Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Cracking the Crypto Apps Workshop

Cracking the Crypto Apps Workshop

Chandrasekar Kuppusamy

January 05, 2023
Tweet

More Decks by Chandrasekar Kuppusamy

Other Decks in Programming

Transcript

  1. 00 WHY AM I HERE ? To crack crypto apps

    Tech practices Ease of development @ Frontier
  2. WalletConnect is the web3 standard to connect blockchain wallets to

    dapps. Wallet Connect Supports mobile (android, iOS) and Web. Any App, Any Wallet, Any Chain (More chain to be supported). 1 2 Reference : https://walletconnect.com/
  3. Under the hood (Wrapper)? Wallet Connect wrapper is injected (Typically

    an object instantiation) 1 Wrapper lists out the supported app which are installed on the device automatically. 2 Handles Wallet Connect sessions (connect, disconnect, re-connect, etc). 3
  4. Wallet Connect supported apps opens via Deeplink. 1 Upon approval,

    the app navigates back to the previous screen 2 Under the hood (Wrapper)?
  5. Receives callback with address as params Under the hood (Wrapper)?

    Got hold of address and rest is the history :)
  6. Multi-chain Integrations Multi-chain wallets can be created or imported using

    Frontier app 1 However wallet connect or tracking any wallet is also possible 2
  7. 
 Use this QR code to download the App 


    
 Rules: 
 1. Submission before 27th March - 2 PM 
 2. To claim the bounty, bugs must be original and previously unreported. If two or more people submit the same bug, the bounty will go to the researcher who submitted their report first. If you disclose the bug publicly before a fix is released or try to exploit it, you won't be eligible for the bounty. 
 3. The bugs should be really a blocker and minor UI/UX issues are not accepted as part of this program. 
 
 Please share the bugs with details (Screenshots, Video demo, and steps to reproduce along with the description of the issue) 
 
 
 
 Email: [email protected] 
 
 BUG BOUNTY
  8. BOUNTY Find a major flaw in the Frontier app and

    win a chance to get 2000 USDT (2 bounties). 
 
 Rules: 
 
 1. Submission before 27th March - 2 PM 
 2. To claim the bounty, bugs must be original and previously unreported. If two or more people submit the same bug, the bounty will go to the researcher who submitted their report first. If you disclose the bug publicly before a fix is released or try to exploit it, you won't be eligible for the bounty. 
 3. The bugs should be really a blogger and minor UI/UX issues are not accepted as part of this program. 
 
 Please share the bugs with details (Screenshots, Video demo, and steps to reproduce along with the description the issue) 
 
 
 
 Email: [email protected]