How To Find SO Many Criticals You Get Bored Of Auditing

Поделиться
HTML-код
  • Опубликовано: 27 дек 2024

Комментарии • 40

  • @cryptAndCo
    @cryptAndCo 10 месяцев назад +1

    Really cool video Owen, thank you !

    • @cryptAndCo
      @cryptAndCo 10 месяцев назад

      Do you try to determine goals for each contracts or in general for the protocol ?

  • @demxnplaya4994
    @demxnplaya4994 11 месяцев назад

    Gem of a video because right now im in the phase where its hard to understand what codebases do and how they work. Thank you!

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад

      Amazing hope this can help you get over that hump!! It's all downhill from there 🙏

    • @backupagrahari
      @backupagrahari 7 месяцев назад

      Update ?

    • @backupagrahari
      @backupagrahari 7 месяцев назад

      I am in the same place you were 3 months ago any update?

  • @waqasmuhammad9232
    @waqasmuhammad9232 10 месяцев назад +2

    Hello Sir, I am trying to follow the GTDA methodology, I really like the way of following the codepath instead of just going through all the functions without context. Here the only problem I have is in drawing the diagrams, off course it is giving me more context, but taking so much time. Is it really worth it to draw? I mean in the context of Audit Contests, I mean almost 2k sloc 1 week. you know what I mean sir. I have also shared the diagram that I drew using whimsical, please have a look at that.

  • @suryaprakash5728
    @suryaprakash5728 11 месяцев назад +1

    Please give your tips on how to audit large code base protocol like 3000 nSloc

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад +1

      Added to the backlog!

  • @muhammadarifzafary5919
    @muhammadarifzafary5919 2 месяца назад

    Thanks from your work sir. It will be great if upload some new videos on some new exploits

  • @suryap7330
    @suryap7330 10 месяцев назад +2

    Which web app you used for diagrams , can you please tell?

    • @0xOwenThurm
      @0xOwenThurm  10 месяцев назад +1

      Whimsical!

    • @FWeb3
      @FWeb3 10 месяцев назад

      Just a hint: it’s on ChatGPT4 as one of the GPT’s 😉

  • @bitedeep4876
    @bitedeep4876 11 месяцев назад

    As always, thank you Owen for the great work you do.
    I find that the most challenge thing about applying this strategy (particularly the goals mapping) in audit contests is the time constraint. Do you have any strategy for dealing with that?

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад +3

      In contests if you're constrained on time, focus in on the most complex area of the codebase -- it's where the highest bug density is likely to be, and where most will shy away.

  • @steev910
    @steev910 2 месяца назад

    The url of the free course doesnt work for me ???

  • @basitkhan3853
    @basitkhan3853 11 месяцев назад +1

    H oven i understand code very well but attack ideas does not come in my mind what do you recommend to build attacker mind

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад +2

      First you have to build your toolbox of attack vectors (great way to do this is with the full course on my channel), then go through functions and force yourself to simply spend 5 minutes coming up with ideas of how things can go wrong with the attack vectors you know.
      This will be hard at first but you will get better at it over time. Before long you will start to actually uncover findings this way, which will create a feedback loop, and that's how you train yourself to become an attacker.

    • @basitkhan3853
      @basitkhan3853 11 месяцев назад

      @@0xOwenThurm 🙏

  • @eSqu4red
    @eSqu4red 10 месяцев назад

    6:36 what happened with certik?

    • @GRIMxJOKE
      @GRIMxJOKE 10 месяцев назад +1

      They are popular among the industry to give poor quality audits, but they are doing so many audits that their image is good among their potentials clients.

    • @eSqu4red
      @eSqu4red 10 месяцев назад

      @@GRIMxJOKE haha! 😂

  • @SphereofTime
    @SphereofTime 8 месяцев назад +1

    15:00

  • @eSqu4red
    @eSqu4red 10 месяцев назад

    please provide us these notes 🙏

  • @yesireact
    @yesireact 11 месяцев назад

    the audio is crisp and try to zoom in the video as it is not clear to see

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад

      Will do, have been focusing on zooming in more now haha

    • @yesireact
      @yesireact 11 месяцев назад

      @@0xOwenThurm im not trying to compare but recently i have been watched patrick collins videos he take care of these minute things.. and he speaks very clearly .
      you are prodcuing great content though

  • @suryap7330
    @suryap7330 11 месяцев назад +1

    Owen , Are you auditing ARCADIA protocol ?

  • @NeuroWeb3Security
    @NeuroWeb3Security 10 месяцев назад

    Great video Owen was really helpful

  • @merv893
    @merv893 11 месяцев назад

    You are great, thanks man.

  • @angrybugs7966
    @angrybugs7966 11 месяцев назад

    Thanks for sharing these videos, really helpful.

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад +1

      Glad they could be useful! More on the way for you 🫡

  • @danielmajak
    @danielmajak 11 месяцев назад +1

    I'm one hour late but lets fkn go!

    • @0xOwenThurm
      @0xOwenThurm  11 месяцев назад

      Lfg glad you watched ser 🫡

  • @code7631
    @code7631 11 месяцев назад

    💜

  • @suryaprakash5728
    @suryaprakash5728 11 месяцев назад

    Please give your tips on how to audit large code base protocol like 3000 nSloc