Monday, 29 May 2023

Blockchain Exploitation Labs - Part 2 Hacking Blockchain Authorization


Bypassing Blockchain Authorization via Unsecured Functions


Note: Since the first part of this series I have also uploaded some further videos on remediation of reentrancy and dealing with compiler versions when working with this hacking blockchain series.  Head to the console cowboys YouTube account to check those out.  Haha as mentioned before I always forget to post blogs when I get excited making videos and just move on to my next project… So make sure to subscribe to the YouTube if you are waiting for any continuation of a video series.. It may show up there way before here. 

Note 2:  You WILL run into issues when dealing with Ethereum hacking, and you will have to google them as versions and functionality changes often... Be cognizant of versions used hopefully you will not run into to many hard to fix issues. 

In the second part of this lab series we are going to take a look at privacy issues on the blockchain which can result in a vulnerably a traditional system may  not face. Since typically blockchain projects are open source and also sometimes viewable within blockchain explorers but traditional application business logic is not usually available to us. With traditional applications we might not find these issues due to lack of knowledge of internal functionality or inability to read private values on a remote server side script.  After we review some issues we are going to exploit an authorization issues by writing web3.js code to directly bypass vertical authorization restrictions.

Blockchain projects are usually open source projects which allow you to browse their code and see what's going on under the hood.  This is fantastic for a lot of reasons but a developer can run into trouble with this if bad business logic decisions are deployed to the immutable blockchain.  In the first part of this series I mentioned that all uploaded code on the blockchain is immutable. Meaning that if you find a vulnerability it cannot be patched. So let's think about things that can go wrong..

A few things that can go wrong:
  • Randomization functions that use values we can predict if we know the algorithm
  • Hard-coded values such as passwords and private variables you can't change.
  • Publicly called functions which offer hidden functionality
  • Race conditions based on how requirements are calculated

Since this will be rather technical, require some setup and a lot of moving parts we will follow this blog via the video series below posting videos for relevant sections with a brief description of each.  I posted these a little bit ago but have not gotten a chance to post the blog associated with it.  Also note this series is turning into a full lab based blockchain exploitation course so keep a lookout for that.

In this first video you will see how data about your project is readily available on the blockchain in multiple formats for example:
  • ABI data that allows you to interact with methods.
  • Actual application code.
  • Byte code and assembly code.
  • Contract addresses and other data.

 Lab Video Part 1: Blockchain OSINT: 



Once you have the data you need to interact with a contract on the blockchain via some OSINT how do you actually interface with it? That's the question we are going to answer in this second video. We will take the ABI contract array and use it to interact with methods on the blockchain via Web3.js and then show how this correlates to its usage in an HTML file

Lab Video Part 2: Connecting to a Smart Contract: 




Time to Exploit an Application:

Exploit lab time, I created an vulnerable application you can use to follow along in the next video. Lab files can be downloaded from the same location as the last blog located below. Grab the AuthorizationLab.zip file:

Lab file downloads:



Ok so you can see what's running on the blockchain, you can connect to it, now what?   Now we need to find a vulnerability and show how to exploit it. Since we are talking about privacy in this blog and using it to bypass issues. Lets take a look at a simple authorization bypass we can exploit by viewing an authorization coding error and taking advantage of it to bypass restrictions set in the Smart Contract.  You will also learn how to setup a local blockchain for testing purposes and you can download a hackable application to follow along with the exercises in the video..

Lab Video Part 3:  Finding and hacking a Smart Contract Authorization Issue: 





Summary:

In this part of the series you learned a lot, you learned how to transfer your OSINT skills to the blockchain. Leverage the information found to connect to that Smart Contract. You also learned how to interact with methods and search for issues that you can exploit. Finally you used your browsers developer console as a means to attack the blockchain application for privilege escalation.

