#oracles #guide
О рисках безопасности, связанных с использованием ценовых оракулов в смартконтрактах:
https://blog.openzeppelin.com/secure-smart-contract-guidelines-the-dangers-of-price-oracles/
О рисках безопасности, связанных с использованием ценовых оракулов в смартконтрактах:
https://blog.openzeppelin.com/secure-smart-contract-guidelines-the-dangers-of-price-oracles/
Openzeppelin
Smart Contract Security Guidelines #3: The Dangers of Price Oracles - OpenZeppelin blog
This guide focuses on showcasing the architecture, roles and subtleties of most popular price oracles in Ethereum, ways to safely integrate them with defensive programming practices.
#reentrancy #SIREN #hack
Подробный анализ взлома Siren через reentrancy баг:
https://medium.com/siren-markets/siren-incident-report-264e57f16d7
Подробный анализ взлома Siren через reentrancy баг:
https://medium.com/siren-markets/siren-incident-report-264e57f16d7
Medium
SIREN Incident Report
Dear SIREN community, we first want to reassure you that we have stopped the recent exploit.
#hack #DAOMaker
Взлом DAOMaker - в функции инициализации не было проверки, кто ее вызывает - поменяли овнера контракта на себя и потом вывели средства функцией экстренного вывода
https://slowmist.medium.com/intelligence-of-slowmist-zone-dao-makers-vesting-system-was-hacked-5825e4828969
Взлом DAOMaker - в функции инициализации не было проверки, кто ее вызывает - поменяли овнера контракта на себя и потом вывели средства функцией экстренного вывода
https://slowmist.medium.com/intelligence-of-slowmist-zone-dao-makers-vesting-system-was-hacked-5825e4828969
Medium
【Intelligence of SlowMist Zone】 DAO Maker’s vesting system was hacked.
The attacker finally made a profit of nearly $4 million .
#hack #reentrancy #CREAM
Взлом C.R.E.A.M. Finance (31.08.2021) через reentrancy баг
https://medium.com/cream-finance/c-r-e-a-m-finance-post-mortem-amp-exploit-6ceb20a630c5
Взлом C.R.E.A.M. Finance (31.08.2021) через reentrancy баг
https://medium.com/cream-finance/c-r-e-a-m-finance-post-mortem-amp-exploit-6ceb20a630c5
Medium
C.R.E.A.M. Finance Post Mortem: AMP Exploit
Dear C.R.E.A.M. community, partners & friends, we firstly want to reassure you that we’ve stopped the exploit. Thank you to everyone who…
#challenge #writeup
Прохождение задания из NeoQUEST-2017
https://habr.com/ru/company/neobit/blog/324456/
Прохождение задания из NeoQUEST-2017
https://habr.com/ru/company/neobit/blog/324456/
Хабр
Криптовалюта Ethereum: пишем эксплойт под уязвимый умный контракт и получаем токены
Сколько копий уже сломано в разговорах о криптовалюте? Банки и государственные учреждения спорят о ее правовом статусе, а частные организации придумывают различ...
Crypto Offensive pinned «#challenge 23 уязвимых смартконтракта, которые надо взломать: https://ethernaut.openzeppelin.com/»
#logic #TIDAL #vuln
Tidal Finance исправили критический баг в логике контракта (31.07.2021), который позволял атакующему вывести средства из пула
https://medium.com/immunefi/tidal-finance-logic-error-bug-fix-postmortem-3607d8b7ed1f
Tidal Finance исправили критический баг в логике контракта (31.07.2021), который позволял атакующему вывести средства из пула
https://medium.com/immunefi/tidal-finance-logic-error-bug-fix-postmortem-3607d8b7ed1f
Medium
Tidal Finance Logic Error Bugfix Review
Summary
#guide #FEI
Это руководство поможет настроить локальную среду и воспроизвести эксплуатацию #flashloan уязвимости в Fei Protocol на Ethereum
https://medium.com/immunefi/a-guide-to-reproducing-ethereum-exploits-fei-protocol-224b30b517d6
Это руководство поможет настроить локальную среду и воспроизвести эксплуатацию #flashloan уязвимости в Fei Protocol на Ethereum
https://medium.com/immunefi/a-guide-to-reproducing-ethereum-exploits-fei-protocol-224b30b517d6
Medium
A Guide to Reproducing Ethereum Exploits: Fei Protocol
This guide, written by whitehat Lucash-dev for Immunefi, will help you set up a local environment and reproduce the Fei Protocol exploit…