Here Chriss shares his experience as a Smart Contract Auditor Intern in Ginger Security! Out of a pool of over 600 students, Chriss was selected for a private audit, and he's here to spill the beans.
Watch the full interview here:
https://youtu.be/t6x8m0y6Nj0
Become a Smart Contract Auditor:
https://smartcontractshacking.com
Discover what it's like to work closely with a dedicated team, bouncing ideas off each other and delving into the intentions of the protocol. Chriss highlights the main differences between public and private audits, shedding light on their unique aspects.
Find out why focusing on bringing all-around value to the client and ensuring code security takes center stage in private audits. No spoilers here, but Chriss gives a glimpse into the valuable findings he uncovered during the audit.
Watch this video and gain insights into the fascinating world of smart contract auditing and the important role it plays in keeping contracts safe and secure.
...
https://www.youtube.com/watch?v=riUI9CnUkJg
Patreon:
https://www.patreon.com/JohnnyTime
BUSD Tip Jar:
0xFf3d275BB50bB677Ea1f117730B68Cf42651a60f
Hey guys, in today's video we are going to learn how to use DeFi Llama. We will go through the DeFi Llama features and see how we can find opportunities in DeFi.
DeFi Llama is a service that provides information on the total amount of funds invested in DeFi services. DeFi Llama is one of the alternatives to DeFi Pulse and has more than 70 projects related to decentralized finance, which can be tracked on the platform.
We will look at the TVL (Total Value Locked) Rankings - an important indicator used to measure this value. With the rapid development of the DeFi industry, TVL indicators will attract as much attention as the news about market caps and platform rankings.
We will learn how to read data on DeFi Llama and how to analyze different blockchains and protocols. Also, we will see the Airdrop page which airdrop farmers can use to identify potential airdrops from protocols. It lists out projects that have not yet introduced a native token, making them good candidates for a potential airdrop.
___________________________________________________________
Useful links:
DeFi Llama Main Website:
https://defillama.com
___________________________________________________________
___________________________________________________________
Timestamps:
00:00 Intro
01:37 Defi Llama Website Overview
03:54 Defi Llama Chains
04:58 Defi Llama Airdrops
05:45 Comparing Protocols
06:28 Chains TVL
08:20 TVL Rankings
10:15 Outro And Summary
___________________________________________________________
___________________________________________________________
⚠️⚠️⚠️ #Llama #Protocols #Chains #TVL #Airdrops #Rankings #Tutorial #Guide #DEFI ⚠️⚠️⚠️
The content in any of Johnny's Youtube videos shall not be construed as tax, legal, insurance, construction, engineering, health & safety, electrical, financial advice, or other & may be outdated or inaccurate; it is your responsibility to verify all information.
I do not provide personal investment advice and I am not a qualified licensed investment advisor.
I am just sharing my knowledge and my findings.
___________________________________________________________
___________________________________________________________
Communities & Social Media:
Discord:
https://johnnytime.finance/discord
Twitter:
https://twitter.com/RealJohnnyTime
Instagram:
https://www.instagram.com/johnnytime.eth
___________________________________________________________
___________________________________________________________
Music By Yoad Ronen:
https://soundcloud.com/yoad-ronen
___________________________________________________________
Until next time,
Johnny Time
...
https://www.youtube.com/watch?v=TM145fJR8t4
In this YouTube video, you'll hear Hari talking about compiler security. He discusses how Solidity, a language for smart contracts, uses defensive programming to prevent bugs in real-world code.
Watch the full interview here:
https://youtu.be/5OEhj8ZvwOw
Become a Certified Smart Contract Auditor:
https://johnnytime.xyz/smart-contract-hacker
Hari mentions that many bugs are discovered through compiler crashes. He finds these bugs fascinating and shares that the fixes are often just a single line of code. Hari also briefly explains an example related to an Optimizer bug. If you're interested in this topic, check out the video for more insights.
