122 lines
21 KiB
Plaintext
122 lines
21 KiB
Plaintext
[38;5;12m [39m[38;2;255;187;0m[1m[4mAwesome EVM Security [0m[38;5;14m[1m[4m![0m[38;2;255;187;0m[1m[4mAwesome[0m[38;5;14m[1m[4m (https://awesome.re/badge.svg)[0m[38;2;255;187;0m[1m[4m (https://awesome.re)[0m
|
||
|
||
[38;5;14m[1m![0m[38;5;12mAwesome EVM Security[39m[38;5;14m[1m (awesome-evm-security.png)[0m[38;5;12m (https://github.com/kareniel/awesome-evm-security#readme)[39m
|
||
|
||
[38;5;14m[1mEVM[0m[38;5;12m (https://ethereum.org/en/developers/docs/evm/) stands for "Ethereum Virtual Machine". The EVM powers the Ethereum mainnet, but also Layer 2 protocols, sidechains, and EVM-compatible chains.[39m
|
||
|
||
[38;5;12mThis list is an overview of the EVM ecosystem from an information security management perspective.[39m
|
||
|
||
[38;2;255;187;0m[4mContents[0m
|
||
|
||
[38;5;12m- [39m[38;5;14m[1mGuides[0m[38;5;12m (#guides)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mGovernance[0m[38;5;12m (#governance)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mArchitecture[0m[38;5;12m (#architecture)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mStandards[0m[38;5;12m (#standards)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSystem Assets[0m[38;5;12m (#system-assets)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mThreats[0m[38;5;12m (#threats)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mVulnerabilities[0m[38;5;12m (#vulnerabilities)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mControls[0m[38;5;12m (#controls)[39m
|
||
[38;5;12m- [39m[38;5;14m[1mEcosystem[0m[38;5;12m (#ecosystem)[39m
|
||
|
||
[38;2;255;187;0m[4mGuides[0m
|
||
[38;5;12m- [39m[38;5;14m[1mCryptoSec.info[0m[38;5;12m (https://cryptosec.info/) - Information to help beginners learn how to protect their funds against hackers and scammers.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSimplified Roadmap for Blockchain Security[0m[38;5;12m (https://devansh.xyz/blockchain-security/2021/09/17/genesis-0x01.html) - Covers all rudimentary topics that one needs to know in order to get into the field of Blockchain Security.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mHow to become a smart contract auditor[0m[38;5;12m (https://cmichel.io/how-to-become-a-smart-contract-auditor/) - Frequently asked questions that are related to auditing and auditors can get their first job.[39m
|
||
|
||
[38;2;255;187;0m[4mGovernance[0m
|
||
[38;5;12m- [39m[38;5;14m[1mA beginner's guide to DAOs[0m[38;5;12m (https://linda.mirror.xyz/Vh8K4leCGEO06_qSGx-vS5lvgUqhqkCz9ut81WwCP2o) - Gives a high level overview of what DAOs are, why they are interesting and some of their use cases.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mDeep DAO[0m[38;5;12m (https://deepdao.io/#/deepdao/dashboard) - Lists, ranks and analyzes top DAOs across multiple metrics.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSAFT Agreements[0m[38;5;12m (https://saftproject.com/) - A commercial instrument used to convey rights in tokens prior to the development of the tokens' functionality.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mVoting Options in DAOs[0m[38;5;12m (https://medium.com/daostack/voting-options-in-daos-b86e5c69a3e3) - Voting Options in DAOs.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mThe Wyoming DAO bill[0m[38;5;12m (https://twitter.com/awrigh01/status/1369328856260354051) - A thread about Wyoming DAOs .[39m
|
||
[38;5;12m- [39m[38;5;14m[1mIt Takes a Cryptonetwork[0m[38;5;12m (https://medium.com/primedao/it-takes-a-cryptonetwork-2ae9ab541c17) - Prime's Strategy for DAO to DAO Relations.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mDAOs, Democracy and Governance[0m[38;5;12m (https://merkle.com/papers/DAOdemocracyDraft.pdf) - A paper by Ralph Merkle about DAOs.[39m
|
||
|
||
[38;2;255;187;0m[4mArchitecture[0m
|
||
[38;5;12m- [39m[38;5;14m[1mShelling Out: The Origins of Money[0m[38;5;12m (https://nakamotoinstitute.org/shelling-out/) - Illustrates the value of collectibles in reducing social transaction costs.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mFoundations of Cryptoeconomic Systems[0m[38;5;12m (https://epub.wu.ac.at/7309/8/Foundations%20of%20Cryptoeconomic%20Systems.pdf) - This paper explores why the term[39m
|
||
[38;5;12m"cryptoeconomics" is context dependent and proposes complementary micro, meso and macro definitions of the term.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mTowards a Practice of Token Engineering[0m[38;5;12m (https://blog.oceanprotocol.com/towards-a-practice-of-token-engineering-b02feeeff7ca) - How do we design tokenized ecosystems, their incentives and how do we analyze or verify them?[39m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mA[0m[38;5;14m[1m [0m[38;5;14m[1mCrash[0m[38;5;14m[1m [0m[38;5;14m[1mCourse[0m[38;5;14m[1m [0m[38;5;14m[1min[0m[38;5;14m[1m [0m[38;5;14m[1mMechanism[0m[38;5;14m[1m [0m[38;5;14m[1mDesign[0m[38;5;14m[1m [0m[38;5;14m[1mfor[0m[38;5;14m[1m [0m[38;5;14m[1mCryptoeconomic[0m[38;5;14m[1m [0m[38;5;14m[1mApplications[0m[38;5;12m [39m[38;5;12m(https://medium.com/blockchannel/a-crash-course-in-mechanism-design-for-cryptoeconomic-applications-a9f06ab6a976)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mIntroduces[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mbasic[39m[38;5;12m [39m[38;5;12mconcepts[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mmechanism[39m[38;5;12m [39m[38;5;12mdesign,[39m[38;5;12m [39m
|
||
[38;5;12mand[39m[38;5;12m [39m[38;5;12mgives[39m[38;5;12m [39m[38;5;12ma[39m[38;5;12m [39m[38;5;12mtaste[39m[38;5;12m [39m[38;5;12mfor[39m[38;5;12m [39m[38;5;12mtheir[39m[38;5;12m [39m[38;5;12musefulness[39m[38;5;12m [39m[38;5;12min[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mcryptocurrency[39m[38;5;12m [39m[38;5;12mworld.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mWTF Is QF[0m[38;5;12m (https://wtfisqf.com/?grant=&grant=&grant=&grant=&match=1000) - A simple explanation of quadratic funding.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mBonding Curves Explained[0m[38;5;12m (https://yos.io/2018/11/10/bonding-curves) - What bonding curves are and their potential applications.[39m
|
||
|
||
[38;2;255;187;0m[4mStandards[0m
|
||
[38;5;12m- [39m[38;5;14m[1mDeFi Safety[0m[38;5;12m (https://www.defisafety.com/) - Best practices security score reviews.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mDASP Top 10 of 2018[0m[38;5;12m (https://dasp.co/) - Decentralized Application Security Project Top 10 vulnerabilities.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mIVSCS[0m[38;5;12m (https://immunefi.com/severity-updated/) - Immunefi Vulnerability Severity Classification System.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSmart Contract Security Verification Standard[0m[38;5;12m (https://securing.github.io/SCSVS/) - A free 14-part checklist created to standardize the security of smart contracts for developers, architects, security reviewers and vendors.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSecureth guidelines[0m[38;5;12m (https://guidelines.secureth.org/) - Aid you in formulating your own software engineering process by giving a complete picture of all the different concerns and expectations in your software projects.