Monday, 29 May 2023

Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization


Bypassing Blockchain Authorization via Unsecured Functions


Note: Since the first part of this series I have also uploaded some further videos on remediation of reentrancy and dealing with compiler versions when working with this hacking blockchain series.  Head to the console cowboys YouTube account to check those out.  Haha as mentioned before I always forget to post blogs when I get excited making videos and just move on to my next project… So make sure to subscribe to the YouTube if you are waiting for any continuation of a video series.. It may show up there way before here. 

Note 2:  You WILL run into issues when dealing with Ethereum hacking, and you will have to google them as versions and functionality changes often... Be cognizant of versions used hopefully you will not run into to many hard to fix issues. 

In the second part of this lab series we are going to take a look at privacy issues on the blockchain which can result in a vulnerably a traditional system may  not face. Since typically blockchain projects are open source and also sometimes viewable within blockchain explorers but traditional application business logic is not usually available to us. With traditional applications we might not find these issues due to lack of knowledge of internal functionality or inability to read private values on a remote server side script.  After we review some issues we are going to exploit an authorization issues by writing web3.js code to directly bypass vertical authorization restrictions.

Blockchain projects are usually open source projects which allow you to browse their code and see what's going on under the hood.  This is fantastic for a lot of reasons but a developer can run into trouble with this if bad business logic decisions are deployed to the immutable blockchain.  In the first part of this series I mentioned that all uploaded code on the blockchain is immutable. Meaning that if you find a vulnerability it cannot be patched. So let's think about things that can go wrong..

A few things that can go wrong:
  • Randomization functions that use values we can predict if we know the algorithm
  • Hard-coded values such as passwords and private variables you can't change.
  • Publicly called functions which offer hidden functionality
  • Race conditions based on how requirements are calculated

Since this will be rather technical, require some setup and a lot of moving parts we will follow this blog via the video series below posting videos for relevant sections with a brief description of each.  I posted these a little bit ago but have not gotten a chance to post the blog associated with it.  Also note this series is turning into a full lab based blockchain exploitation course so keep a lookout for that.

In this first video you will see how data about your project is readily available on the blockchain in multiple formats for example:
  • ABI data that allows you to interact with methods.
  • Actual application code.
  • Byte code and assembly code.
  • Contract addresses and other data.

 Lab Video Part 1: Blockchain OSINT: 



Once you have the data you need to interact with a contract on the blockchain via some OSINT how do you actually interface with it? That's the question we are going to answer in this second video. We will take the ABI contract array and use it to interact with methods on the blockchain via Web3.js and then show how this correlates to its usage in an HTML file

Lab Video Part 2: Connecting to a Smart Contract: 




Time to Exploit an Application:

Exploit lab time, I created an vulnerable application you can use to follow along in the next video. Lab files can be downloaded from the same location as the last blog located below. Grab the AuthorizationLab.zip file:

Lab file downloads:



Ok so you can see what's running on the blockchain, you can connect to it, now what?   Now we need to find a vulnerability and show how to exploit it. Since we are talking about privacy in this blog and using it to bypass issues. Lets take a look at a simple authorization bypass we can exploit by viewing an authorization coding error and taking advantage of it to bypass restrictions set in the Smart Contract.  You will also learn how to setup a local blockchain for testing purposes and you can download a hackable application to follow along with the exercises in the video..

Lab Video Part 3:  Finding and hacking a Smart Contract Authorization Issue: 





Summary:

In this part of the series you learned a lot, you learned how to transfer your OSINT skills to the blockchain. Leverage the information found to connect to that Smart Contract. You also learned how to interact with methods and search for issues that you can exploit. Finally you used your browsers developer console as a means to attack the blockchain application for privilege escalation.