...
https://www.youtube.com/watch?v=o-y51iqbwjU
Patreon:
https://www.patreon.com/JohnnyTime
BUSD Tip Jar:
0xFf3d275BB50bB677Ea1f117730B68Cf42651a60f
21% Discounted Ledger Family Pack (Official Site):
https://johnnytime.finance/ledger-pack-discount
Ledger Nano S (Affiliate Link):
https://johnnytime.finance/ledger
Ledger Nano X (Affiliate Link):
https://johnnytime.finance/ledger-x
___________________________________________________________
If you have more than $5,000 in crypto and you are using the terra station extenssion or the terra extension wallet, you HAVE to watch this guide in order to learn how to use decentralized apps on Terra like Mirror Protocol with ledger and protect your assets.
You are basically going to connect your hardware wallet to your Terra Station Extenssion and sign the transaction on the ledger itself, the terra station is not aware of the private key, and the private key never touches the computer memory, but is living in a secured and encrypted way inside the Ledger device.
If you don't have a ledger yet and you like my content, this video helped you, and want to support my work, please consider using the affiliate link below to purchase a new ledger :)
___________________________________________________________
Ledger Purchase Link (Affiliate Link):
https://johnnytime.finance/ledger
Terra Station Wallet Extension:
https://chrome.google.com/webstore/detail/terra-station/aiifbnbfobpmeekipheeijimdpnlpgpp?hl=en
Terra Station Wallet:
https://station.terra.money/wallet
___________________________________________________________
___________________________________________________________
Related Videos:
Why Your Funds Are At Risk If You Don't User Ledger:
https://www.youtube.com/watch?v=ixLuRvYlrlw
___________________________________________________________
___________________________________________________________
Timestamps:
00:00 Intro
00:55 Ledger Live App Setup
02:00 Install Terra On Ledger
02:50 Install Terra Wallet Extension
03:30 Connecting The Ledger To Terra Wallet
05:10 Example: Swapping Tokens With Ledger
07:00 Outro And Summary
___________________________________________________________
___________________________________________________________
⚠️⚠️⚠️ #Terra #Station #Luna #Wallet #Ledger #HardwareWallet #DEFI ⚠️⚠️⚠️
The content in any of Johnny's Youtube videos shall not be construed as tax, legal, insurance, construction, engineering, health & safety, electrical, financial advice, or other & may be outdated or inaccurate; it is your responsibility to verify all information.
I do not provide personal investment advice and I am not a qualified licensed investment advisor.
I am just sharing my knowledge and my findings.
___________________________________________________________
___________________________________________
...
https://www.youtube.com/watch?v=YF67SOjDG_M
Hey guys!
Today you will learn a lot of interesting things about DEFI and on chain analysis!
We will track the PancakeSwap Team behind the scenes, find their operational wallets, and admin wallets, and see what they are doing.
Through the process you will enrich your knowledge about Timelock Contracts in DEFI, how they work, and of course, MultiSig Wallets (Gnosis Safe in that case), which PancakeSwap admins use to manage their MasterChef smart contract!
PancakeSwap has the most users of any decentralized platform, ever. And those users are now entrusting the platform with over $4 billion in funds. They use a Timelock and a Gnosis Safe to manage the MasterChef V2 smart contract (Which is responsible for all CAKE token emissions) and today we gonna learn how they work behind the scenes!
A timelock contract is a smart contract embedded in a blockchain that executes a transaction at a specific time. They are used in hashed timelock contracts and payment channels where specific payment times are needed
A multisig wallet is a wallet shared by two or more users called copayers. Depending on the kind of wallet, the number of signatures required to sign a transaction will be lower or equal to the number of copayers of the wallet.
