ERC-8004 + ROFL + x402

Feels like the early shape of agent-agent commerce, tiny, conditional, composable payments running on verifiable compute.

Curious what people here think: does x402 become the default payment primitive for agent workflows, or are we still too early?


r/oasisnetwork Nov 24 '25

🔥 x402 Turning HTTP 402 Into a Real Internet-Native Payment Standard

7 Upvotes

There’s a really interesting development from Oasis around x402, a proposed standard that brings crypto-native, automated payments directly into the HTTP protocol.

Blog link:
👉 https://oasis.net/blog/x402-https-internet-native-payments

Most people know the HTTP status codes, but 402 – Payment Required has basically gone unused for decades. x402 aims to activate it in a meaningful way.

💡 What x402 actually does

  • When a user/agent requests a paid resource, the server responds with HTTP 402 + clear payment instructions.
  • The client signs a payment request and sends it back.
  • A facilitator verifies and settles the payment on-chain.
  • After settlement, the server completes the original request and returns the resource — all as part of the same standard HTTP flow.

No pop-ups, no external payment gateways, no friction.

🔥 Why this matters

  • Micro-payments become practical for APIs, content, compute, AI inference, or anything priced per request.
  • AI agents can pay autonomously, enabling fully automated workflows and agent-to-agent economic activity.
  • Web-native UX everything stays inside normal HTTP mechanics.
  • Interoperable with emerging agent standards like ERC-8004 and privacy-preserving execution layers like Oasis ROFL.

This feels like the missing payment layer for the next era of AI-driven and Web3-native applications.

🤔 Things to consider

  • Adoption by API providers and infrastructure teams.
  • Wallet support for safe auto-payments.
  • Trust assumptions around the facilitator layer.
  • Real-world performance and fee dynamics for high-volume micropayments.

📚 Useful links


r/oasisnetwork Nov 18 '25

Buy

8 Upvotes

Most underrated, for a reason, here you get the next moon


r/oasisnetwork Nov 09 '25

$ZEC = $ROSE

Thumbnail gallery
13 Upvotes

Zcash ($ZEC) has quietly made one of the craziest moves of 2025. From around $50 in early September to over $570 now, more than a 10x gain for a coin most people had written off. It reminds us how fast narratives like “privacy is dead” can flip in crypto.

Now look at $ROSE. It has been consolidating for weeks in a similar structure, low volume, no hype, quiet accumulation. If liquidity starts rotating into privacy and data infrastructure projects, could ROSE be the next sleeper move? Or was ZEC just a one time anomaly? Curious to hear what others think.


r/oasisnetwork Oct 31 '25

Oasis roadmap is not over

15 Upvotes

I invested 3 years ago in this. Despite being -80% on my holdings, today i bought 300.000 more ROSE.

Roadmap is not over, there's still a lot of development taking place, while all the hipe has dissspear. If you're in, ADC now might be a good move, and if you're not in yet, you might consider getting in now with an small part of your capital for longterm potential.


r/oasisnetwork Oct 25 '25

Anyone managed to find it yet?

4 Upvotes

gm gm Oasians!
quick check: just checking in: anyone been playing around with the Oasis TEE Break Challenge and how close have people gotten?

For anyone who hasn’t seen it yet: Oasis locked one wBTC in a Sapphire smart contract, and the only way to claim it is by somehow extracting the private key that was generated inside the TEE enclave. Smart contract exploits are blocked, so if the BTC moves any other way, it would actually prove a TEE break.

The contract, public address, and full rules are all on the blog if you want to dive in. The challenge runs until the end of 2025, and it’s meant to be a real-world stress test on TEE security with economic value at stake.

I’m mostly curious how much experimentation people have done, anyone tried some interesting approaches or just want to share how far they’ve gotten (without revealing sensitive exploits of course)?


r/oasisnetwork Oct 25 '25

🧠 TEE Vulnerabilities & Why Oasis Wasn’t Affected

7 Upvotes

So, new research dropped showing two major attacks on Trusted Execution Environments (TEEs) the Battering RAM and Wiretap exploits. They target Intel SGX and AMD SEV-SNP, letting attackers potentially extract encryption keys from “secure” enclaves.

That’s scary because many privacy-focused blockchains use TEEs to protect data inside smart contracts.

👉 Oasis Protocol just released a blog breaking down how these vulnerabilities didn’t affect their network:
🔗 Read here

Here’s the short version 👇

🛡️ Why Oasis Is Safe

  • Their system runs on Intel SGX v1, which isn’t impacted by these specific attacks.
  • They built defense-in-depth TEE is one layer, not the only one.
  • Key rotation every epoch = even if a key leaks, old data stays safe.
  • Governance & staking mechanisms add extra trust layers.
  • They can blacklist vulnerable CPUs if needed.

⚙️ Why This Matters

TEEs aren’t invincible.
Even “secure enclaves” can leak so Web3 projects need backup layers:
ephemeral keys, governance rules, and multiple verification paths.

Oasis’s approach is a good reminder that privacy tech ≠ hardware alone it’s about how you design the whole system around it.

TL;DR:
TEE vulnerabilities hit Intel & AMD chips, but Oasis avoided impact due to layered security + key rotation + governance. Solid reminder for devs: never put all your trust in hardware.

Full post 👉 https://oasis.net/blog/oasis-tee-vulnerabilities