PLAY PODCASTS
DON’T PANIC (camp2023)

DON’T PANIC (camp2023)

bytes, blocks, bugs

Chaos Computer Club - archive feed · Louis Merlin, Gabriel Arnautu

August 18, 202337m 50s

Audio is streamed directly from the publisher (cdn.media.ccc.de) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Love it or hate it, blockchain has become a playground for technologists. Blockchain also fuels criminal ecosystems through major hacking incidents. In this talk, we aim to shed light on the most common bug types found in one of the main blockchain frameworks (Substrate) and provide insights and tools to find them. Blockchain bugs present unique challenges for developers and security testers. Drawing from several hundred blockchain security issues we reported, we identified five common issue types. We discuss the potential impact of each issue type and provide practical tips for testing blockchain systems. To promote accessibility to blockchain hacking, we release a fuzzer for Substrate-based chains. During the talk, we demo the fuzzer and showcase typical bugs, including arithmetic errors, reachable panics, and others. about this event: https://pretalx.c3voc.de/camp2023/talk/LMWGLZ/

Topics

camp2023570692023Milliways