$25 million dollar DeFi exploit on Ethereum. How to not lose everything yield farming. Security.

3 years ago
30

Go to HEX.com right now. Seriously. $1.5 Billion dollar payout in ~20 days. It could change your life! Not your keys, not your coins. Billions have been lost to hacks, don't let it happen to you! Richard Heart explains how with Chris Blec and other blockchain and cryptocurrency experts! This was uploaded less than a day after it was shot.

Timestamps:
00:00 Introduction
01:26 Surviving DeFi: https://survivingdefi.substack.com/
01:51 Panelist Introductions / Setup
03:00 Harvest Finance Hack
05:57 Leverage Trading / Time-Weighted Averages
07:22 Flash Loans
08:24 Clash Of Ethics
09:27 Importance Of Audits
10:10 Certain Tests Don’t Catch Certain Failures
10:16 Admin Keys & Oracles / Counterparty Risk / 2017 Mania
10:27 Blame And Ethics / Design Flaws
14:06 Crypto Regulatory Status
15:33 US Securities Law / Farm Token
16:24 Fully-Audited, Complete Products
16:52 Gabriel Shapiro Tweet Thread:
https://twitter.com/lex_node/status/1321081481410859008
17:47 Consumer Protections / Reality Of Prosecutions
20:00 Market Manipulation: Legality & Prosecution-Worthiness
21:34 Bug Bounty Programs & Responsible Disclosure
22:54 Pseudo-Anonymity & Unregulated Markets - SushiSwap
23:41 Middlemen / Oracles
24:41 Harvest Hacker Returned $2.5M
25:03 Suspicion Of Developers - All Eyes On Devs
25:59 Admin Keys - High Attack Surface
26:37 Difficulty Of Writing Blockchain Financial Software
27:17 Bug Bounties - Sufficient Compensation
28:03 White-Hat Hackers
30:16 Who Lost The Money?
30:49 Harvest Finance Audits: Peckshield And Haechi Labs
32:01 24-Word Seed Phrase / Hardware Wallets / Multi-Sig / Testnets
33:07 MemeCoin / P3D Ponzi Scheme
34:32 Ethics Of Harvest Hack
35:47 Flash Loans
37:29 Miners Frontrunning Flash Loans
38:03 Public Fallout From DeFi Tragedies
40:38 FOMO Regardless Of Risk
41:02 Fixing Apathy / Discovering New Projects / New = Risky
42:38 Three Ways To Stop Scams / Record-Breaking BTC Transaction
46:03 Holding Teams Accountable
46:57 Can’t Save Degenerates
48:28 Resources & Scaling: Scammers vs. Honest People
49:29 Bitcoin Network / Importance Of Audits
50:03 Shedding Light On Risky Projects
52:11 DeFi Safety: https://defisafety.com
52:50 DeFi Watch: https://defiwatch.net
53:15 Tokenized Governance
53:35 Technical Votes Require Technical Opinions
54:01 Metamask / Proxy Wallets
54:22 Subjectivity Of Issue Priority - Admin Keys
55:10 Uniswap / Bancor / SushiSwap
56:29 Trustlessness Of UIs
59:46 Bad Design Patterns - Infinite Spending Permissions
01:01:45 Harvest Finance Hack: Ethical Obligations In DeFi
01:04:11 Ethics & Anonymity
01:05:05 Trading And Taking Others’ Money
01:06:06 Who Decides: Good Arb Or Bad Arb?
01:06:29 Code Is Law? / Self-Regulation
01:07:50 Turing’s Halting Problem / Audits / Bugs
01:08:34 Reduction vs. Perfection / Circuit-Breakers
01:09:22 Harvest Hack Was Coin Agnostic
01:09:40 Potential Regulation In DeFi?
01:11:21 BitTorrent vs. MPAA/RIAA
01:12:12 Stock Market Crash Of 1929 - US Securities Laws
01:13:04 Regulators And Open-Source Software
01:14:48 Centralized Middlemen / Counterparty Risk
01:15:34 Profits For Startups, Promises, Governance Tokens
01:16:40 Anonymous Developers / Bad Intentions
01:17:55 Appeal To Authority, Appeal To Popularity / Bernie Madoff
01:18:24 DeFi Starting From Centralization / Inefficiency Of Decentralization
01:20:34 Uniswap V2 / Lack Of Admin Keys / Sufficient Decentralization
01:22:14 GIving Locus Of Upgrade Control To Users
01:22:44 Complexity of DeFi / Compound Without Admin Keys?
01:24:22 Uniswap V1 Bugs / V2 Routing Optimization
01:25:00 Removing Trust From DeFi
01:26:05 Beware Of Unaudited, Unsafe, Bleeding-Edge Projects
01:26:24 DeFi Pulse Top 10 Projects - Risks
01:28:08 Admin Keys / Oracles / Phishing
01:28:38 User Interfaces
01:29:19 Code Is Law In DeFi
01:30:20 TWAP (Time-Weighted Average Price)
01:32:21 Final Thoughts / Code As Authority / Miner Extracted Value, Automated
01:34:49 Harvest Finance Recap
01:35:50 Conclusion

Loading comments...