Saturday, January 27, 2024

Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization


Bypassing Blockchain Authorization via Unsecured Functions


Note: Since the first part of this series I have also uploaded some further videos on remediation of reentrancy and dealing with compiler versions when working with this hacking blockchain series.  Head to the console cowboys YouTube account to check those out.  Haha as mentioned before I always forget to post blogs when I get excited making videos and just move on to my next project… So make sure to subscribe to the YouTube if you are waiting for any continuation of a video series.. It may show up there way before here. 

Note 2:  You WILL run into issues when dealing with Ethereum hacking, and you will have to google them as versions and functionality changes often... Be cognizant of versions used hopefully you will not run into to many hard to fix issues. 

In the second part of this lab series we are going to take a look at privacy issues on the blockchain which can result in a vulnerably a traditional system may  not face. Since typically blockchain projects are open source and also sometimes viewable within blockchain explorers but traditional application business logic is not usually available to us. With traditional applications we might not find these issues due to lack of knowledge of internal functionality or inability to read private values on a remote server side script.  After we review some issues we are going to exploit an authorization issues by writing web3.js code to directly bypass vertical authorization restrictions.

Blockchain projects are usually open source projects which allow you to browse their code and see what's going on under the hood.  This is fantastic for a lot of reasons but a developer can run into trouble with this if bad business logic decisions are deployed to the immutable blockchain.  In the first part of this series I mentioned that all uploaded code on the blockchain is immutable. Meaning that if you find a vulnerability it cannot be patched. So let's think about things that can go wrong..

A few things that can go wrong:
  • Randomization functions that use values we can predict if we know the algorithm
  • Hard-coded values such as passwords and private variables you can't change.
  • Publicly called functions which offer hidden functionality
  • Race conditions based on how requirements are calculated

Since this will be rather technical, require some setup and a lot of moving parts we will follow this blog via the video series below posting videos for relevant sections with a brief description of each.  I posted these a little bit ago but have not gotten a chance to post the blog associated with it.  Also note this series is turning into a full lab based blockchain exploitation course so keep a lookout for that.

In this first video you will see how data about your project is readily available on the blockchain in multiple formats for example:
  • ABI data that allows you to interact with methods.
  • Actual application code.
  • Byte code and assembly code.
  • Contract addresses and other data.

 Lab Video Part 1: Blockchain OSINT: 



Once you have the data you need to interact with a contract on the blockchain via some OSINT how do you actually interface with it? That's the question we are going to answer in this second video. We will take the ABI contract array and use it to interact with methods on the blockchain via Web3.js and then show how this correlates to its usage in an HTML file

Lab Video Part 2: Connecting to a Smart Contract: 




Time to Exploit an Application:

Exploit lab time, I created an vulnerable application you can use to follow along in the next video. Lab files can be downloaded from the same location as the last blog located below. Grab the AuthorizationLab.zip file:

Lab file downloads:



Ok so you can see what's running on the blockchain, you can connect to it, now what?   Now we need to find a vulnerability and show how to exploit it. Since we are talking about privacy in this blog and using it to bypass issues. Lets take a look at a simple authorization bypass we can exploit by viewing an authorization coding error and taking advantage of it to bypass restrictions set in the Smart Contract.  You will also learn how to setup a local blockchain for testing purposes and you can download a hackable application to follow along with the exercises in the video..

Lab Video Part 3:  Finding and hacking a Smart Contract Authorization Issue: 





Summary:

