🔥 Day 14 of learning Smart contract Auditing....
✅Today is all about the various bugs that is associated with Oracle and Pricing system
✅ I understood bugs in categories, Prioritizing system, red flags and edge case in each scenario to ensure replicative identification
🔥Day 13 of learning Smart contract Auditing
✅I will be participating in the 6days @CodeHawks Stratax First flight Contest
✅it is A DeFi project with Aave V3, 1inch Dex aggregator and Chainlink integration
🔥Day 13 of learning Smart contract Auditing
✅I will be participating in the 6days @CodeHawks Stratax First flight Contest
✅it is A DeFi project with Aave V3, 1inch Dex aggregator and Chainlink integration
🔥Day 12 of learning Smart contract Auditing
✅I did nothing worth reporting today
✅But I was focused on understanding reports
✅most important I'm considering changing my strategy when I find out im just learning patterns that static analysis tools are very good at finding
@kairo_security Yeah, that wasn't a rekt case study tho
Just a casual protocol deep dive to understand yield better, pendle is just one suggestion I was given for that
🔥Day 11 of learning Smart contract Auditing
✅Today is all about Understanding DeFi Yield protocols
Same learning model....
✅Understanding key architecture, Core logic, Vault and strategy mechanism,exploit pattern
✅finally protocol deep dive (Yearn,pendle,convex etc)
🔥Day 10 of learning Smart contract Auditing
✅Today is about understanding a DeFi protocol from theory → mechanics → code → exploits → rebuilding safer designs.
✅Algorithmic Stable Coins
I will be attaching part of my learning outline I got from prompting AI extensively
@Smart0058 This is me recently, do you later found answer to this??😪
I found out invariant testing is the key but I need real people telling me if that works
@Smart0058@GuildAcademy_@edoscoba I actually know solidity, in fact I know foundry I'm an alumni of @CyfrinUpdraft
I'm also not new to security research and auditing
I just need to be in a community like this where I could grow🫡 that's why I asked
I watched this Interview from @opensensepw with @0xMackenzieM
This is just what I need atm, the motivation, the reassurance and all🔥🔥
If you are a beginner Auditor and you sort of like have imposter syndrome, and you need to get that confidence to keep moving, this is for you
@Foreman595670 No truer words
Most beginners can't differentiate between the noise and useful information out there
They just have to see things for themselves when they are faced by the real world
🔥Day 12 of learning Smart contract Auditing
✅I did nothing worth reporting today
✅But I was focused on understanding reports
✅most important I'm considering changing my strategy when I find out im just learning patterns that static analysis tools are very good at finding
🔥Day 11 of learning Smart contract Auditing
✅Today is all about Understanding DeFi Yield protocols
Same learning model....
✅Understanding key architecture, Core logic, Vault and strategy mechanism,exploit pattern
✅finally protocol deep dive (Yearn,pendle,convex etc)
After few hours of research,
I just realized what was missing, I will be taking a break from understanding Defi protocol for now and getting back into security
For a start,I need to master Fuzz testing,invariant testing,symbolic testing and formal verification.
I mean very wel
🔥Day 12 of learning Smart contract Auditing
✅I did nothing worth reporting today
✅But I was focused on understanding reports
✅most important I'm considering changing my strategy when I find out im just learning patterns that static analysis tools are very good at finding
🔥Day 9 of learning BLOCKCHAIN DEVELOPMENT(smart contract Auditing)
Past few days, I added few more attack vectors to my Auditor's toolkit...
✅Frontrunning attacks
✅Sandwich attacks
I will be going through public databases like solodit to get more familiar with these bugs.
🔥 Day 8 of learning Blockchain development...
✅ I'm finally done with the Uniswap V3 book on @RareSkills_io website
I will definitely recommend for any beginner out there
✅ I restarted the V3 course on @CyfrinUpdraft YouTube.
I must say there is a huge difference this time
🔥Day 2 of 60days Code4rena Reports
Due to the reality check,
I was about to give up on reporting anything on day 2 until I saw this article talking about Tools useful to identify known pattern.
When I went through the static analysis report run already in this GTE codebase, I.
🔥Day 1 of 60days Code4rena Reports
Pre-Actions
✅going through GTE Spot CLOB Report(latest report)
✅Not too familiar with the DeFi protocol category, I will be taking a Spot trading protocol prerequisites
✅My approach today => Codebase first + personal Audit + Audit Report