了解和学习智能合约黑客
http://capturetheether.com/http://ethernaut.openzeppelin.com/http://cryptozombies.io/http://dappuniversity.com/https://damnvulnerabledefi.xyz/http://github.com/blockthreat/blocksec-ctfshttp://w3bs3c.com/abouthttps://useweb3.xyz/code-challengeshttp://speedrunethereum.com/https://based.builders/https://eth.build/http://github.com/fvictorio/evm-puzzleshttp://github.com/daltyboy11/more-evm-puzzleshttps://cryptohack.org/https://etherhack.positive.com/https://blockchain-ctf.securityinnovation.com/#/https://ciphershastra.com/https://www.defihack.xyz/https://github.com/blockthreat/blocksec-ctfs
跟随大师
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
DeFi 路线图
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md实践操作
使用我的特别纲要中的几乎所有内容https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20研究https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/另外,您需要研究审计清单:http://t.me/officer_cia/177这些课程http://twitter.com/0xBlasco/status/1500455598684618753区块链安全框架https://t.me/officer_cia/232Tokenomics 模拟工具http://t.me/officer_cia/69并了解它(资源)https://t.me/officer_cia/89speedrunethereum.com 或https://cryptozombies.io/,捕获以太或http://ethernaut.openzeppelin.com/仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
项目的内部安全
https://docs.google.com/document/d/1-_0Wlwch_vtkPM4F-SdEXLjQYaYT7KoPlU2rjt7tkLQ/edit视频
https://youtu.be/gyMwXuJrbJQ学习主动防御技术
https://smartcontractresearch.org/t/mitigations-against-flash-loan-enabled-attacks/615和https://arxiv.org/abs/2003.03810https://smartcontractresearch.org/t/from-zapper-post-mortem-to-using-front-run-in-project-defense-theory-post/545Tenderly.co警报 - https://officercia.medium.com/tenderly-app-a-swiss-pocketknife-for-the-web3-developer-89bb904bee46https://github.com/pr0toshi/rateLimithttps://github.com/Rari-Capital/solcurity研究https://medium.com/immunefi/hacking-the-blockchain-an-ultimate-guide-4f34b33c6e8b和https://wufflz.notion.site/Blockchain-security-guide-b26aec3d920e414d8a354618d3e36eb4https://link.medium.com/NBANM4gOirb你也可以研究https://github.com/0xsanny/solsec所有审计/安全工具- https://telegra.ph/ETHSec-Tools-02-13,github.com/nascentxyz/simple-security-toolkit在此处查看资源https://t.me/cryptooffensiveOpSec原则- https://graph.org/Key-principles-of-storing-crypto-cold-wallet-attacks-defense-methods-best-practices--Bonus-04-23 github.com/undergroundwires/privacy.sexy,web.archive .org/web/20220302223645/https://anonymousplanet.org/guide.html密码取证/研究:https://t.me/officer_cia/236 mirror.xyz/officercia.eth/BFzv17UwH6QG4q711NAljtSiP8eKR17daLjTdmAgbHw所有 TX 分析工具列表https://graph.org/TX-Analysis-tools-04-19蜜罐检测工具https://graph.org/A-Short-List-of-the-Rug-Checker-Tools-04-09Web2 和 Web3 中存在的错误和漏洞 - https://www.theseus.fi/bitstream/handle/10024/170724/Aboualy_Mahmoud_bachelor_thesis.pdf关于 MEV - https://t.me/officer_cia/146请务必研究https://defieducation.substack.com/p/how-to-read-smart-contracts-part?s=r和blog.trustlook.com/understand-evm-bytecode-part-1/以及这些网站的所有帖子作者https://start.me/p/QRg5ad/officercia - 仔细阅读我的 Awesome Blogs 部分和 Sec 部分(在右侧,就在 defi 地图树下方)https://telegra.ph/Article-08-08 - 前端安全NFT https://telegra.ph/NFT-security-01-28探索黑客案例https://newsletter.blockthreat.io研究https://github.com/emilianobonassi/security-toolkit和https://www.smartcontractresearch.org/t/research-summary-a-systematic-literature-review-of-blockchain-cyber-security/1299攻击向量 - https://github.com/sirhashalot/SCV-Listhttps://github.com/KadenZipfel/smart-contract-attack-vectors swcregistry.io研究框架https://secure.github.io/SCSVS/SCSVS_v1.1.pdf和https://github.com/securing/SCSVS阅读 Mudit Gupta、Immunefi 和 BlockSec 团队在 Medium 上发表的帖子,以及https://twitter.com/officer_cia/status/1519371437068505089所有 4 个主题,https://arxiv.org /pdf/2106.10740.pdf和https://arxiv.org/pdf/2109.06836.pdf使用FoundryDefi黑客事件https://github.com/SunWeb3Sec/DeFiHackLabs
再看看
https://cmichel.io/how-to-become-a-smart-contract-auditorhttps://devansh.xyz/blockchain-security/2021/09/17/genesis-0x01.htmlhttps://www.notonlyowner.com/learn/intro-security-hacking-smart-contracts-ethereumhttps://theauditorbook.com/
