Anatomist

56 posts

Anatomist banner
Anatomist

Anatomist

@th3anatomist

Solana RCE | 1st place @ Immunefi Ethereum Attackathon | DM for Private Web3 Security Audits

Taipei, Taiwan Katılım Ekim 2024
42 Takip Edilen855 Takipçiler
Sabitlenmiş Tweet
Anatomist
Anatomist@th3anatomist·
🥇 first place at the @Ethereum Attackathon! huge shoutout to @immunefi and everyone who made this comp legendary. we’ll be breaking down some of our most interesting findings next. Stay tuned👀
Immunefi@immunefi

The $1,500,000 USD @Ethereum Attackathon is finished, and the full results have been posted. $500,000 of the reward pool has been paid out! 🥇 @th3anatomist: $148,677 🥈 @robinrobin99020: $146,250 🥉 CertiK: $90,801 4️⃣ Franfran : $33,750 5️⃣ @blobismdev: $33,750 Check the link below for the full leaderboard and bug reports! 👇

English
6
6
102
11.8K
Anatomist
Anatomist@th3anatomist·
(7/7) Security is hard, especially when subtle changes happen underneath the hood. Keeping up with all the nuances exacts a heavy toll on developers. This is where experienced security auditors come in. Leave the security to us, so you can focus on shipping the next feature.
English
0
0
2
123
Anatomist
Anatomist@th3anatomist·
(6/7) The new clique-based analysis only targets non-atomicity involving hot potatoes and certain shared object usages. Other non-atomic patterns, like this call sequence (x.com/0x158_/status/…), are no longer disallowed. We reached out to Sui, confirmed the change is intentional, and flagged the outdated docs.
Killua | Move SR@0x158_

@th3anatomist correction , sequence= propose->validate->propose->execute->finalize.

English
1
0
2
204
Anatomist
Anatomist@th3anatomist·
@0x158_ Kinda This is actually where things get interesting We'll post the answer in a few days, stay tuned
English
0
0
1
31
Killua | Move SR
Killua | Move SR@0x158_·
@th3anatomist I guess second sequence is probably safer, as we don't hold a hot potato (until 'execute' is called), incase if there are any rules that prevent us from calling entry functions once a hot potato is acquired.
English
1
0
0
78
Anatomist
Anatomist@th3anatomist·
Can you spot what's exploitable here? Comment below and explain the bug! Not an easy one Hint: Great security auditors must understand blockchain internals at a deep level Not just taking the docs at face value #FindTheBug #Sui #SmartContracts #Web3
Anatomist tweet mediaAnatomist tweet media
English
3
0
9
3K
Anatomist
Anatomist@th3anatomist·
@0x158_ Yes! The second one works, the first one doesn't But can you explain why?
English
1
0
1
55
Anatomist
Anatomist@th3anatomist·
@rashmor_eth propose_strategy(1) will fail in this call sequence Try digging deeper!
English
0
0
0
91
rashmor
rashmor@rashmor_eth·
@th3anatomist but in reality those fuctions are still callable in ptb after validate, so attacker can drain treasury like this: propose_strategy(100) validate execute(receive 100) propose_strategy(1) finalize (return 1) profit 99
English
1
0
0
94
Anatomist
Anatomist@th3anatomist·
@0xnirlin Hoped you enjoyed :) We'll post more findings about SUI's consensus very soon!
English
1
0
1
107
Anatomist
Anatomist@th3anatomist·
@hexific This is true when hunting for bounties. In audits, however, we go beyond finding vulns. We dig deep into the codebase to achieve full coverage. Clients gain a much deeper understanding of their own code, knowing under what assumptions it works and in which edge cases it may break
English
0
0
2
1K
Hexific
Hexific@hexific·
@th3anatomist Awesome findings even with AI. The main focus is to find the vuln with whatever you use
English
1
0
2
1.2K
Anatomist
Anatomist@th3anatomist·
🚨 New record for AI vuln scanning 🚨 $400K bounty, found by our AI agent. Possibly the largest bounty credited to an AI agent. And this was just the prototype.
Anatomist tweet media
English
19
21
423
50.8K
Anatomist
Anatomist@th3anatomist·
@vince_lauro That's one major use of AI. But we discovered some edge cases where AI might perform better than humans
English
0
0
2
745
Vince Lauro
Vince Lauro@vince_lauro·
@th3anatomist This is exactly the kind of use case people underestimate. AI agents excel at repetitive, pattern-based work — scanning for vulnerabilities is a perfect fit. The human still designs the strategy. The agent does the grunt work 24/7.
English
1
0
1
981
the ViSaGe
the ViSaGe@HusselZach75195·
@th3anatomist Enjoy it, I've sidestepped AI and instead used mathematics to devise a way of ingesting a contract and finding every possible bug in it with mathematic certainty. I just finished the protoype of the interface that will peed up feeding it, as doing it manually via CLi was too much
English
2
0
2
1.4K
Anatomist
Anatomist@th3anatomist·
@sooyoon_eth Having deep, full understanding of the codebase is still an edge human auditors have. For us, we're using AI agents to cover different layers and dimensions of the security
English
0
0
3
1.3K
Soo Yoon | FailSafe Ecosystem
Soo Yoon | FailSafe Ecosystem@sooyoon_eth·
@th3anatomist 00k bounty found by AI? honestly impressive. but also means human pentesters need to level up fast. AI finding vulns is one thing - understanding business context + explaining risk is still human work (for now)
English
1
0
3
1.8K
Anatomist
Anatomist@th3anatomist·
@EvanKlein338226 It's a loss of availability vuln. From our testing, we'd say both are correct. It did find bugs that are very hard for humans to discover, and we're pushing the limits towards this direction
English
0
0
1
920
Evan Klein
Evan Klein@EvanKlein338226·
@th3anatomist This is wild. AI excels at pattern matching across massive codebases - exactly what access control auditing requires. What class of vuln was it? Curious if it's finding the logic bugs humans miss or just scaling existing techniques faster.
English
1
0
1
1.2K
Anatomist
Anatomist@th3anatomist·
@OthelloOcho We gave it a specific codebase and verified the findings, the rest are fully automated
English
0
0
1
964
othelloOcho
othelloOcho@OthelloOcho·
@th3anatomist Curious about the workflow, was this the agent scanning autonomously and flagging the vuln, or did a human point it at a specific codebase? If it's fully autonomous scanning that changes the math on bug bounties pretty drastically
English
1
0
1
1.2K
Anatomist
Anatomist@th3anatomist·
If you're shipping a protocol, DM, we'll get you secured.
English
0
0
7
4.5K