Trident: A Rust Fuzzing Framework for Secure Solana Program Development

This repository profile is provided by osrepos.com, an open source repository discovery platform.

Trident: A Rust Fuzzing Framework for Secure Solana Program Development

Summary

Trident is a robust, Rust-based fuzzing framework specifically designed for Solana programs. It empowers developers to ship secure code by efficiently identifying critical vulnerabilities, such as edge cases, overflows, and missing constraints, early in the development cycle. This powerful tool offers manually-guided, stateful fuzzing capabilities, leveraging Anchor-like macros and executing thousands of transactions per second to thoroughly stress-test programs.

Repository Information

Analyzed by OSRepos on November 25, 2025

Topics

Click on any tag to explore related repositories

Use at your own risk

OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of code from these repositories is the user's own responsibility. Always review the repository, source code, dependencies, licenses, and security implications before running or installing anything. OSRepos is not responsible for issues, damages, or losses resulting from third-party repositories.

Introduction

Trident is a cutting-edge, Rust-based fuzzing framework for Solana programs, developed by Ackee Blockchain Security. It stands out as the first and only manually-guided fuzzing framework for Solana, capable of processing up to 12,000 transactions per second. Designed to help developers ship secure code, Trident assists in uncovering subtle bugs and vulnerabilities that traditional testing methods might miss. It has been granted by the Solana Foundation and is trusted for securing projects like Kamino.

Installation

To get started with Trident, you can install the command-line interface via Cargo. The latest release is 0.11.1.

cargo install trident-cli

Examples

Here's a quick start guide to writing your first fuzz test with Trident.

First, define your initialization logic using the #[init] macro:

#[init]
fn start(&mut self) {
  // Build Initialize Transaction
  let mut tx = InitializeTransaction::build(&mut self.trident, &mut self.fuzz_accounts);

  // Execute Initialize Transaction
  self.trident
        .execute_transaction(&mut tx, Some("Initialize"));
}

Then, define your transaction flows using the #[flow] macro:

#[flow]
fn flow1(&mut self) {
    // Build MoveEast Transaction
    let mut tx = MoveEastTransaction::build(&mut self.trident, &mut self.fuzz_accounts);

    // Execute MoveEast Transaction
    self.trident.execute_transaction(&mut tx, Some("MoveEast"));
}
#[flow]
fn flow2(&mut self) {
    // Build MoveSouth Transaction
    let mut tx = MoveSouthTransaction::build(&mut self.trident, &mut self.fuzz_accounts);
    
    // Execute MoveSouth Transaction
    self.trident.execute_transaction(&mut tx, Some("MoveSouth"));
}

Finally, run your fuzz test:

trident fuzz run <fuzz_test>

For comprehensive examples and guides, refer to the official documentation.

Why Use Trident?

Trident offers a powerful suite of features and benefits for securing your Solana programs:

  • High Performance: Executes thousands of transactions per second to thoroughly stress your program at Solana speed.
  • Comprehensive State Modeling: Models state changes and flows that often go undetected by standard unit tests.
  • Early Vulnerability Detection: Surfaces edge cases, overflows, and missing constraints early in the development process.
  • Expert Backing: Built and maintained by Ackee Blockchain Security, trusted auditors for major projects like Lido, Safe, and Axelar.
  • Solana Foundation Support: Officially supported by the Solana Foundation.
  • Manually-Guided Fuzzer: Allows you to define custom strategies to explore complex code paths effectively.
  • Stateful Fuzzing: Generates inputs based on critical account state changes, leading to more realistic test scenarios.
  • Anchor-like Macros: Enables writing fuzz tests with a familiar, clean syntax, similar to Anchor development.
  • TridentSVM Client: Facilitates execution using Anza’s Solana SVM API.
  • Property-Based Testing: Provides tools to compare account states before and after execution, ensuring expected behavior.
  • Flow-Based Sequence Control: Combine multiple instructions into realistic transaction patterns for robust testing.
  • Regression Testing: Compare fuzzing results between different program versions to prevent regressions.

Trident is ideal for audit preparation, continuous security integration into CI/CD pipelines, and research or prototyping to generate complex attack sequences programmatically.

Links

Related repositories

Similar repositories that may be relevant next.

Codeg: Collaborative Multi-Agent AI Coding Workspace for Developers

Codeg: Collaborative Multi-Agent AI Coding Workspace for Developers

September 30, 2026

Codeg (Code Generation) is an innovative multi-agent AI coding workspace built in Rust, designed to unify and enhance the developer experience. It aggregates sessions from various AI coding agents like Claude Code, Codex, and Grok Build into one searchable environment, facilitating seamless collaboration and task management. Available as a desktop app, self-hosted server, or Docker container, Codeg also offers native iOS and Android clients for on-the-go productivity.

AI CodingMulti-AgentRust
CCCC: Coordinate Your Coding Agents Like a Group Chat

CCCC: Coordinate Your Coding Agents Like a Group Chat

September 29, 2026

CCCC is a production-minded orchestrator designed to coordinate coding agents like a group chat, offering features such as read receipts, delivery tracking, and remote operations from your phone. It enables 24/7 workflow for multi-agent teams with a single `pip install` and zero infrastructure. This tool helps manage diverse AI runtimes, ensuring persistent collaboration across different machines and trusted working groups.

ai-agentschatgptllm-orchestration
AI Session Search: Ultra-Fast AI Agent Session Analysis

AI Session Search: Ultra-Fast AI Agent Session Analysis

September 29, 2026

AI Session Search (aise) is an ultra-fast, Rust-powered tool designed for searching and analyzing local AI agent coding sessions. It seamlessly integrates and indexes nine different session formats, including those from Claude, Codex, Cursor, and Gemini CLI. This powerful utility enables developers to quickly recover context, track agent behavior, and efficiently manage their AI-generated code history.

AIAI ToolsRust
AgentAleph: Local-First AI Coding Agent and GGUF Model Manager

AgentAleph: Local-First AI Coding Agent and GGUF Model Manager

September 25, 2026

AgentAleph is a desktop application that combines a local-first AI coding agent with a GGUF model manager. It allows users to download, load, and manage local large language models, and then use an AI agent to interact with their projects, all without relying on cloud services or API keys. This tool emphasizes privacy and offline capability, running models directly on your machine.

AI AgentCoding AgentLocal LLM

Source repository

Open the original repository on GitHub.

15 counted GitHub visits

View on GitHub
OS
OSRepos

Analysis and discovery of open source repositories. Find interesting projects and follow their updates.

Monitor your website with YourWebsiteScore

OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of third-party repository code is at your own risk. Always review source code, dependencies, licenses, and security implications before running anything.

© 2025 OSRepos. Built with Nuxt 3 and lots of ❤️