Thursday, 25 May 2023

Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization


Bypassing Blockchain Authorization via Unsecured Functions


Note: Since the first part of this series I have also uploaded some further videos on remediation of reentrancy and dealing with compiler versions when working with this hacking blockchain series.  Head to the console cowboys YouTube account to check those out.  Haha as mentioned before I always forget to post blogs when I get excited making videos and just move on to my next project… So make sure to subscribe to the YouTube if you are waiting for any continuation of a video series.. It may show up there way before here. 

Note 2:  You WILL run into issues when dealing with Ethereum hacking, and you will have to google them as versions and functionality changes often... Be cognizant of versions used hopefully you will not run into to many hard to fix issues. 

In the second part of this lab series we are going to take a look at privacy issues on the blockchain which can result in a vulnerably a traditional system may  not face. Since typically blockchain projects are open source and also sometimes viewable within blockchain explorers but traditional application business logic is not usually available to us. With traditional applications we might not find these issues due to lack of knowledge of internal functionality or inability to read private values on a remote server side script.  After we review some issues we are going to exploit an authorization issues by writing web3.js code to directly bypass vertical authorization restrictions.

Blockchain projects are usually open source projects which allow you to browse their code and see what's going on under the hood.  This is fantastic for a lot of reasons but a developer can run into trouble with this if bad business logic decisions are deployed to the immutable blockchain.  In the first part of this series I mentioned that all uploaded code on the blockchain is immutable. Meaning that if you find a vulnerability it cannot be patched. So let's think about things that can go wrong..

A few things that can go wrong:
  • Randomization functions that use values we can predict if we know the algorithm
  • Hard-coded values such as passwords and private variables you can't change.
  • Publicly called functions which offer hidden functionality
  • Race conditions based on how requirements are calculated

Since this will be rather technical, require some setup and a lot of moving parts we will follow this blog via the video series below posting videos for relevant sections with a brief description of each.  I posted these a little bit ago but have not gotten a chance to post the blog associated with it.  Also note this series is turning into a full lab based blockchain exploitation course so keep a lookout for that.

In this first video you will see how data about your project is readily available on the blockchain in multiple formats for example:
  • ABI data that allows you to interact with methods.
  • Actual application code.
  • Byte code and assembly code.
  • Contract addresses and other data.

 Lab Video Part 1: Blockchain OSINT: 



Once you have the data you need to interact with a contract on the blockchain via some OSINT how do you actually interface with it? That's the question we are going to answer in this second video. We will take the ABI contract array and use it to interact with methods on the blockchain via Web3.js and then show how this correlates to its usage in an HTML file

Lab Video Part 2: Connecting to a Smart Contract: 




Time to Exploit an Application:

Exploit lab time, I created an vulnerable application you can use to follow along in the next video. Lab files can be downloaded from the same location as the last blog located below. Grab the AuthorizationLab.zip file:

Lab file downloads:



Ok so you can see what's running on the blockchain, you can connect to it, now what?   Now we need to find a vulnerability and show how to exploit it. Since we are talking about privacy in this blog and using it to bypass issues. Lets take a look at a simple authorization bypass we can exploit by viewing an authorization coding error and taking advantage of it to bypass restrictions set in the Smart Contract.  You will also learn how to setup a local blockchain for testing purposes and you can download a hackable application to follow along with the exercises in the video..

Lab Video Part 3:  Finding and hacking a Smart Contract Authorization Issue: 





Summary:

In this part of the series you learned a lot, you learned how to transfer your OSINT skills to the blockchain. Leverage the information found to connect to that Smart Contract. You also learned how to interact with methods and search for issues that you can exploit. Finally you used your browsers developer console as a means to attack the blockchain application for privilege escalation.

