Classic Cars : Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization

Thursday, January 25, 2024

Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization


Bypassing Blockchain Authorization via Unsecured Functions


Note: Since the first part of this series I have also uploaded some further videos on remediation of reentrancy and dealing with compiler versions when working with this hacking blockchain series.  Head to the console cowboys YouTube account to check those out.  Haha as mentioned before I always forget to post blogs when I get excited making videos and just move on to my next project… So make sure to subscribe to the YouTube if you are waiting for any continuation of a video series.. It may show up there way before here. 

Note 2:  You WILL run into issues when dealing with Ethereum hacking, and you will have to google them as versions and functionality changes often... Be cognizant of versions used hopefully you will not run into to many hard to fix issues. 

In the second part of this lab series we are going to take a look at privacy issues on the blockchain which can result in a vulnerably a traditional system may  not face. Since typically blockchain projects are open source and also sometimes viewable within blockchain explorers but traditional application business logic is not usually available to us. With traditional applications we might not find these issues due to lack of knowledge of internal functionality or inability to read private values on a remote server side script.  After we review some issues we are going to exploit an authorization issues by writing web3.js code to directly bypass vertical authorization restrictions.

Blockchain projects are usually open source projects which allow you to browse their code and see what's going on under the hood.  This is fantastic for a lot of reasons but a developer can run into trouble with this if bad business logic decisions are deployed to the immutable blockchain.  In the first part of this series I mentioned that all uploaded code on the blockchain is immutable. Meaning that if you find a vulnerability it cannot be patched. So let's think about things that can go wrong..

A few things that can go wrong:
  • Randomization functions that use values we can predict if we know the algorithm
  • Hard-coded values such as passwords and private variables you can't change.
  • Publicly called functions which offer hidden functionality
  • Race conditions based on how requirements are calculated

Since this will be rather technical, require some setup and a lot of moving parts we will follow this blog via the video series below posting videos for relevant sections with a brief description of each.  I posted these a little bit ago but have not gotten a chance to post the blog associated with it.  Also note this series is turning into a full lab based blockchain exploitation course so keep a lookout for that.

In this first video you will see how data about your project is readily available on the blockchain in multiple formats for example:
  • ABI data that allows you to interact with methods.
  • Actual application code.
  • Byte code and assembly code.
  • Contract addresses and other data.

 Lab Video Part 1: Blockchain OSINT: 



Once you have the data you need to interact with a contract on the blockchain via some OSINT how do you actually interface with it? That's the question we are going to answer in this second video. We will take the ABI contract array and use it to interact with methods on the blockchain via Web3.js and then show how this correlates to its usage in an HTML file

Lab Video Part 2: Connecting to a Smart Contract: 




Time to Exploit an Application:

Exploit lab time, I created an vulnerable application you can use to follow along in the next video. Lab files can be downloaded from the same location as the last blog located below. Grab the AuthorizationLab.zip file:

Lab file downloads:



Ok so you can see what's running on the blockchain, you can connect to it, now what?   Now we need to find a vulnerability and show how to exploit it. Since we are talking about privacy in this blog and using it to bypass issues. Lets take a look at a simple authorization bypass we can exploit by viewing an authorization coding error and taking advantage of it to bypass restrictions set in the Smart Contract.  You will also learn how to setup a local blockchain for testing purposes and you can download a hackable application to follow along with the exercises in the video..

Lab Video Part 3:  Finding and hacking a Smart Contract Authorization Issue: 





Summary:

