Premium Only Content
My BIGGEST Bounty Yet
Walkthrough of the first two high severity findings I discovered auditing Solidity smart contracts on Code4rena.
First Finding: The check for value transfer success is made after the return statement
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-sturdy.md#h-02-the-check-for-value-transfer-success-is-made-after-the-return-statement-in-_withdrawfromyieldpool-of-lidovault
Second Finding: no-revert-on-transfer ERC20 tokens can be drained
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-cally.md#h-01-no-revert-on-transfer-erc20-tokens-can-be-drained
Additional Reading:
Return Unchecked - Low Level Calls:
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-11-bootfinance.md#m-02-unchecked-low-level-calls
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-11-malt.md#m-12-permissions---return-values-not-checked-when-sending-eth
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2021-12-nftx.md#m-08-low-level-call-return-value-not-checked
ERC721 - safeTransferFrom:
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-05-cally.md#m-09-use-safetransferfrom-instead-of-transferfrom-for-erc721-transfers
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-04-backed.md#m-03-sendcollateralto-is-unchecked-in-closeloan-which-can-cause-users-collateral-nft-to-be-frozen
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-04-backed.md#m-07-mintborrowticketto-can-be-a-contract-with-no-onerc721received-method-which-may-cause-the-borrowticket-nft-to-be-frozen-and-put-users-funds-at-risk
https://github.com/code-423n4/code423n4.com/blob/main/_data/reports/2022-01-sandclock.md#m-09-no-use-of-safemint-as-safe-guard-for-users-
Content:
00:00 - [Intro]
0:32 - [First Finding - $14.84]
4:25 - [Second Finding - $3071.03]
12:07 - [Progress Update]
-
6:06:49
Sgt Wilky Plays
6 hours agoFirefight Friday
9.13K2 -
LIVE
Drew Hernandez
9 hours agoLA MAYOR PUSHED $49 MILL LAFD BUDGET CUT ONE WEEK BEFORE FIRES?
3,087 watching -
2:52:04
Nobodies Gaming
4 hours ago $1.98 earnedNobodies Rumble Gaming TEST STREAM 2.0
26.8K3 -
1:00:36
Talk Nerdy 2 Us
4 hours agoDigital Surveillance, TikTok Shutdowns & The Hackers They Don’t Want You to Know About!
23.1K -
3:08:37
SpartakusLIVE
6 hours agoDelta Force || Tactical, Strategic, HARDCORE
38.7K2 -
LIVE
I_Came_With_Fire_Podcast
10 hours agoTRUMP GUILTY Verdict, LA Fires, New American EXPANSIONISM, and Cyber Truck Updates!!
345 watching -
1:26:05
Glenn Greenwald
7 hours agoGOP Senators Demand Tulsi Support Domestic Surveillance To Be Confirmed; Group Tracks IDF War Criminals Around The World; System Pupdate: Pointer's Determination To Survive | SYSTEM UPDATE #387
77K51 -
57:27
Flyover Conservatives
23 hours agoHealthy People Are Ungovernable: The Secrets They Don’t Want YOU to Know - Tracy Beanz | FOC Show
35.3K5 -
8:36:11
Dr Disrespect
14 hours ago🔴LIVE - DR DISRESPECT - DELTA FORCE - INTENSE SITUATIONS ONLY!
235K27 -
4:01:30
Nerdrotic
10 hours ago $29.91 earnedHollywood National DISASTER! Studios Terrified, Star Wars FAIL | Friday Night Tights 336 w Raz0rfist
134K39