The ultimate vulnerabilities aggregator, used by top Web3 security auditors
Explore reports, findings, and bugs from previous audits
Powered by @CyfrinAudits
Nov 30, 2023 ⢠8 tweets ⢠4 min read
Ethereumās only hard fork happened because of a reentrancy attack.
When the first DAO was launched in 2016, it held 14% of the entire Ethereum value.
Today, 4 out of 20+ hacks in 2023 have been reentrancy attacks.
What are they and how to prevent them? š 1/ What is a reentrancy attack?
When a hacker "reenters" a function to do something malicious.
A hacker typically exploits a callback function (like a āfallbackā function or āonERC721Receivedā) to maliciously "reenter" the victimās contract and execute a malicious transaction.
Nov 24, 2023 ⢠12 tweets ⢠3 min read
In 2022, DeFi protocols lost $403.2 million in 40+ oracle manipulation attacks.
Oracle manipulations are one of the most common attacks in crypto.
But what are they and how do they happen? š 1/ šĀ First, what is an oracle?
An oracle bridges blockchainsĀ to external systems (like APIs or other off/on-chain data).
They enable smart contractsĀ to execute actions based upon inputs and outputs from the real world.
Nov 23, 2023 ⢠11 tweets ⢠4 min read
In 2022, DeFi protocols lost $403.2 million in 40+ oracle manipulation attacks.
Oracle manipulations are one of the most common attacks in crypto.
But what are they and how do they happen? š
šĀ First, what is an oracle?
An oracle bridges blockchainsĀ to external systems (like APIs or other off/on-chain data).
They enable smart contractsĀ to execute actions based upon inputs and outputs from the real world.