Read more


  1. Pentest Tools Website Vulnerability
  2. Pentest Tools
  3. Hack Tools For Mac
  4. How To Hack
  5. Hacking Tools For Pc
  6. Pentest Tools Kali Linux
  7. Hack Tools Mac
  8. Pentest Tools Framework
  9. What Is Hacking Tools
  10. Hacking Tools
  11. Hack Tool Apk No Root
  12. Hack Tools
  13. Hack Tools Mac
  14. Pentest Automation Tools
  15. Hacking Tools Pc
  16. Pentest Tools Kali Linux
  17. Pentest Tools Website Vulnerability
  18. Hacker Tools Mac
  19. Hack Tools For Games
  20. Hack Website Online Tool
  21. Hack App
  22. Hacker Tools 2019
  23. Hacking Tools For Beginners
  24. How To Hack
  25. Pentest Tools Linux
  26. Pentest Tools Alternative
  27. Hacker Tools Hardware
  28. Hacking Apps
  29. Hacker Hardware Tools
  30. Android Hack Tools Github
  31. Pentest Tools Port Scanner
  32. Game Hacking
  33. Best Hacking Tools 2019
  34. Hacker Tools Windows
  35. What Are Hacking Tools
  36. Hack Tools For Pc
  37. Pentest Tools Github
  38. Hacking Tools Kit
  39. Pentest Tools Online
  40. Hacker Tools Linux
  41. Hacking Tools Windows 10
  42. Hacker Tools Github
  43. Hackers Toolbox
  44. Hacking Tools Github
  45. Pentest Tools Url Fuzzer
  46. Hacker Tools Github
  47. Hack App
  48. Pentest Recon Tools
  49. New Hack Tools
  50. Beginner Hacker Tools
  51. Pentest Tools Url Fuzzer
  52. Hacking App
  53. Hacking Tools For Kali Linux
  54. Hacker Tools Apk
  55. New Hack Tools
  56. Hacking Tools 2020
  57. Hacking Tools For Windows 7
  58. Hacking Tools For Windows
  59. Hack Tools Pc
  60. Pentest Tools Github
  61. Pentest Tools Linux
  62. Hacker Tool Kit
  63. Pentest Box Tools Download
  64. Hacking Tools Online
  65. New Hacker Tools
  66. Pentest Tools Find Subdomains
  67. Hack Tool Apk No Root
  68. Hack Tools For Games
  69. Pentest Tools Windows
  70. Hacking Tools Windows
  71. Pentest Tools Android
  72. Pentest Tools Windows
  73. Hacker Security Tools
  74. Pentest Tools Nmap
  75. Pentest Tools Port Scanner
  76. Hacking Tools For Games
  77. Hacker Security Tools
  78. Computer Hacker
  79. Hacking Tools Kit
  80. Hacking Tools 2019
  81. Hacker Tools List
  82. Blackhat Hacker Tools
  83. Hacking Tools Kit
  84. Hacking Tools Windows
  85. Hack Tools For Windows
  86. Tools Used For Hacking
  87. Pentest Tools Nmap
  88. Termux Hacking Tools 2019
  89. Hacking Tools For Games
  90. Github Hacking Tools
  91. Hacking App
  92. Hacker Search Tools
  93. Hacker Tools List
  94. Hacking App
  95. Hacker Tools Linux
  96. Physical Pentest Tools
  97. Hacking Tools 2020
  98. Hacking Tools Software
  99. Pentest Box Tools Download
  100. Hacker Tools For Mac
  101. Hacking Tools Hardware
  102. Github Hacking Tools
  103. Pentest Tools Bluekeep
  104. Pentest Tools Subdomain
  105. Hackers Toolbox
  106. Install Pentest Tools Ubuntu
  107. Hack Tools
  108. Pentest Tools Kali Linux
  109. Wifi Hacker Tools For Windows
  110. Hack Tool Apk
  111. Hacker Tools Online
  112. Pentest Reporting Tools
  113. Pentest Tools Linux
  114. Black Hat Hacker Tools
  115. Hacker Tools 2019
  116. Hacking Tools And Software
  117. Tools Used For Hacking
  118. New Hack Tools
  119. Ethical Hacker Tools
  120. Hack Tools 2019
  121. Hack Rom Tools
  122. Hacking Tools Name
  123. Hack Tools 2019
  124. Pentest Tools Github
  125. Install Pentest Tools Ubuntu
  126. Game Hacking
  127. Hack Tools Online
  128. Hacker Tools Linux
  129. Hacking Tools Download
  130. Hacking Tools For Games
  131. Pentest Tools Free
  132. Hack Tools For Pc
  133. Hacker Tools Apk
  134. Pentest Tools Open Source
  135. Hacker Tools 2020
  136. Pentest Tools Open Source
  137. Top Pentest Tools
  138. Easy Hack Tools
  139. Hacker Tool Kit
  140. Nsa Hack Tools
  141. Hacker Tools For Windows
  142. Best Pentesting Tools 2018
  143. Hacker Tools For Pc
  144. Hacker Tools Linux
  145. Pentest Tools Online

No comments:

Post a Comment