Related links


  1. Hacking Tools 2019
  2. Hak5 Tools
  3. Hacker Tools Online
  4. Free Pentest Tools For Windows
  5. Pentest Tools Download
  6. Pentest Tools Website Vulnerability
  7. Nsa Hacker Tools
  8. Hacking Tools For Games
  9. Physical Pentest Tools
  10. Hack Tools Pc
  11. Pentest Tools For Android
  12. Growth Hacker Tools
  13. Hacking Tools For Windows Free Download
  14. Pentest Tools Subdomain
  15. Pentest Tools Find Subdomains
  16. Pentest Tools Apk
  17. New Hack Tools
  18. Blackhat Hacker Tools
  19. Hacking Tools Pc
  20. Hacking Tools For Windows Free Download
  21. Hacker
  22. Pentest Tools Nmap
  23. Usb Pentest Tools
  24. Hacking Tools
  25. Hack Tools Mac
  26. Hack Tools For Pc
  27. Install Pentest Tools Ubuntu
  28. Growth Hacker Tools
  29. Hacking Tools Hardware
  30. Hacker Security Tools
  31. Best Pentesting Tools 2018
  32. Pentest Tools Apk
  33. Pentest Tools Tcp Port Scanner
  34. Hack App
  35. Hack Tools 2019
  36. Hacking Tools Hardware
  37. Hack Tools Download
  38. Hacker Tools Free Download
  39. Pentest Tools Tcp Port Scanner
  40. Blackhat Hacker Tools
  41. Hacker Tools Free
  42. Pentest Tools Download
  43. Wifi Hacker Tools For Windows
  44. Physical Pentest Tools
  45. Pentest Tools For Android
  46. Usb Pentest Tools
  47. Pentest Box Tools Download
  48. Hacking Tools
  49. Hacker Tools 2019
  50. Tools For Hacker
  51. Hacking Tools Name
  52. Pentest Tools
  53. Hacker Tools For Ios
  54. Hacker Tools Hardware
  55. Hacking Tools Windows 10
  56. Hacking Tools Software
  57. Hack Rom Tools
  58. Hacking Tools Pc
  59. Hacking Tools For Kali Linux
  60. Hacker Tools Windows
  61. Pentest Tools List
  62. How To Make Hacking Tools
  63. Hacking Tools For Mac
  64. Pentest Reporting Tools
  65. Hack Tools Download
  66. Hacking Tools For Windows
  67. Tools For Hacker
  68. Termux Hacking Tools 2019
  69. Pentest Tools For Android
  70. Hacker Tools Github
  71. Pentest Box Tools Download
  72. Best Hacking Tools 2019
  73. Hacker Tools For Mac
  74. Hack Tools
  75. Hack Tools
  76. Hack Tools 2019
  77. Pentest Tools Find Subdomains
  78. Ethical Hacker Tools
  79. Tools Used For Hacking
  80. Physical Pentest Tools
  81. Pentest Tools Alternative
  82. How To Make Hacking Tools
  83. Hacker Tools Mac
  84. How To Install Pentest Tools In Ubuntu
  85. Pentest Tools Website
  86. Hacker Techniques Tools And Incident Handling
  87. Hacker Tools For Windows
  88. Hacker Tools Free Download
  89. Pentest Tools Port Scanner
  90. Hack Tools Mac
  91. Hack Tool Apk No Root
  92. Pentest Tools For Android
  93. Kik Hack Tools
  94. Hacking Tools Github
  95. Pentest Tools Review
  96. Hack Tools Mac
  97. Hacking App
  98. How To Make Hacking Tools
  99. Hack Tools For Mac
  100. Hack And Tools
  101. Hacking Tools For Windows Free Download
  102. Ethical Hacker Tools
  103. Hack Tools Mac
  104. Hack Tools
  105. Hack And Tools
  106. Hacker Tools 2019
  107. Pentest Tools Port Scanner
  108. Nsa Hack Tools Download
  109. Pentest Tools Kali Linux
  110. Hack Tools
  111. Nsa Hack Tools Download
  112. Blackhat Hacker Tools
  113. Pentest Tools Online
  114. Hack Tools
  115. Best Pentesting Tools 2018
  116. Underground Hacker Sites
  117. Hacker Tools Hardware
  118. Pentest Tools Windows
  119. Pentest Tools Linux
  120. Hacking Tools Hardware
  121. Hack Tools For Mac
  122. Hacking Tools 2019
  123. Best Hacking Tools 2019
  124. Hacking Tools For Windows
  125. Pentest Tools Github
  126. Pentest Box Tools Download
  127. Hacking App
  128. Pentest Tools Linux
  129. Hacker Tools Hardware
  130. Pentest Tools Framework
  131. Black Hat Hacker Tools
  132. Top Pentest Tools
  133. Hacking Tools And Software
  134. Pentest Tools Website Vulnerability
  135. Hackers Toolbox
  136. Pentest Tools Online
  137. Hacker Tools Linux
  138. Hacker Tools For Windows
  139. Pentest Tools Online
  140. Tools Used For Hacking
  141. Android Hack Tools Github
  142. Hacker Hardware Tools
  143. Hack Website Online Tool
  144. Android Hack Tools Github
  145. Hack App
  146. Underground Hacker Sites
  147. Computer Hacker
  148. Hacker Tools Online
  149. Hack App
  150. Pentest Tools For Ubuntu
  151. Ethical Hacker Tools
  152. Hacking Apps
  153. Hack Apps
  154. Hacker Tools Free
  155. Best Hacking Tools 2019
  156. Install Pentest Tools Ubuntu
  157. Hacking Tools Software
  158. Hacker Tools Github
  159. Pentest Tools Bluekeep
  160. Hackers Toolbox
  161. Pentest Box Tools Download
  162. What Is Hacking Tools
  163. Hacker Techniques Tools And Incident Handling
  164. Tools Used For Hacking
  165. Hacker Tools For Windows
  166. Hack Rom Tools
  167. Pentest Tools For Ubuntu

No comments:

Post a Comment