[39m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mCryptoCurrency[0m[38;5;14m[1m [0m[38;5;14m[1mSecurity[0m[38;5;14m[1m [0m[38;5;14m[1mStandard[0m[38;5;14m[1m [0m[38;5;14m[1m(CCSS)[0m[38;5;12m [39m[38;5;12m(https://cryptoconsortium.github.io/CCSS/)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mA[39m[38;5;12m [39m[38;5;12mset[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mrequirements[39m[38;5;12m [39m[38;5;12mfor[39m[38;5;12m [39m[38;5;12mall[39m[38;5;12m [39m[38;5;12minformation[39m[38;5;12m [39m[38;5;12msystems[39m[38;5;12m [39m[38;5;12mthat[39m[38;5;12m [39m[38;5;12mmake[39m[38;5;12m [39m[38;5;12muse[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mcryptocurrencies,[39m[38;5;12m [39m[38;5;12mincluding[39m[38;5;12m [39m[38;5;12mexchanges,[39m[38;5;12m [39m[38;5;12mweb[39m[38;5;12m [39m[38;5;12mapplications,[39m[38;5;12m [39m[38;5;12mand[39m[38;5;12m [39m[38;5;12mcryptocurrency[39m[38;5;12m [39m
|
||
[38;5;12mstorage[39m[38;5;12m [39m[38;5;12msolutions.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mThe Solcurity Standard[0m[38;5;12m (https://github.com/Rari-Capital/solcurity) - Opinionated security and code quality standard for Solidity smart contracts.[39m
|
||
|
||
[38;2;255;187;0m[4mSystem Assets[0m
|
||
[38;5;12m- [39m[38;5;14m[1mSecurity Considerations in the Solidity documentation[0m[38;5;12m (https://docs.soliditylang.org/en/v0.8.6/security-considerations.html) - Lists some pitfalls and general security recommendations.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mEthereum 2.0 Specifications Security Audit Report[0m[38;5;12m (https://leastauthority.com/static/publications/LeastAuthority-Ethereum-2.0-Specifications-Audit-Report.pdf) - Security Audit Report of the Eth2.0 spec by Least Authority.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mGetting Deep Into EVM[0m[38;5;12m (https://hackernoon.com/getting-deep-into-evm-how-ethereum-works-backstage-ac7efa1f0015) - An Ultimate, In-depth Explanation of How EVM Works.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mEthereum EVM illustrated[0m[38;5;12m (https://takenobu-hs.github.io/downloads/ethereum_evm_illustrated.pdf) - Exploring some mental models and implementations.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mEthereum Blockspace: Who Gets What and Why[0m[38;5;12m (https://www.aniccaresearch.tech/blog/ethereum-blockspace-who-gets-what-and-why) - Ethereum blockspace market structure.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mWhat Is Uniswap and How Does It Work?[0m[38;5;12m (https://academy.binance.com/en/articles/what-is-uniswap-and-how-does-it-work) - What Uniswap is, how it works, and how you can swap tokens on it simply with an Ethereum wallet.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mScaling EVM (Ethereum Virtual Machine)[0m[38;5;12m (https://capitalgram.com/posts/scaling-evm/) - How fast and far can the EVM based blockchain architecture still take us.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mL2Beat[0m[38;5;12m (https://l2beat.com/) - Transparent and verifiable insights into emerging layer two (L2) technologies.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mThe Non-Fungible Token Bible[0m[38;5;12m (https://opensea.io/blog/guides/non-fungible-tokens) - Everything you need to know about NFTs.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mKEVM[0m[38;5;12m (https://github.com/kframework/evm-semantics) - A formal model of the EVM in the K framework.[39m
|
||
|
||
[38;2;255;187;0m[4mThreats[0m
|
||
