I'm pleased to announce that my latest research project has been released for free to the public! It is a smart contract Capture the Flag platform on the Ropsten Testnet.
This competition contains a series of vulnerable smart contracts and Decentralized Apps (DApps) with real-life use cases, ranging from decentralized trust funds and open source lottery systems, to ICOs and automated royalty agreements. Each of these applications contain a vulnerability commonly found in Ethereum smart contracts. Participants can practice exploiting these bugs to steal fake crypto-currencies and win points on the public leaderboard.
This platform was designed from the start with decentralization in mind so that the interface is fully client-side with state managed by smart contracts running on the Ethereum Testnet Blockchain. This means that there are no back-end server components aside from a few static scripts hosted on Github Pages. All state is managed by the permission-less, decentralized network running the Ropsten Testnet Blockchain.
Official Announcement:
https://blog.securityinnovation.com/blockchain-ctf
Try it today!
https://blockchain-ctf.securityinnovation.com/#/