lior

Results 11 issues of lior

### Component Forge ### Describe the feature you would like While invariant testing, filters can be used to establish a boundary in order to help the engine converge. The `targetSelectors()`...

A-fuzzing
T-feature
Cmd-forge-test
C-forge

### Component Forge ### Describe the feature you would like Currently the invariant testing goes blind while running. It would be nice to have a dynamic progress on-run like Echidna...

T-feature
Cmd-forge-test
C-forge

Feature: Pool and Pair creation under utils folder Overview: This utility has to allow users to quickly instantiate and create DEX pairs to enable broader test scenarios that depend on...

enhancement

On Apr 16, 2022 an attacker stole $76MM from Skyward Finance. Attack Overview Total Lost: $76MM Key Info Sources Writeup: https://rekt.news/beanstalk-rekt/ Twitter: https://twitter.com/kelvinfichter/status/1515735717305008138 Twitter: https://twitter.com/peckshield/status/1515692144190648322 Principle: Business Logic - Governance...

to-reproduce

On Sept 20, 2022 an attacker stole 160MM USD in OP tokens from Wintermute. Attack Overview Total Lost: 160MM USD (20 MM OP) Key Info Sources Writeup: https://rekt.news/wintermute-rekt-2/ Reproduction: https://github.com/SunWeb3Sec/DeFiHackLabs#20220608-optimism---wintermute...

to-reproduce
waiting-for-foundry-feature

For instance a delta of `100 wei` is shown as one tenth of ether (`0.1`)

bug

On Nov 2, 2021 an attacker stole 1.1MM in NEAR tokens from Skyward Finance. Attack Overview Total Lost: 3.2MM USD (1.1MM NEAR) // Key Info Sources Writeup: https://rekt.news/skyward-rekt/ Principle: Business...

to-reproduce

On Apr 28, 2022 an attacker stole ~13MM from Deus DAO. Attack Overview Total Lost: ~13MM Key Info Sources Writeup: https://rekt.news/deus-dao-rekt-2/ Twitter: https://twitter.com/peckshield/status/1519533378529562624 Principle: Business Logic - Flashloan, on-chain and...

to-reproduce

Currently the `.gitignore` file of the project does not include the broadly used `.env` across the majority of projects. Users might be unaware of this and push sensitive information potentially...

## Rationale The following PR shows how the Tornado Cash attack would have succeeded even if the minions don't approve and lock zero torn when setting up the accounts. ##...