How To Find SO Many Criticals You Get Bored Of Auditing

Поділитися
Вставка
  • Опубліковано 19 січ 2025

КОМЕНТАРІ • 40

  • @demxnplaya4994
    @demxnplaya4994 11 місяців тому

    Gem of a video because right now im in the phase where its hard to understand what codebases do and how they work. Thank you!

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому

      Amazing hope this can help you get over that hump!! It's all downhill from there 🙏

    • @backupagrahari
      @backupagrahari 8 місяців тому

      Update ?

    • @backupagrahari
      @backupagrahari 8 місяців тому

      I am in the same place you were 3 months ago any update?

  • @waqasmuhammad9232
    @waqasmuhammad9232 10 місяців тому +3

    Hello Sir, I am trying to follow the GTDA methodology, I really like the way of following the codepath instead of just going through all the functions without context. Here the only problem I have is in drawing the diagrams, off course it is giving me more context, but taking so much time. Is it really worth it to draw? I mean in the context of Audit Contests, I mean almost 2k sloc 1 week. you know what I mean sir. I have also shared the diagram that I drew using whimsical, please have a look at that.

  • @SphereofTime
    @SphereofTime 9 місяців тому +1

    15:00

  • @suryap7330
    @suryap7330 11 місяців тому +2

    Which web app you used for diagrams , can you please tell?

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому +1

      Whimsical!

    • @FWeb3
      @FWeb3 11 місяців тому

      Just a hint: it’s on ChatGPT4 as one of the GPT’s 😉

  • @cryptAndCo
    @cryptAndCo 11 місяців тому +1

    Really cool video Owen, thank you !

    • @cryptAndCo
      @cryptAndCo 11 місяців тому

      Do you try to determine goals for each contracts or in general for the protocol ?

  • @basitkhan3853
    @basitkhan3853 11 місяців тому +1

    H oven i understand code very well but attack ideas does not come in my mind what do you recommend to build attacker mind

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому +2

      First you have to build your toolbox of attack vectors (great way to do this is with the full course on my channel), then go through functions and force yourself to simply spend 5 minutes coming up with ideas of how things can go wrong with the attack vectors you know.
      This will be hard at first but you will get better at it over time. Before long you will start to actually uncover findings this way, which will create a feedback loop, and that's how you train yourself to become an attacker.

    • @basitkhan3853
      @basitkhan3853 11 місяців тому

      @@0xOwenThurm 🙏

  • @steev910
    @steev910 3 місяці тому

    The url of the free course doesnt work for me ???

  • @suryaprakash5728
    @suryaprakash5728 11 місяців тому +1

    Please give your tips on how to audit large code base protocol like 3000 nSloc

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому +1

      Added to the backlog!

  • @muhammadarifzafary5919
    @muhammadarifzafary5919 3 місяці тому

    Thanks from your work sir. It will be great if upload some new videos on some new exploits

  • @bitedeep4876
    @bitedeep4876 11 місяців тому

    As always, thank you Owen for the great work you do.
    I find that the most challenge thing about applying this strategy (particularly the goals mapping) in audit contests is the time constraint. Do you have any strategy for dealing with that?

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому +3

      In contests if you're constrained on time, focus in on the most complex area of the codebase -- it's where the highest bug density is likely to be, and where most will shy away.

  • @eSqu4red
    @eSqu4red 10 місяців тому

    6:36 what happened with certik?

    • @GRIMxJOKE
      @GRIMxJOKE 10 місяців тому +1

      They are popular among the industry to give poor quality audits, but they are doing so many audits that their image is good among their potentials clients.

    • @eSqu4red
      @eSqu4red 10 місяців тому

      @@GRIMxJOKE haha! 😂

  • @suryap7330
    @suryap7330 11 місяців тому +1

    Owen , Are you auditing ARCADIA protocol ?

  • @eSqu4red
    @eSqu4red 10 місяців тому

    please provide us these notes 🙏

  • @HackChey
    @HackChey 11 місяців тому

    the audio is crisp and try to zoom in the video as it is not clear to see

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому

      Will do, have been focusing on zooming in more now haha

    • @HackChey
      @HackChey 11 місяців тому

      @@0xOwenThurm im not trying to compare but recently i have been watched patrick collins videos he take care of these minute things.. and he speaks very clearly .
      you are prodcuing great content though

  • @NeuroWeb3Security
    @NeuroWeb3Security 11 місяців тому

    Great video Owen was really helpful

  • @danielmajak
    @danielmajak 11 місяців тому +1

    I'm one hour late but lets fkn go!

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому

      Lfg glad you watched ser 🫡

  • @merv893
    @merv893 11 місяців тому

    You are great, thanks man.

  • @angrybugs7966
    @angrybugs7966 11 місяців тому

    Thanks for sharing these videos, really helpful.

    • @0xOwenThurm
      @0xOwenThurm  11 місяців тому +1

      Glad they could be useful! More on the way for you 🫡

  • @code7631
    @code7631 11 місяців тому

    💜

  • @suryaprakash5728
    @suryaprakash5728 11 місяців тому

    Please give your tips on how to audit large code base protocol like 3000 nSloc