{"repo":"cleanunicorn/karl","free":true,"listed":false,"github":"https://github.com/cleanunicorn/karl","clone":"git clone https://github.com/cleanunicorn/karl.git","description":"Monitor smart contracts deployed on blockchain and test against vulnerabilities with Mythril. It was presented at DEFCON 2019.","language":"Python","stars":322,"topics":["blockchain","ethereum","security","smt","symbolic-execution","defcon","defcon27"],"license":"MIT","category":"blockchain-web3","readme_excerpt":"Karl Obsolete, not maintained anymore, don't install it, don't use it, you were warned! A monitor for smart contracts that checks for security vulnerabilities. Video presentation DefCon 27 Install Get latest version of Karl. Install Ganache with npm if you want Karl to test the found vulnerabilities in a sandbox ( --sandbox=true , disabled by default), to reduce false positives. Description Karl will allow you to monitor a blockchain for vulnerable smart contracts that are being deployed. It connects to the blockchain, monitors for new blocks and runs mythril for every new smart contract deployed. The output can be displayed in the console, saved in files in a folder or POSTed to a URL. Output can be: - stdout just posting the results to standard output - folder create a file for each vulnerable contract in a folder - posturl POST the results to an http endpoint Help message Examples Running against the mainnet Running against ganache with stdout enabled Running against ganache with posturl enabled And it will send this to the listening service Running against the mainnet with folder output enabled Demo Running locally with a specially crafted vulnerable contract: Running on the main net using Infura: Troubleshooting OpenSSL If you get this error You must install the openssl source code libraries Ubuntu Credits This tool is inspired by Bernhard's initial prototyping and it heavily uses his project Myth.","default_branch":null,"files":null,"tree":[],"storefront":"/r/cleanunicorn","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cleanunicorn/karl/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}