Главная
Study mode:
on
1
Intro
2
Blockchain is everywhere
3
What is blockchain
4
What are smart contracts
5
Why use smart contracts
6
Executing smart contracts
7
Security of smart contracts
8
Pareto wallet
9
Blind commitments
10
Libraries
11
Gas Limit
12
US Attack
13
Lessons Learned
14
Attacking Web Applications
15
Too Short Address
16
Attack
17
Vulnerability
18
Demo
19
Summary
20
Questions
21
Crypto Exchanges
Description:
Explore the intricacies of smart contract security in this 43-minute conference talk from OWASP AppSec EU 2018. Delve into the world of blockchain technology, focusing on the second generation that enables programmable transactions through smart contracts. Examine the Ethereum platform, its cryptocurrency Ether, and the Solidity programming language used for smart contract development. Uncover potential vulnerabilities and common design flaws that have led to multi-million dollar thefts in the past. Learn about spectacular hacks like the $30M Parity incident and gain insights into preventing such costly mistakes. Discover the challenges of responsible vulnerability disclosure in the blockchain ecosystem and a proposed mechanism for securely notifying contract owners. Gain a comprehensive understanding of attack vectors specific to decentralized, publicly visible smart contracts and acquire knowledge on identifying and mitigating these vulnerabilities.

Outsmarting Smart Contracts - Security Vulnerabilities and Attack Vectors

OWASP Foundation
Add to list