In this part of the series you learned a lot, you learned how to transfer your OSINT skills to the blockchain. Leverage the information found to connect to that Smart Contract. You also learned how to interact with methods and search for issues that you can exploit. Finally you used your browsers developer console as a means to attack the blockchain application for privilege escalation.
Read more
  1. How To Install Pentest Tools In Ubuntu
  2. Hacker Tools Apk Download
  3. Hacker Tools List
  4. Hacking Tools Free Download
  5. Game Hacking
  6. Hacker Tools Windows
  7. Hack Tool Apk
  8. Hacking App
  9. Pentest Automation Tools
  10. Hacking Tools For Pc
  11. Hack Tools Github
  12. Hack And Tools
  13. Hacker Tools Mac
  14. Hacker Tools For Ios
  15. Android Hack Tools Github
  16. Hacker Tools For Pc
  17. Pentest Tools Framework
  18. Pentest Box Tools Download
  19. Hacker Tools Free Download
  20. Growth Hacker Tools
  21. Physical Pentest Tools
  22. Pentest Tools Tcp Port Scanner
  23. Hacking Tools Mac
  24. Hacking Tools For Pc
  25. Hacking Tools For Mac
  26. Best Hacking Tools 2020
  27. Hacking Tools Download
  28. Hacking App
  29. Pentest Tools Framework
  30. Pentest Tools Free
  31. Pentest Tools Find Subdomains
  32. Hacking Tools Free Download
  33. Hack Tools
  34. Usb Pentest Tools
  35. Pentest Tools Alternative
  36. Hacker Tools Online
  37. Hacker
  38. Pentest Reporting Tools
  39. Hacking Tools Windows
  40. Hacking Apps
  41. Hacker Tools For Windows
  42. Pentest Tools Download
  43. Bluetooth Hacking Tools Kali
  44. How To Make Hacking Tools
  45. Hacking Tools For Beginners
  46. Pentest Box Tools Download
  47. Pentest Tools For Ubuntu
  48. Hacker Tools Free Download
  49. Top Pentest Tools
  50. Hacker Tools Apk Download
  51. Hacker Tools Github
  52. What Is Hacking Tools
  53. Hacking Tools For Pc
  54. Bluetooth Hacking Tools Kali
  55. Hackrf Tools
  56. Hack Tools 2019
  57. Hacker Tools List
  58. Ethical Hacker Tools
  59. Hacking Tools Software
  60. Pentest Tools Website
  61. Hacker Tools Apk
  62. Hack Tools For Pc
  63. Hacking Tools Software
  64. Hack Tools 2019
  65. Physical Pentest Tools
  66. Bluetooth Hacking Tools Kali
  67. New Hack Tools
  68. How To Hack
  69. Hacker Tools For Windows
  70. Tools For Hacker
  71. Hacker Tools Mac
  72. Hack Rom Tools
  73. Hacking Tools And Software
  74. Hack Tools
  75. Pentest Tools Android
  76. Pentest Tools For Android
  77. Hacker Tools 2019
  78. Hack Tools Download
  79. Hacker Tools
  80. Hacking App
  81. Hacker Tools Free Download
  82. Nsa Hacker Tools
  83. Pentest Recon Tools
  84. Hacking Tools Free Download
  85. Pentest Tools Url Fuzzer
  86. Hack Tools For Mac
  87. Growth Hacker Tools
  88. Hack Tools For Ubuntu
  89. Hacker Tools For Pc
  90. Hacking Tools For Pc
  91. Usb Pentest Tools
  92. How To Install Pentest Tools In Ubuntu
  93. Hack Tool Apk
  94. Pentest Tools Alternative
  95. Underground Hacker Sites
  96. Top Pentest Tools
  97. Pentest Tools Github
  98. Hacking Tools For Games
  99. Pentest Recon Tools
  100. Hack Tools
  101. Termux Hacking Tools 2019
  102. Pentest Tools Online
  103. Pentest Tools Nmap
  104. Hacker Tools Mac
  105. Hack Rom Tools
  106. Pentest Tools
  107. Nsa Hack Tools Download
  108. Hacking Tools Online
  109. Hacking Tools For Beginners
  110. Pentest Tools Website Vulnerability
  111. Hack And Tools
  112. Pentest Tools
  113. Hacking Tools For Windows Free Download
  114. Pentest Box Tools Download
  115. Hacking Tools Software
  116. Pentest Tools Nmap
  117. Pentest Tools Github
  118. Hacker Tools Free
  119. Hacking Tools Github
  120. Hacker Tools For Ios
  121. Hack And Tools
  122. Pentest Tools Find Subdomains
  123. Hacks And Tools
  124. Pentest Tools Free
  125. Hacking Tools For Windows
  126. Hacker Tools Free Download
  127. Pentest Box Tools Download
  128. Pentest Tools Kali Linux
  129. Pentest Tools Framework
  130. Pentest Tools For Windows
  131. Hacking Tools For Games
  132. Pentest Tools Windows
  133. Blackhat Hacker Tools
  134. Pentest Reporting Tools
  135. Pentest Recon Tools
  136. Hacker Tools For Pc
  137. Hacker Tools Apk
  138. Usb Pentest Tools
  139. Tools Used For Hacking
  140. Game Hacking
  141. What Is Hacking Tools
  142. Blackhat Hacker Tools
  143. Pentest Recon Tools
  144. Hacker Tools Windows
  145. New Hacker Tools
  146. Hacking Tools For Windows 7
  147. Hacking Tools
  148. Hack Apps

No comments: