Skip to content
← LibraryTechnique entry
W3-DELEGATECALLPrivilege Escalation

Unsafe delegatecall

Contract delegatecalls user-supplied implementation address — attacker library writes the proxy's owner / admin slot.

§ Where this technique fits

W3-DELEGATECALL is catalogued under the Privilege Escalation tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.