<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Taek Lee | Writing</title><description>Personal writing from Taek Lee on account abstraction and smart contract security.</description><link>https://taek.tech/</link><language>en-us</language><item><title>Keys and Accounts: Native AA — EIP-8130 vs EIP-8141</title><link>https://taek.tech/writing/keys-and-accounts-native-aa-eip-8130-vs-eip-8141/</link><guid isPermaLink="true">https://taek.tech/writing/keys-and-accounts-native-aa-eip-8130-vs-eip-8141/</guid><description>Why native account abstraction needs both key-originated and account-originated transactions—and why configuration-backed identity is inevitable.</description><pubDate>Tue, 11 Aug 2026 00:00:00 GMT</pubDate></item><item><title>The EOA Transition: An In-Place Path to Native AA</title><link>https://taek.tech/writing/eoa-transition-native-account-abstraction/</link><guid isPermaLink="true">https://taek.tech/writing/eoa-transition-native-account-abstraction/</guid><description>An argument for native account abstraction that upgrades existing EOAs in place by replacing root authorization without sacrificing address continuity.</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate></item><item><title>Kernel v1-v4: What Production Kept - and What It Left Behind</title><link>https://taek.tech/writing/kernel-v1-v4-production-retrospective/</link><guid isPermaLink="true">https://taek.tech/writing/kernel-v1-v4-production-retrospective/</guid><description>A four-version retrospective on how Kernel evolved from EOA-rooted compatibility to replaceable validation, modular permissions, and a production-driven v4 foundation.</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate></item><item><title>Final, Not Finished: What ERC-4337 Taught Us</title><link>https://taek.tech/writing/final-not-finished-what-erc-4337-taught-us/</link><guid isPermaLink="true">https://taek.tech/writing/final-not-finished-what-erc-4337-taught-us/</guid><description>A production retrospective on how ERC-4337 converged into a shared execution and sponsorship rail while exposing the limits of standalone smart-account migration.</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate></item><item><title>EIP-3074 Invoker with Permissions</title><link>https://taek.tech/writing/eip-3074-invoker-with-permissions/</link><guid isPermaLink="true">https://taek.tech/writing/eip-3074-invoker-with-permissions/</guid><description>Using ERC-7579 policies and signers to bring session keys and passkeys to EIP-3074 EOAs.</description><pubDate>Tue, 07 May 2024 00:00:00 GMT</pubDate></item><item><title>Finding a Bug in Safe&apos;s ERC-4337 Module</title><link>https://taek.tech/writing/finding-safe-erc-4337-module-bug/</link><guid isPermaLink="true">https://taek.tech/writing/finding-safe-erc-4337-module-bug/</guid><description>How ERC-4337 context exposed a paymasterAndData signature flaw that an isolated contract review missed.</description><pubDate>Fri, 08 Dec 2023 00:00:00 GMT</pubDate></item><item><title>Why Kernel Is Not Written in Huff</title><link>https://taek.tech/writing/why-kernel-is-not-written-in-huff/</link><guid isPermaLink="true">https://taek.tech/writing/why-kernel-is-not-written-in-huff/</guid><description>Why extensibility, auditability, testing, and development speed matter more than marginal gas savings for Kernel.</description><pubDate>Tue, 17 Oct 2023 00:00:00 GMT</pubDate></item><item><title>The SimpleAccount Factory Gas Bloat</title><link>https://taek.tech/writing/simple-account-factory-gas-bloat/</link><guid isPermaLink="true">https://taek.tech/writing/simple-account-factory-gas-bloat/</guid><description>How an old Solidity compiler bug added 122,914 gas to every SimpleAccount deployment.</description><pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate></item><item><title>Breaking ERC-4337 Infrastructure with UserOpHash</title><link>https://taek.tech/writing/breaking-erc-4337-infrastructure/</link><guid isPermaLink="true">https://taek.tech/writing/breaking-erc-4337-infrastructure/</guid><description>Manipulating ABI offsets to make different UserOperations produce the same userOpHash.</description><pubDate>Thu, 16 Mar 2023 00:00:00 GMT</pubDate></item><item><title>How Non-Unique UserOp Hashes Broke ERC-4337 Infrastructure</title><link>https://taek.tech/writing/non-unique-userop-hashes/</link><guid isPermaLink="true">https://taek.tech/writing/non-unique-userop-hashes/</guid><description>A debugging experiment with repeated UserOperations exposed assumptions about userOpHash uniqueness.</description><pubDate>Tue, 14 Mar 2023 00:00:00 GMT</pubDate></item><item><title>Five Account Abstraction Audit Findings</title><link>https://taek.tech/writing/five-account-abstraction-audit-findings/</link><guid isPermaLink="true">https://taek.tech/writing/five-account-abstraction-audit-findings/</guid><description>Signature replay, paymaster draining, policy bypass, and implementation destruction findings from a Biconomy audit.</description><pubDate>Thu, 02 Mar 2023 00:00:00 GMT</pubDate></item><item><title>EIP4337Manager Self-Destruct Vulnerability</title><link>https://taek.tech/writing/eip4337-manager-selfdestruct-vulnerability/</link><guid isPermaLink="true">https://taek.tech/writing/eip4337-manager-selfdestruct-vulnerability/</guid><description>An analysis of how an unprotected EIP4337Manager module setup enabled the manager&apos;s destruction and signature-free UserOperations in Gnosis Safe-based ERC-4337 wallets.</description><pubDate>Tue, 24 Jan 2023 00:00:00 GMT</pubDate></item><item><title>ERC-4337 Sample VerifyingPaymaster Signature Replay Attacks</title><link>https://taek.tech/writing/verifying-paymaster-signature-replay-attacks/</link><guid isPermaLink="true">https://taek.tech/writing/verifying-paymaster-signature-replay-attacks/</guid><description>An analysis of signature replay flaws in the ERC-4337 sample VerifyingPaymaster that can drain deposits and bypass transaction sponsorship policies.</description><pubDate>Thu, 12 Jan 2023 00:00:00 GMT</pubDate></item></channel></rss>