In this part of the series you learned a lot, you learned how to transfer your OSINT skills to the blockchain. Leverage the information found to connect to that Smart Contract. You also learned how to interact with methods and search for issues that you can exploit. Finally you used your browsers developer console as a means to attack the blockchain application for privilege escalation.
Related news
  1. Pentest Tools Subdomain
  2. Pentest Tools Free
  3. Hacker Tools For Windows
  4. Pentest Tools Website
  5. Hacker Tools
  6. Hacking Tools For Mac
  7. Tools For Hacker
  8. Hacking Tools For Kali Linux
  9. How To Hack
  10. Hacking Tools
  11. Usb Pentest Tools
  12. Android Hack Tools Github
  13. Hacking Tools
  14. Pentest Tools Tcp Port Scanner
  15. Hack Tool Apk
  16. Hackers Toolbox
  17. Hacking Tools Name
  18. Pentest Tools For Windows
  19. Hack Tool Apk No Root
  20. Hackrf Tools
  21. Hack Tools Download
  22. Hacking Tools Kit
  23. Hacking Tools Online
  24. Hack Tools For Windows
  25. Hacker Tool Kit
  26. Pentest Box Tools Download
  27. Hacker Tools For Mac
  28. Hacking Tools For Windows Free Download
  29. Hacking Tools Usb
  30. Best Pentesting Tools 2018
  31. Hack Tool Apk
  32. Hacker Tools 2019
  33. Hacker Tools 2020
  34. What Are Hacking Tools
  35. Install Pentest Tools Ubuntu
  36. Nsa Hack Tools
  37. Pentest Tools List
  38. Hacking Tools Github
  39. Pentest Tools Url Fuzzer
  40. Computer Hacker
  41. Hacker Tools 2019
  42. Hacking Tools Download
  43. Hacking Tools Pc
  44. Hacking Tools 2019
  45. Hacking Tools Free Download
  46. Pentest Tools Nmap
  47. Hack Tools For Windows
  48. Hack Apps
  49. Underground Hacker Sites
  50. Hacking Tools For Mac
  51. Hacker Tools Hardware
  52. Hacking Tools And Software
  53. Hack Tools Mac
  54. Pentest Tools Website Vulnerability
  55. Hack Tool Apk
  56. Hacker Tools Online
  57. Hacker Tools Github
  58. Hacker Tools For Ios
  59. Computer Hacker
  60. Hacker Tools Online
  61. Pentest Tools Website Vulnerability
  62. Pentest Tools List
  63. Pentest Tools Alternative
  64. Pentest Tools For Android
  65. Hacking Tools For Windows 7
  66. Pentest Tools Apk
  67. Best Pentesting Tools 2018
  68. Pentest Tools
  69. Hacker Security Tools
  70. What Is Hacking Tools
  71. Hacks And Tools
  72. Physical Pentest Tools
  73. Hacker Tools Hardware
  74. Hacking Tools Github
  75. Nsa Hack Tools
  76. Pentest Box Tools Download
  77. Hacker Hardware Tools
  78. Hack Tools For Games
  79. Hack Tools For Ubuntu
  80. Tools 4 Hack
  81. Best Hacking Tools 2020
  82. Hacker Tools Free
  83. Game Hacking
  84. Pentest Tools Free
  85. Pentest Tools Android
  86. Install Pentest Tools Ubuntu
  87. Hacking Tools Download
  88. Hacker Tools Online
  89. Hacking Tools Name
  90. Pentest Tools Find Subdomains
  91. Hacker
  92. Hacking Tools Download
  93. Install Pentest Tools Ubuntu
  94. Growth Hacker Tools
  95. Physical Pentest Tools
  96. Pentest Tools For Mac
  97. Wifi Hacker Tools For Windows
  98. Android Hack Tools Github
  99. New Hacker Tools
  100. Nsa Hack Tools Download
  101. Nsa Hacker Tools
  102. Pentest Tools Linux
  103. Hack And Tools
  104. Pentest Tools Review
  105. Pentest Tools Port Scanner
  106. Hacker Tools Apk
  107. Hacker Tools For Mac
  108. Hack Tools
  109. Hacking Tools For Pc
  110. Pentest Tools Tcp Port Scanner
  111. Pentest Recon Tools
  112. Pentest Tools Github
  113. Wifi Hacker Tools For Windows
  114. Free Pentest Tools For Windows
  115. New Hack Tools
  116. Hacker Tools Github
  117. Hacker Tools For Mac
  118. Hacker Tools For Mac
  119. Hacker Tools Windows
  120. Hacker Security Tools
  121. Pentest Tools Nmap
  122. Hack App
  123. Hacker Tools List
  124. Pentest Tools Find Subdomains
  125. Hacker Tools Free Download
  126. Hacking Tools For Mac
  127. Nsa Hacker Tools
  128. Hack Tool Apk
  129. Pentest Reporting Tools
  130. Hack Website Online Tool
  131. Hacker Hardware Tools
  132. Pentest Tools For Mac
  133. Hacking App
  134. Pentest Tools Free
  135. Hacker Tools Linux
  136. Tools For Hacker
  137. Hacking Apps
  138. Nsa Hack Tools Download
  139. Pentest Tools Nmap
  140. Pentest Tools Url Fuzzer
  141. Hacker Tools Online
  142. Game Hacking
  143. Hack Website Online Tool
  144. Hacking Tools
  145. Hack Tools Mac
  146. Pentest Tools Review
  147. Hack Tools Github
  148. Pentest Tools Nmap
  149. Hack Tools 2019

No comments:

Post a Comment