___________________________________________________________
MultiSig Wallet Tutorial:
https://www.youtube.com/watch?v=TWMW32APiHY
Gnosis Safe Complete Tutorial:
Create A Gnosis Safe:
PancakeSwap MasterChef V2 Contract:
https://bscscan.com/address/0xa5f8C5Dbd5F286960b9d90548680aE5ebFf07652#readContract
PancakeSwap Timelock Contract:
https://bscscan.com/address/0xa1f482dc58145ba2210bc21878ca34000e2e8fe4
PancakeSwap MultiSig Admin Wallet (Gnosis Safe):
https://bscscan.com/address/0xecc90d54b10add1ab746abe7e83abe178b72aa9e
https://gnosis-safe.io/app/bnb:0xecc90d54b10add1ab746abe7e83abe178b72aa9e/transactions/history
Patreon:
https://www.patreon.com/JohnnyTime
Discord:
https://johnnytime.xyz/discord
BUSD Tip Jar:
0xFf3d275BB50bB677Ea1f117730B68Cf42651a60f
Gnosis Safe:
https://gnosis-safe.io/
___________________________________________________________
Timestamps:
00:00 Intro
01:30 Blockchain On Chain Research Methodology
02:30 PancakeSwap Timelock Contract
04:20 PancakeSwap Gnosis Safe MultiSig Contract
05:45 Loading the PancakeSwap Admin Wallet
07:00 Analyzing the PancakeSwap Admin Wallet
08:30 PancakeSwap Admins Changing MasterChef V2
11:00 Outro And Summary
___________________________________________________________
___________________________________________________________
⚠️⚠️⚠️ #PancakeSwap #Admins #Wallet #Timelock #Gnosis #MultiSig #OnChain #Crypto #HowTo #DEFI #Tutorial ⚠️⚠️⚠️
The content in any of Johnny's Youtube videos shall not be construed as tax, legal, insurance, construction, engineering, health & safety, electrical, financial advice, or other & may be outdated or inaccurate; it is your responsibility to verify all information.
I do not provide personal investment advice and I am not a qualified licensed investment advisor.
I am just sharing my knowledge and my findings.
___________________________________________________________
___________________________________________________________
Social Media:
Twitter:
https://twitter.com/RealJohnnyTime
Instagram:
https://www.instagram.com/johnnytime.eth
___________________________________________________________
___________________________________________________________
Music By Yoad Ronen:
https://soundcloud.com/yoad-ronen
___________________________________________________________
Until next time,
Johnny Time
...
https://www.youtube.com/watch?v=K4lG56U5gE8
? Breaking Down High Severity Decimals Issue in CodeHawks StableCoin Contest ?
Become a Smart Contract Auditor:
https://johnnytime.xyz/smart-contract-hacker
Watch The Full CodeHawks Stream:
https://www.youtube.com/watch?v=C-GRDhA9B9U
Join me in this in-depth analysis of a High Severity vulnerability discovered during the Foundry DeFi Stablecoin CodeHawks Audit Contest. ?️♂️?
In this video, we explore:
- The unique DSC System and its principles
- The critical vulnerability affecting DSC
- How to fix it with code modifications
- Whether you're a smart contract auditor, developer, or just curious about blockchain security, this breakdown is for you!
...
https://www.youtube.com/watch?v=Ild-N0ADrkI
Patreon:
https://www.patreon.com/JohnnyTime
BUSD Tip Jar:
0xFf3d275BB50bB677Ea1f117730B68Cf42651a60f
In today's video, we are going to learn how to stake ILV tokens and earn massive yields of up to 550% APY.
The ILV token is the token of the upcoming Blockchain game Illuvium.
We will learn about the different types of ILV staking, rewards, and vesting mechanism.
We will see the difference between ILV single token staking to SushiSwap LP tokens (ILV-ETH) staking.
We will also speak about the difference between ILV and sILV and what are the advantages and disadvantages of collecting the rewards as ILV or sILV.
I will show you in the video how to stake your ILV and SLP (ILV-ETH) tokens, and what is the best time of the day to do so.
We will also see how we can compound our ILV rewards in order to generate more ILV rewards :)
Later on, I will reveal my staking strategy (Not financial advice), so you guys can learn and get some ideas in order to implement you ILV token staking strategy.
___________________________________________________________
Useful Links:
Illuvium Staking:
https://staking.illuvium.io/
Illuvium Main Website:
https://www.illuvium.io/
ILV token Info:
https://www.coingecko.com/en/coins/illuvium
___________________________________________________________
___________________________________________________________
Timestamps:
00:00 Intro
01:50 Illuvium Staking Overview
05:00 ILV Staking Dashboard
06:00 Illuvium Staking Core Pools
07:25 Flexible VS. Locked Staking
08:25 My Staking Strategy
10:25 ILV / sILV Rewards
13:15 Illuvium Vesting
16:20 How To Stake Illuvium
17:40 Outro
___________________________________________________________
___________________________________________________________
Communities & Social Media:
Discord:
https://johnnytime.finance/discord
Twitter:
https://twitter.com/RealJohnnyTime
Instagram:
https://www.instagram.com/johnnytime.eth/
___________________________________________________________
___________________________________________________________
⚠️⚠️⚠️ #Illuvium #ILV #Staking #GameFi #DEFI ⚠️⚠️⚠️
The content in any of Johnny's Youtube videos shall not be construed as tax, legal, insurance, construction, engineering, health & safety, electrical, financial advice, or other & may be outdated or inaccurate; it is your responsibility to verify all information.
