automation

2 articles
Sort: New Top Best
clear filter
0
vulnerability

A critical access control vulnerability was discovered in oasisDEX's MultiplyProxyActions contract where the recreateTrigger function performs an unsafe delegatecall assuming msg.sender is AutomationBot, allowing external attackers to execute arbitrary code in the command context and potentially access user vault funds or cause system denial of service. The researcher found the vulnerability had already been patched a month prior, highlighting the importance of verifying contract versions against live deployments.

oasisDEX MakerDAO Immunefi MultiplyProxyActions DSProxy DeFiSaver AutomationBot AutomationExecutor BuyCommand SellCommand BaseMPACommand
trust-security.xyz · Trust · 4 hours ago · details
0 4/10

A beginner-focused guide on using OWASP ZAP to automate web application security testing for bug bounty hunting.

OWASP ZAP Ghostyjoe
medium.com · ghostyjoe · 14 hours ago · details