[38;5;12m- [39m[38;5;14m[1mBlockchain Graveyard[0m[38;5;12m (https://magoo.github.io/Blockchain-Graveyard/) - A list of all massive security breaches or thefts involving blockchains.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mList of Bitcoin Heists[0m[38;5;12m (https://bitcointalk.org/index.php?topic=576337) - Research on prior Bitcoin-related thefts.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mBlockchain Threat Intelligence[0m[38;5;12m (https://www.blockthreat.io/) - The latest in blockchain, DeFi and cryptocurrency threat intelligence, vulnerabilities, security tools, and events.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mRekt News[0m[38;5;12m (https://rekt.news/) - Investigative journalism, creative commentary, and incident analysis.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mDeFiYield's REKT db[0m[38;5;12m (https://defiyield.app/rekt-database) - Database of Crypto Hacks, Exploit, Scam.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mCryptoScamDB[0m[38;5;12m (https://cryptoscamdb.org/scams) - Keeping track of cryptocurrency scams in an open-source database.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mMudit Gupta's Twitter threads[0m[38;5;12m (https://mudit.blog/twitter-threads/) - Early analysis and educational content on Twitter.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mFlash Boys 2.0 Paper[0m[38;5;12m (https://ieeexplore.ieee.org/document/9152675) - Frontrunning in Decentralized Exchanges, Miner Extractable Value, and Consensus Instability.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mMEV-explore[0m[38;5;12m (https://explore.flashbots.net/) - Help the community understand and quantify the significance of "Dark Forest activities" and their impact on the Ethereum network.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mFlashloan monitor[0m[38;5;12m (https://monitor.blocksecteam.com/) - Dashboard that helps you monitor flashloan transactions.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mKnown Attacks[0m[38;5;12m (https://consensys.github.io/smart-contract-best-practices/known_attacks/) - A list of known attacks which you should be aware of, from Consensys.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSolidity Security[0m[38;5;12m (https://blog.sigmaprime.io/solidity-security.html) - Comprehensive list of known attack vectors and common anti-patterns.[39m
|
||
|
||
[38;2;255;187;0m[4mVulnerabilities[0m
|
||
[38;5;12m- [39m[38;5;14m[1mSWC Registry[0m[38;5;12m (https://swcregistry.io/) - Smart Contract Weakness Classification and Test Cases.[39m
|
||
[38;5;12m- [39m[38;5;14m[1m246 Findings[0m[38;5;12m (https://blog.trailofbits.com/2019/08/08/246-findings-from-our-smart-contract-audits-an-executive-summary/) - 246 Findings From Trail of Bits Smart Contract Audits.[39m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mA[0m[38;5;14m[1m [0m[38;5;14m[1mSurvey[0m[38;5;14m[1m [0m[38;5;14m[1mof[0m[38;5;14m[1m [0m[38;5;14m[1mSecurity[0m[38;5;14m[1m [0m[38;5;14m[1mVulnerabilities[0m[38;5;14m[1m [0m[38;5;14m[1min[0m[38;5;14m[1m [0m[38;5;14m[1mEthereum[0m[38;5;14m[1m [0m[38;5;14m[1mSmart[0m[38;5;14m[1m [0m[38;5;14m[1mContracts[0m[38;5;12m [39m[38;5;12m(https://arxiv.org/pdf/2105.06974.pdf)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mExplains[39m[38;5;12m [39m[38;5;12meight[39m[38;5;12m [39m[38;5;12mvulnerabilities[39m[38;5;12m [39m[38;5;12mthat[39m[38;5;12m [39m[38;5;12mare[39m[38;5;12m [39m[38;5;12mspecific[39m[38;5;12m [39m[38;5;12mto[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mapplication[39m[38;5;12m [39m[38;5;12mlevel[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mblockchain[39m[38;5;12m [39m[38;5;12mtechnology[39m[38;5;12m [39m[38;5;12mby[39m[38;5;12m [39m[38;5;12manalyzing[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mpast[39m[38;5;12m [39m