I do not provide personal investment advice and I am not a qualified licensed investment advisor.
I am just sharing my knowledge and my findings.
___________________________________________________________
___________________________________________________________
Music By Yoad Ronen:
https://soundcloud.com/yoad-ronen
___________________________________________________________
Until next time,
Johnny Time
...
https://www.youtube.com/watch?v=-w-AAvqWTHo
In this episode, we tackle the 6th challenge of Damn Vulnerable DeFi V3, "Selfie".
Join me on this journey as we explore smart contracts and governance mechanisms, improving our skills in the art of smart contract hacking.
Learn Smart Contract Hacking Fundamentals and Become a Certified Smart Contract Hacker:
https://johnnytime.xyz/smart-contract-hacker
Damn Vulnerable DeFi V3:
https://www.damnvulnerabledefi.xyz/
Damn Vulnerable DeFi V3 Videos and Solutions:
https://www.youtube.com/playlist?list=PLKXasCp8iWpiKdsSR18XdAyDeYlYzMG00
Damn Vulnerable DeFi Repository with Solutions on Github (Leave a star ?):
https://github.com/RealJohnnyTime/damn-vulnerable-defi-v3-solutions-johnnytime
? Challenge Overview ?
Damn Vulnerable DeFi V3 Challenge 6, "Selfie," is about governance mechanisms, lending pools and flash loans with DVT tokens. A governance mechanism controls everything.
Our mission? Exploit vulnerabilities within these contracts and steal the 1.5 million DVT tokens from the pool.
? Meet the Smart Contracts ?
SimpleGovernance.sol: At the core of governance, this contract allows users to propose and queue actions. Conditions must be met for execution, including votes from token holders and a 2-day time delay.
SelfiePool.sol: The flash loan provider with a safety net - governance can drain funds in emergencies. Only the governance contract can trigger this emergency exit feature.
? Level Up Your Skills ?
Feeling overwhelmed by smart contract hacking challenges? Consider enrolling in our comprehensive Smart Contract Hacking Course. With 30+ videos, 40+ exercises, and a supportive community, you'll master the art of smart contract security.
? Certification Awaits ?
Complete the course and ace the final test to earn your official Smart Contract Hacker Certificate. This credential can open doors to exciting career opportunities in the Web3 security space.
? Ready to Dive In? ?
Get started today with a limited-time discount:
https://johnnytime.xyz/smart-contract-hacker
?️♂️ Exploiting Strategy?️♂️
Discover our strategy for exploiting the governance mechanism and seizing those precious DVT tokens. Learn how we use flash loans and craft a malicious smart contract, AttackSelfie.sol, to make it all happen.
Our AttackSelfie.sol interacts with SelfiePool, borrowing a significant token amount via flash loan. We prepare the payload and call the emergencyExit function, all explained in detail.
? Execution of the Attack ?
We walk you through the execution of the attack, step by step, and demonstrate how we secure the 1.5 million DVT tokens from the Selfie Pool.
? Victory Achieved ?
Join us as we celebrate our successful exploit of the governance mechanism, securing all 1.5 million DVT tokens from the Selfie Pool! Congratulations on conquering the 6th Damn Vulnerable DeFi Challenge! ?
Timestamps
00:00 Intro
00:25 Selfie Challenge Overview
01: 00 Smart Contract Overview
14:20 Test File Overview
15:20 Planning Our Solution
19:40 Implementing Our Exploit
30:00 Testing Our Exploit
Don't forget to like, subscribe, and share this video with your fellow blockchain enthusiasts. Stay tuned for more Web3 security adventures!
...
https://www.youtube.com/watch?v=_2RHyMMLR9A