Hacking Ethereum Smart Contracts - Damn Vulnerable Defi (Unstoppable)

Поделиться
HTML-код
  • Опубликовано: 16 июл 2024
  • Beginner friendly video on hacking Ethereum smart contracts using the Damn Vulnerable Defi War Game/CTF.
    Walkthrough of the first challenge - Unstoppable, where we will be performing a denial of service attack against a flash loan smart contract.
    www.damnvulnerabledefi.xyz/
    Brownie port:
    github.com/AndyFeiLi/damn-vul...
    Contents:
    00:00 - [Intro]
    5:18 - [Environment Setup]
    21:15 - [Unstoppable - Exploit]
    26:51 - [Auto Deploy and Test Script]

Комментарии • 53

  • @tadii
    @tadii 2 года назад +10

    Glad I bumped into this. It's kinda hard finding resources regarding this space, thanks!

    • @andyli
      @andyli  2 года назад +2

      I had a hard time finding resources that explained things in a simple way

  • @omgMamba
    @omgMamba 2 года назад +8

    Awesome vid, been wanting to dive into smart contracts. Can't wait to see what's next!

    • @andyli
      @andyli  2 года назад

      Great to hear!

  • @soulsboyrne
    @soulsboyrne Год назад +3

    Just finished my fintech bootcamp and was missing a few gaps in knowledge with every tool you used here, excellent video explaining your thought processes really appreciated that. Will definitely check out the rest of your videos now :)

    • @andyli
      @andyli  Год назад

      Cool, welcome to the channel :)

  • @yufang173
    @yufang173 2 года назад +4

    Thanks for sharing, keep making good video

  • @evc5905
    @evc5905 2 года назад +4

    Awesome, 🔥🔥🔥,thank you.👍

    • @andyli
      @andyli  2 года назад

      No problem 👍

  • @rodnet2703
    @rodnet2703 2 года назад +9

    Really interesting! Thanks for sharing this with us.

    • @andyli
      @andyli  2 года назад

      Glad you enjoyed it!

  • @faran4536
    @faran4536 2 года назад +10

    I guess there will be a new wave of attack vectors only for blockchain and DeFi apps in the coming future

    • @andyli
      @andyli  2 года назад +3

      Yeah there already is, will only become more prevalent in the future

    • @dereklee2590
      @dereklee2590 2 года назад

      @@andyli Hey can u help me hack website username and password

  • @ballahwise8597
    @ballahwise8597 10 дней назад

    You got a subscribe

  • @andyli
    @andyli  2 года назад +3

    Just when I posted this video, Wormhole token bridge gets hacked for $321M 😧
    cointelegraph.com/news/wormhole-token-bridge-loses-321m-in-largest-hack-so-far-in-2022

    • @lookatme9737
      @lookatme9737 2 года назад +2

      Maybe someone who see your video..... 😜

    • @andyli
      @andyli  2 года назад +2

      Lol

  • @jaradkopf801
    @jaradkopf801 2 года назад +1

    Will you be making walkthrough videos of the other challenges on DamnVulnDeFi?

    • @andyli
      @andyli  2 года назад

      Perhaps, I am mostly doing web3 bug bounties at the moment

    • @jaradkopf801
      @jaradkopf801 2 года назад

      @@andyli can I send you a dm on linked in to ask a few questions about setup on challenge two?

    • @andyli
      @andyli  2 года назад

      Sure, LinkedIn or discord

    • @jaradkopf801
      @jaradkopf801 2 года назад

      @@andyli I’ve sent you a request on LinkedIn! Once you accept I’ll dm you. Thank you so much!

    • @jaradkopf801
      @jaradkopf801 2 года назад

      @@andyli where can I find you on discord also?

  • @cryptopat2214
    @cryptopat2214 2 года назад +3

    Can I do this using Remix IDE?

    • @andyli
      @andyli  2 года назад +1

      Yes it works in remix

  • @shpockboss3834
    @shpockboss3834 Год назад

    What tools can be used to find bugs in smart contracts?

    • @andyli
      @andyli  Год назад

      It is all manual review

  • @ajithnavaratne6062
    @ajithnavaratne6062 2 года назад +2

    So we need some ether to do it right

    • @andyli
      @andyli  2 года назад +1

      You can use testnet ether which you can get for free

    • @ajithnavaratne6062
      @ajithnavaratne6062 2 года назад +1

      @@andyli Thanks Andy ❤️

  • @jeffreydani8616
    @jeffreydani8616 Год назад

    Do you know how Bitcoin is minted? Just a ask

    • @andyli
      @andyli  Год назад

      From mining

    • @jeffreydani8616
      @jeffreydani8616 Год назад

      @@andyli oh sorry was not clear, I was thinking you can do it like Ethereum contract codes, were you can write code to mint

    • @andyli
      @andyli  Год назад

      @@jeffreydani8616 there is this www.rsk.co/

    • @jeffreydani8616
      @jeffreydani8616 Год назад

      Bro thank you

  • @baroonjha3160
    @baroonjha3160 2 года назад +2

    Why don't you make a video on blockchain hacking from beginning to advanced.

    • @andyli
      @andyli  2 года назад +1

      I am pretty much a beginner right now 😅

    • @baroonjha3160
      @baroonjha3160 2 года назад

      @@andyli Then please make a video on resources from where we can learn

  • @devadevans700
    @devadevans700 2 года назад +1

    Hey can you please make a beginner to whatever your are doing😅 roadmap RUclips video
    Stubled into this video randomly, after hearing what you said seems like there's few bucks to be made, I am dropping everything I am doing now and move to this field if you could make a guide for a noob

    • @andyli
      @andyli  2 года назад

      I am pretty new to Solidity as well, have a look at my other video on Blockchain CTFs.

    • @devadevans700
      @devadevans700 2 года назад +1

      @@andyli ok, I am new to the computer science field😁

    • @andyli
      @andyli  2 года назад

      Nice, there are plenty of good resources around. Feel free to reach out if you have any questions!

    • @devadevans700
      @devadevans700 2 года назад

      @@andyli thank you brother,

    • @devadevans700
      @devadevans700 2 года назад

      @@andyli did the things you learned from oscp translate to the smart contract world or is this different thing

  • @dannygreen531
    @dannygreen531 Год назад

    So really defi is F before it has even got going.

    • @andyli
      @andyli  Год назад

      It is interesting looking at it from a security perspective

  • @dannygreen531
    @dannygreen531 Год назад

    Mango defi hack 100 million hack yesterday.

    • @andyli
      @andyli  Год назад

      Yea I saw that, too many hacks