|
||
[38;5;12mexploitation[39m[38;5;12m [39m[38;5;12mcase[39m[38;5;12m [39m[38;5;12mscenarios[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mthese[39m[38;5;12m [39m[38;5;12msecurity[39m[38;5;12m [39m[38;5;12mvulnerabilities.[39m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mList[0m[38;5;14m[1m [0m[38;5;14m[1mof[0m[38;5;14m[1m [0m[38;5;14m[1mSecurity[0m[38;5;14m[1m [0m[38;5;14m[1mVulnerabilities[0m[38;5;12m [39m[38;5;12m(https://github.com/runtimeverification/verified-smart-contracts/wiki/List-of-Security-Vulnerabilities)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mA[39m[38;5;12m [39m[38;5;12mcomprehensive[39m[38;5;12m [39m[38;5;12mlist[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12mcommon[39m[38;5;12m [39m[38;5;12msmart[39m[38;5;12m [39m[38;5;12mcontract[39m[38;5;12m [39m[38;5;12msecurity[39m[38;5;12m [39m[38;5;12mvulnerabilities,[39m[38;5;12m [39m[38;5;12mcompiled[39m[38;5;12m [39m[38;5;12mfrom[39m[38;5;12m [39m[38;5;12mvarious[39m[38;5;12m [39m
|
||
[38;5;12msources.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mList of Known Bugs[0m[38;5;12m (https://docs.soliditylang.org/en/v0.8.1/bugs.html) - A JSON-formatted list of some of the known security-relevant bugs in the Solidity compiler.[39m
|
||
|
||
[38;2;255;187;0m[4mControls[0m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mSimple[0m[38;5;14m[1m [0m[38;5;14m[1mSecurity[0m[38;5;14m[1m [0m[38;5;14m[1mToolkit[0m[38;5;12m [39m[38;5;12m(https://github.com/nascentxyz/simple-security-toolkit)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mOpinionated[39m[38;5;12m [39m[38;5;12mrecommendations[39m[38;5;12m [39m[38;5;12mthat[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mteam[39m[38;5;12m [39m[38;5;12mat[39m[38;5;12m [39m[38;5;12mNascent[39m[38;5;12m [39m[38;5;12mfind[39m[38;5;12m [39m[38;5;12mto[39m[38;5;12m [39m[38;5;12mbe[39m[38;5;12m [39m[38;5;12mappropriate,[39m[38;5;12m [39m[38;5;12mparticularly[39m[38;5;12m [39m[38;5;12mfor[39m[38;5;12m [39m[38;5;12mteams[39m[38;5;12m [39m[38;5;12mdeveloping[39m[38;5;12m [39m[38;5;12mand[39m[38;5;12m [39m[38;5;12mmanaging[39m[38;5;12m [39m[38;5;12mearly[39m[38;5;12m [39m[38;5;12mversions[39m[38;5;12m [39m[38;5;12mof[39m[38;5;12m [39m[38;5;12ma[39m[38;5;12m [39m
|
||
[38;5;12mprotocol.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mGnosis Safe[0m[38;5;12m (https://docs.gnosis-safe.io) - Multi-sig. Require multiple team members to confirm every transaction in order to execute it, which helps prevent unauthorized access to company crypto.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mList of DeFi auditors[0m[38;5;12m (https://www.defisafety.com/auditors) - List of DeFi auditors maintained by DeFiSafety.[39m
|
||
[38;5;12m-[39m[38;5;12m [39m[38;5;14m[1mState[0m[38;5;14m[1m [0m[38;5;14m[1mof[0m[38;5;14m[1m [0m[38;5;14m[1mDeFi[0m[38;5;14m[1m [0m[38;5;14m[1mAudits[0m[38;5;12m [39m[38;5;12m(https://medium.com/conflux-network/the-overlooked-element-of-defi-adoption-e3b29829e3da)[39m[38;5;12m [39m[38;5;12m-[39m[38;5;12m [39m[38;5;12mArticle[39m[38;5;12m [39m[38;5;12mtaking[39m[38;5;12m [39m[38;5;12ma[39m[38;5;12m [39m[38;5;12mlook[39m[38;5;12m [39m[38;5;12mat[39m[38;5;12m [39m[38;5;12mthe[39m[38;5;12m [39m[38;5;12mauditing[39m[38;5;12m [39m[38;5;12mspace[39m[38;5;12m [39m[38;5;12mand[39m[38;5;12m [39m[38;5;12mits[39m[38;5;12m [39m[38;5;12mimportance[39m[38;5;12m [39m[38;5;12min[39m[38;5;12m [39m[38;5;12monboarding[39m[38;5;12m [39m[38;5;12musers[39m[38;5;12m [39m[38;5;12mby[39m[38;5;12m [39m[38;5;12mproperly[39m[38;5;12m [39m[38;5;12msecuring[39m[38;5;12m [39m[38;5;12mnew[39m[38;5;12m [39m[38;5;12mDeFi[39m[38;5;12m [39m
