Premium Only Content
My BIGGEST Bounty Yet
Walkthrough of the first two high severity findings I discovered auditing Solidity smart contracts on Code4rena.
First Finding: The check for value transfer success is made after the return statement
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-sturdy.md#h-02-the-check-for-value-transfer-success-is-made-after-the-return-statement-in-_withdrawfromyieldpool-of-lidovault
Second Finding: no-revert-on-transfer ERC20 tokens can be drained
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-cally.md#h-01-no-revert-on-transfer-erc20-tokens-can-be-drained
Additional Reading:
Return Unchecked - Low Level Calls:
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-11-bootfinance.md#m-02-unchecked-low-level-calls
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-11-malt.md#m-12-permissions---return-values-not-checked-when-sending-eth
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-12-nftx.md#m-08-low-level-call-return-value-not-checked
ERC721 - safeTransferFrom:
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-cally.md#m-09-use-safetransferfrom-instead-of-transferfrom-for-erc721-transfers
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-04-backed.md#m-03-sendcollateralto-is-unchecked-in-closeloan-which-can-cause-users-collateral-nft-to-be-frozen
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-04-backed.md#m-07-mintborrowticketto-can-be-a-contract-with-no-onerc721received-method-which-may-cause-the-borrowticket-nft-to-be-frozen-and-put-users-funds-at-risk
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-01-sandclock.md#m-09-no-use-of-safemint-as-safe-guard-for-users-
Content:
00:00 - [Intro]
0:32 - [First Finding - $14.84]
4:25 - [Second Finding - $3071.03]
12:07 - [Progress Update]
-
25:08
MYLUNCHBREAK CHANNEL PAGE
1 day agoUnder The Necropolis - Pt 2
19.6K11 -
1:45:59
Spittin' Chiclets
18 hours agoCanadian Chokejob - Game Notes Live From Chicago - 12.28.2024
86.8K8 -
9:18
Space Ice
6 hours agoThe Guyver - Alien Bug Suits, Exploding Dragons, & Mark Hamill - Weirdest Movie Ever
8.16K8 -
12:46
RealReaper
1 day ago $0.68 earnedMufasa is a Soulless Cash Grab
5.72K -
5:14:24
FusedAegisTV
7 hours agoWelcome to The King of Iron Fist Tournament! \\ TEKKEN 8 Stream #1
63.4K -
DVR
Bannons War Room
1 year agoWarRoom Live
101M -
5:42:36
FreshandFit
12 hours agoLive X Censorship For Opposing Immigration?!
119K81 -
1:08:16
Tactical Advisor
8 hours agoNEW Budget Glocks | Vault Room Live Stream 011
46.5K4 -
16:30
SNEAKO
15 hours agoNO FRIENDS IN THE INDUSTRY.
96.9K26 -
6:19
BlackDiamondGunsandGear
1 day agoHow Fat Guys can Appendix Carry
66.6K10