再次练习
威胁建模
https://arxiv.org/pdf/2106.10740.pdf用户端攻击
https://arxiv.org/pdf/2109.06836.pdf 元宇宙安全
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-190
Solidity 中的错误
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-191
DApp 前端安全。
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-192
从 Web 应用程序中学习最佳实践以避免分散应用程序中的类似安全漏洞。
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-193
关于 Oracle 攻击的更多信息
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-194
UniV2 Oracle 攻击模拟器
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-195
安全最小可行计划
https://docs.google.com/document/d/1-_0Wlwch_vtkPM4F-SdEXLjQYaYT7KoPlU2rjt7tkLQ/edit奖金
所有已知的智能合约攻击向量
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-197
NFT 安全
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-198
所有现有的 ETH 安全工具
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31https://gitcoin.co/grants/3150/defi-web3-developer-roadmaphttp://start.me/p/QRg5ad/officerciahttps://t.me/officer_cia/269https://telegra.ph/Crypto-Telegram-Channels--Chats-04-199
Web3 网络钓鱼
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md0MetaMask 针对性攻击
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md1Web3 时间线中的所有黑客攻击和安全事件。
https://newsletter.blockthreat.io
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md2跨链桥攻击
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md3数据整理
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md4所有智能合约安全工具:
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md5视频学习
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md6区块链去中心化应用黑客课程
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md7在 web3 中工作
工作:
| 阅读:https://web3.smsunarto.com
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md8赠款和 DAO:
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md9Web3漏洞赏金平台:
使用我的特别纲要中的几乎所有内容https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20研究https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/另外,您需要研究审计清单:http://t.me/officer_cia/177这些课程http://twitter.com/0xBlasco/status/1500455598684618753区块链安全框架https://t.me/officer_cia/232Tokenomics 模拟工具http://t.me/officer_cia/69并了解它(资源)https://t.me/officer_cia/89speedrunethereum.com 或https://cryptozombies.io/,捕获以太或http://ethernaut.openzeppelin.com/仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security0
ETHSecurity社区
使用我的特别纲要中的几乎所有内容https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20研究https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/另外,您需要研究审计清单:http://t.me/officer_cia/177这些课程http://twitter.com/0xBlasco/status/1500455598684618753区块链安全框架https://t.me/officer_cia/232Tokenomics 模拟工具http://t.me/officer_cia/69并了解它(资源)https://t.me/officer_cia/89speedrunethereum.com 或https://cryptozombies.io/,捕获以太或http://ethernaut.openzeppelin.com/仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security1
智能合约审计清单推荐
使用我的特别纲要中的几乎所有内容https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20研究https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/另外,您需要研究审计清单:http://t.me/officer_cia/177这些课程http://twitter.com/0xBlasco/status/1500455598684618753区块链安全框架https://t.me/officer_cia/232Tokenomics 模拟工具http://t.me/officer_cia/69并了解它(资源)https://t.me/officer_cia/89speedrunethereum.com 或https://cryptozombies.io/,捕获以太或http://ethernaut.openzeppelin.com/仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security2
审计必读
使用我的特别纲要中的几乎所有内容https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20研究https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/另外,您需要研究审计清单:http://t.me/officer_cia/177这些课程http://twitter.com/0xBlasco/status/1500455598684618753区块链安全框架https://t.me/officer_cia/232Tokenomics 模拟工具http://t.me/officer_cia/69并了解它(资源)https://t.me/officer_cia/89speedrunethereum.com 或https://cryptozombies.io/,捕获以太或http://ethernaut.openzeppelin.com/仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security3
推荐阅读:

推荐站内搜索:最好用的开发软件、免费开源系统、渗透测试工具云盘下载、最新渗透测试资料、最新黑客工具下载……



 
		 
		 
		 
		

还没有评论,来说两句吧...