Get the free 30-day AI Mastery series 💌: https://insights.gradientlabs.co/
Work with me 💪: https://offerings.gradientlabs.co/ Next up! Level 5 - Token
In this CTF series, we’re going to learn more about the practical side of smart contract auditing and security.
If you’re interested in more/similar content, checkout my channel or website below.
My digital dumping ground - dylandavis.net
Additional Resources
Ethernaut CTF - https://ethernaut.openzeppelin.com/
How integers are stored in memory - • How Integer is Stored in Computer Memory ~...
What is an integer overflow attack (best blog) - https://www.comparitech.com/blog/info...
Binary addition and overflows (computerphile) - • Binary Addition & Overflow - Computerphile
Arithmetic Overflow and Underflow (Solidity example code) - https://solidity-by-example.org/hacks...
Smart Contract Programmer (video walkthrough of above example) - • Arithmetic Overflow and Underflow | Hack S...
Web3 Blockchain Developer (token answer) - • Smart Contract Security - Ethernaut Challe...
Web2 Buffer Overflow (LiveOverFlow) - • Writing a Simple Buffer Overflow Exploit
OpenZeppelin Safemath (docs) - https://docs.openzeppelin.com/contrac...
OpenZeppelin Safemath (code) - https://github.com/OpenZeppelin/openz...
Timeline
00:00 - Intro to challenge
01:00 - Odometers related to integers
03:16 - Integer basics, storage, and flaws
08:27 - Integer overflow and underflow attacks
09:40 - Challenge (code review)
13:22 - Challenge (the attack)
17:30 - The fix (Safemath)
20:39 - Outro