Generated reports

Generated report detail

ATTACK: unauthorized-signer

Fixture attack-xchain-unauthorized-signer-v0 generated pass at 2026-06-10T22:58:55.219Z.

JSON
Status
pass
Steps
1/1
Invariants
0/1
Snapshots
2

Environment

Mode

mock-fakenet

gRPC Endpoint

n/a

Fakenet Command

model

NEGATIVE CONTROL (expectRejected=true): a cross-chain exploit that the invariant MUST catch.

Mint attestation includes an unauthorized signer (not in the federation).

expectRejected inverts a CAUGHT exploit to a green PASS (a signed proof-of-prevention).

Next Actions

  1. Replace mock poke and peek execution with local fakenet adapter calls.
  2. Replace command-backed fakenet metadata probes with stable gRPC-native probes once node surfaces are available.
  3. Persist generated reports under a project workspace.
  4. Add app-specific invariant packs as the NockApp interface stabilizes.

Invariant Packs

No invariant packs referenced.

Run Steps

Observe the terminal joint state

bridge

pass

true

Invariant Results

Attestations must be authorized signers

critical

fail

Observed QUORUM FAIL: wd-001: unauthorized evil-node; expected each mint attested by >= threshold distinct authorized signers under xchain.

Alerts

No alert policies configured.

Adapter Observations

No adapter observations captured.

State Diffs

PathBeforeAfter
xchain.observedundefinedtrue

Snapshot Timeline

Initial state

initial

ea71063f4da48b33

After observe

observe

126639f7d96b293b

Artifacts

Report ID

lab_attack-xchain-unauthorized-signer-v0_20260610225855219

Report Hash

sha256:0fdd8d5e031796d5719218ef10eb51658fe1028dfa55a4197cc883e23945ce87

Snapshot Root

126639f7d96b293b

JSON Path

/bundle/server-functions/default/.nocklab/attack-xchain-unauthorized-signer.report.json

Markdown Path

/bundle/server-functions/default/.nocklab/attack-xchain-unauthorized-signer.report.md

Markdown Bytes

965

Changed Paths

xchain.observed

Markdown Preview

# ✅ ATTACK: unauthorized-signer Lab Report

Alert Summary

0 triggered, 0 clear

Verification Candidate

Candidate

ATTACK: unauthorized-signer Verification Candidate

Status

watch

Signature

unsigned

Invariant Packs

none

Report Hash

sha256:0fdd8d5e031796d5719218ef10eb51658fe1028dfa55a4197cc883e23945ce87

Snapshot Root

126639f7d96b293b