The attack playbook is a compendium of relevant hacks, scams, exploits, and general cyber-attacks that occur on Web3 protocols. We have generalized these events, whether it be cyber or real-world attacks, to be specified as attacks or "de-adversarial attacks", regardless of architectural nature. An "attack" is a general cybersecurity term to describe an event of a breach on a digital product or platform.
Adversarial attacks on ML models such as BERT, GRU, ERNIE, LSTM, RoBERTa, RNN, DNN, GPT-3+, and more are the inspiration for this framework.
"De-adversarial" attacks are deployed on blockchain-based protocols and products with centralized characteristics or partial-full decentralized architecture, these include cryptocurrencies, NFTs, DeFi protocols, and digital assets. Some of the most gruesome attacks are deployed on smart contracts.
Here are some Ethereum smart contract best practices: resources.
The "DYOR" model incentivizes users to research relevant risk factors as they invest. We hope that this attack playbook informs users of the risk landscape associated with Web3. Inevitable headaches are the product of information overload that comes from learning about the attacks that occur on digital assets while also learning about the BASICS of the space.
Types of digital assets explored in our Rektify Exploratory Attack Library(REAL):
- Bitcoin
- Cryptocurrencies
- DeFi tokens
- NFTs
- Digital Land
- NFT Gaming
- Metaverse tokens
Running DeFi dichotomy from Rektify AI:
"All DeFi tokens are cryptocurrencies, but not all cryptocurrencies are DeFi tokens."
Definitions:
- What is Bitcoin?
Bitcoin is a peer-to-peer digital currency system that allows for global payments. Bitcoin was launched by anonymous developer, Satoshi Nakamoto in 2008.
- What are cryptocurrencies?
Any digital currency whose transactions are stored on a blockchain and is not Bitcoin. Cryptocurrencies are digital tokens that represent value on the blockchain:
Token Types | ||
---|---|---|
Payment Tokens | Contract Tokens | Currency Tokens |
Brand Tokens | Non-fungible Tokens | Asset Tokens |
Metaverse Tokens | Platform Tokens | Utility Tokens |
Meme coins | Stablecoins | Security Tokens |
- What is DeFi?
DeFi is decentralized finance, an industry created by the collection of traditional finance services that are decentralized using DApps (decentralized applications).
- What's an NFT?
An NFT is a "non-fungible" token, a digital asset that is unique in its existence and stored on a blockchain. NFTs can be considered digital art, digital land, or any item digitized and minted on a blockchain such as Ethereum, Polygon, Celo, and more.
- What is Digital Land?
Digital lands are virtual plots of land sold in the metaverse for gaming, investing, projects and other purposes. Top Digital Land Platforms:
- Sandbox
- Spatial
- Cryptovoxels
- Decentraland
- ULAND
- OVR
- SuperWorld
- Next Earth
- Pavia
- What is the Metaverse?
Virtual world epicenters where avatars can meet up, play games, collaborate, socialize, and more.