|
||
[38;5;12mprotocols.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mBuilding Secure Contracts[0m[38;5;12m (https://github.com/crytic/building-secure-contracts/) - Trail of Bits' guidelines and best practices on how to write secure smart contracts.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSolidity Patterns[0m[38;5;12m (https://fravoll.github.io/solidity-patterns/) - A compilation of patterns and best practices for the smart contract programming language Solidity.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSecurity Pattern for Ethereum and Solidity[0m[38;5;12m (https://docs.google.com/spreadsheets/d/1PF4QZudW6Z7EV4hqQfwPo3A43AVqPrsuzzzey5yRYcs/edit#gid=0) - Google Sheets Checklists.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSolidity Best Practices for Smart Contract Security[0m[38;5;12m (https://consensys.net/blog/developers/solidity-best-practices-for-smart-contract-security/) - Pro tips from Consensys to ensure your Ethereum smart contracts are fortified.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mCERtified[0m[38;5;12m (https://cer.live/) - Top 100 exchanges by Cybersecurity rating.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mSmart Contract Security Registry[0m[38;5;12m (https://github.com/ethereum-lists/contracts) - An effort to identify deployed contracts instances given their chain and address, by listing the project they belong to.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mForta[0m[38;5;12m (https://docs.forta.network/) - Community-based runtime security network for smart contracts.[39m
|
||
|
||
[38;2;255;187;0m[4mEcosystem[0m
|
||
[38;5;12m- [39m[38;5;14m[1mPeople to follow on Twitter[0m[38;5;12m (https://twitter.com/i/lists/1453086258436128770) - Twitter list to an overview of the web3 ecosystem and security people.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mVideos to watch on YouTube[0m[38;5;12m (https://www.youtube.com/playlist?list=PLox242_JhiuEe64LzW1M8XpiQ2-N5bZsX) - YouTube playlist of web3 security videos.[39m
|
||
|
||
|
||
[38;2;255;187;0m[4mFootnotes[0m
|
||
|
||
[38;2;255;187;0m[4mSee Also[0m
|
||
|
||
[38;5;12mOther Awesome Lists:[39m
|
||
|
||
[38;5;12m- [39m[38;5;14m[1mAwesome BlockSec CTF[0m[38;5;12m (https://github.com/0xjeffsec/awesome-blocksec-ctf) - Blockchain security Capture the Flag (CTF) competitions.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mAwesome Buggy ERC20 Tokens[0m[38;5;12m (https://github.com/sec-bit/awesome-buggy-erc20-tokens) - Vulnerabilities in ERC20 Smart Contracts With Tokens Affected.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mAwesome Cryptoeconomics[0m[38;5;12m (https://github.com/jpantunes/awesome-cryptoeconomics) - Cryptoeconomic research and learning materials.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mAwesome Zero-Knowledge Proofs (ZKP)[0m[38;5;12m (https://github.com/matter-labs/awesome-zero-knowledge-proofs) - A curated list of awesome things related to learning Zero-Knowledge Proofs (ZKP).[39m
|
||
[38;5;12m- [39m[38;5;14m[1mOfficer CIA's Ultimate DeFi Research Base[0m[38;5;12m (https://github.com/OffcierCia/ultimate-defi-research-base) - Curated DeFI & Blockchain research papers and tools.[39m
|
||
[38;5;12m- [39m[38;5;14m[1mAwesome MEV resources[0m[38;5;12m (https://github.com/0xalpharush/awesome-MEV-resources)[39m
|