More articles


  1. Hacking App
  2. Black Hat Hacker Tools
  3. Hacker Security Tools
  4. Hacking Tools Windows 10
  5. Hacking Tools For Games
  6. Underground Hacker Sites
  7. Pentest Tools Website Vulnerability
  8. Pentest Tools Review
  9. Hacker Tools 2019
  10. Hacker Tools Github
  11. Hacking Apps
  12. Hacking Tools For Games
  13. Physical Pentest Tools
  14. Hacking Tools Kit
  15. Hacker Tools 2020
  16. Pentest Tools List
  17. Pentest Tools Tcp Port Scanner
  18. Hacking Tools For Windows Free Download
  19. Hacker Tools Free Download
  20. Hack Tools
  21. Hacking App
  22. Hacker Tools Mac
  23. Hacking Tools Download
  24. Hacking Tools Pc
  25. Hacking Tools For Games
  26. Kik Hack Tools
  27. Hacker Tools For Ios
  28. Hacker Tools 2019
  29. Hack Tools For Ubuntu
  30. Nsa Hacker Tools
  31. Free Pentest Tools For Windows
  32. Android Hack Tools Github
  33. Kik Hack Tools
  34. Pentest Tools
  35. Nsa Hacker Tools
  36. Pentest Tools Apk
  37. Easy Hack Tools
  38. Hacking Tools Kit
  39. Hack Tools Online
  40. Hack Tools Mac
  41. How To Hack
  42. Pentest Tools Free
  43. Pentest Tools List
  44. Nsa Hack Tools
  45. Hacking Tools Kit
  46. Hackrf Tools
  47. Best Pentesting Tools 2018
  48. Hack Tools For Pc
  49. Pentest Tools For Mac
  50. Pentest Tools Website Vulnerability
  51. Hacking Tools Pc
  52. Hacking Tools For Pc
  53. Physical Pentest Tools
  54. How To Make Hacking Tools
  55. Pentest Tools Online
  56. Hack And Tools
  57. Hacking Tools Download
  58. Pentest Tools Website
  59. Usb Pentest Tools
  60. Nsa Hack Tools
  61. Hacking Tools For Mac
  62. Pentest Tools Website Vulnerability
  63. Pentest Recon Tools
  64. Hacking Tools And Software
  65. Hacker Hardware Tools
  66. Blackhat Hacker Tools
  67. Install Pentest Tools Ubuntu
  68. Hacker Tools 2019
  69. Best Hacking Tools 2020
  70. Pentest Tools Find Subdomains
  71. Hack Tool Apk
  72. How To Hack
  73. Pentest Tools Bluekeep
  74. Hacker Hardware Tools
  75. Hacking Tools For Games
  76. Pentest Tools Open Source
  77. Pentest Tools Nmap
  78. Hack Tools Github
  79. Hack Tool Apk No Root
  80. Pentest Recon Tools
  81. Pentest Tools Review
  82. Pentest Tools Website
  83. Pentest Automation Tools
  84. Hacker Tools For Pc
  85. Hacking Tools Hardware
  86. Hacker Tools For Ios
  87. Hacker Tools Linux
  88. Bluetooth Hacking Tools Kali
  89. Pentest Tools Tcp Port Scanner
  90. Github Hacking Tools
  91. Pentest Tools Alternative
  92. Hacker Tools 2019
  93. Pentest Tools Bluekeep
  94. Pentest Tools Find Subdomains
  95. Hacker Tools For Mac
  96. Hack Tools For Pc
  97. Hack Tools Github
  98. Hacking Tools Download
  99. Hacker Tools Free Download
  100. Hackrf Tools
  101. Hack Website Online Tool
  102. Hacking Tools Download
  103. Hack Tools For Games
  104. Hacker Security Tools
  105. Hacking Tools For Kali Linux
  106. Pentest Tools Find Subdomains
  107. Pentest Tools For Android
  108. Hack Tools For Windows
  109. Nsa Hack Tools
  110. Hack Rom Tools
  111. Hacker Tools Apk
  112. Computer Hacker
  113. Hacker Tools Apk Download
  114. Hacking Tools Kit
  115. Pentest Tools Github
  116. Hacker Tools Hardware
  117. Hacker Tools Online
  118. How To Make Hacking Tools
  119. How To Make Hacking Tools
  120. Hacker Tools Linux
  121. Hak5 Tools
  122. Hacking Tools And Software
  123. Pentest Tools Windows
  124. Hackers Toolbox
  125. Hacking Tools 2019
  126. Hacker Tools Hardware
  127. Pentest Tools For Ubuntu
  128. Hacking Tools For Games
  129. Hack Website Online Tool
  130. Pentest Tools Framework
  131. Hacker Tools Windows
  132. Hacks And Tools
  133. Pentest Tools Free
  134. World No 1 Hacker Software
  135. Pentest Automation Tools
  136. Hack App
  137. Pentest Tools Kali Linux
  138. Pentest Tools Website Vulnerability
  139. Pentest Tools For Windows
  140. Hacking Tools Kit
  141. Hack Tools For Mac
  142. Pentest Tools Free
  143. Hack Tools
  144. Hacker Tools Mac
  145. Pentest Tools Open Source
  146. How To Install Pentest Tools In Ubuntu
  147. Hack Tools 2019
  148. Hacker Tools Apk
  149. Pentest Tools Apk
  150. Hacking Tools For Pc
  151. Hack Tools Github
  152. Pentest Tools Subdomain
  153. Pentest Tools Subdomain
  154. Hacker Tools Apk Download
  155. Hacking Tools Software
  156. Pentest Tools Port Scanner
  157. Tools Used For Hacking
  158. Pentest Tools Url Fuzzer
  159. Pentest Tools Bluekeep
  160. What Is Hacking Tools
  161. Pentest Tools Website Vulnerability
  162. Hacker Tools Github
  163. Pentest Tools Online
  164. Pentest Tools Alternative
  165. Hacking Tools For Mac
  166. Hacker Hardware Tools

No comments:

Post a Comment