了解和学习智能合约黑客
http://capturetheether.com/
http://ethernaut.openzeppelin.com/
http://cryptozombies.io/
http://dappuniversity.com/
https://damnvulnerabledefi.xyz/
http://github.com/blockthreat/blocksec-ctfs
http://w3bs3c.com/about
https://useweb3.xyz/code-challenges
http://speedrunethereum.com/
https://based.builders/
https://eth.build/
http://github.com/fvictorio/evm-puzzles
http://github.com/daltyboy11/more-evm-puzzles
https://cryptohack.org/
https://etherhack.positive.com/
https://blockchain-ctf.securityinnovation.com/#/
https://ciphershastra.com/
https://www.defihack.xyz/
https://github.com/blockthreat/blocksec-ctfs
跟随大师
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
DeFi 路线图
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
实践操作
使用我的特别纲要中的几乎所有内容
https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20
研究
https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/
另外,您需要研究审计清单:
http://t.me/officer_cia/177
这些课程
http://twitter.com/0xBlasco/status/1500455598684618753
区块链安全框架
https://t.me/officer_cia/232
Tokenomics 模拟工具
http://t.me/officer_cia/69并了解它(资源)
https://t.me/officer_cia/89
speedrunethereum.com 或https://cryptozombies.io/,
捕获以太或http://ethernaut.openzeppelin.com/
仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
项目的内部安全
https://docs.google.com/document/d/1-_0Wlwch_vtkPM4F-SdEXLjQYaYT7KoPlU2rjt7tkLQ/edit
视频
https://youtu.be/gyMwXuJrbJQ
学习主动防御技术
https://smartcontractresearch.org/t/mitigations-against-flash-loan-enabled-attacks/615和https://arxiv.org/abs/2003.03810
https://smartcontractresearch.org/t/from-zapper-post-mortem-to-using-front-run-in-project-defense-theory-post/545
Tenderly.co警报 - https://officercia.medium.com/tenderly-app-a-swiss-pocketknife-for-the-web3-developer-89bb904bee46
https://github.com/pr0toshi/rateLimit
https://github.com/Rari-Capital/solcurity
研究https://medium.com/immunefi/hacking-the-blockchain-an-ultimate-guide-4f34b33c6e8b和https://wufflz.notion.site/Blockchain-security-guide-b26aec3d920e414d8a354618d3e36eb4
https://link.medium.com/NBANM4gOirb
你也可以研究https://github.com/0xsanny/solsec
所有审计/安全工具- https://telegra.ph/ETHSec-Tools-02-13,github.com/nascentxyz/simple-security-toolkit
在此处查看资源https://t.me/cryptooffensive
OpSec原则- https://graph.org/Key-principles-of-storing-crypto-cold-wallet-attacks-defense-methods-best-practices--Bonus-04-23 github.com/undergroundwires/privacy.sexy,web.archive .org/web/20220302223645/https://anonymousplanet.org/guide.html
密码取证/研究:https://t.me/officer_cia/236 mirror.xyz/officercia.eth/BFzv17UwH6QG4q711NAljtSiP8eKR17daLjTdmAgbHw
所有 TX 分析工具列表https://graph.org/TX-Analysis-tools-04-19
蜜罐检测工具https://graph.org/A-Short-List-of-the-Rug-Checker-Tools-04-09
Web2 和 Web3 中存在的错误和漏洞 - https://www.theseus.fi/bitstream/handle/10024/170724/Aboualy_Mahmoud_bachelor_thesis.pdf
关于 MEV - https://t.me/officer_cia/146
请务必研究https://defieducation.substack.com/p/how-to-read-smart-contracts-part?s=r和blog.trustlook.com/understand-evm-bytecode-part-1/以及这些网站的所有帖子作者
https://start.me/p/QRg5ad/officercia - 仔细阅读我的 Awesome Blogs 部分和 Sec 部分(在右侧,就在 defi 地图树下方)
https://telegra.ph/Article-08-08 - 前端安全
NFT https://telegra.ph/NFT-security-01-28
探索黑客案例https://newsletter.blockthreat.io
研究https://github.com/emilianobonassi/security-toolkit和https://www.smartcontractresearch.org/t/research-summary-a-systematic-literature-review-of-blockchain-cyber-security/1299
攻击向量 - https://github.com/sirhashalot/SCV-List
https://github.com/KadenZipfel/smart-contract-attack-vectors swcregistry.io
研究框架https://secure.github.io/SCSVS/SCSVS_v1.1.pdf和https://github.com/securing/SCSVS
阅读 Mudit Gupta、Immunefi 和 BlockSec 团队在 Medium 上发表的帖子,以及https://twitter.com/officer_cia/status/1519371437068505089所有 4 个主题,https://arxiv.org /pdf/2106.10740.pdf和https://arxiv.org/pdf/2109.06836.pdf
使用FoundryDefi黑客事件
https://github.com/SunWeb3Sec/DeFiHackLabs
再看看
https://cmichel.io/how-to-become-a-smart-contract-auditor
https://devansh.xyz/blockchain-security/2021/09/17/genesis-0x01.html
https://www.notonlyowner.com/learn/intro-security-hacking-smart-contracts-ethereum
https://theauditorbook.com/
再次练习
威胁建模
https://arxiv.org/pdf/2106.10740.pdf
用户端攻击
https://arxiv.org/pdf/2109.06836.pdf
元宇宙安全
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
0
Solidity 中的错误
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
1
DApp 前端安全。
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
2
从 Web 应用程序中学习最佳实践以避免分散应用程序中的类似安全漏洞。
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
3
关于 Oracle 攻击的更多信息
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
4
UniV2 Oracle 攻击模拟器
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
5
安全最小可行计划
https://docs.google.com/document/d/1-_0Wlwch_vtkPM4F-SdEXLjQYaYT7KoPlU2rjt7tkLQ/edit
奖金
所有已知的智能合约攻击向量
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
7
NFT 安全
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
8
所有现有的 ETH 安全工具
http://telegra.ph/Pel-Ada-Del-Astra-Smart-Contract-Auditor-Pathway-05-07
http://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31
https://gitcoin.co/grants/3150/defi-web3-developer-roadmap
http://start.me/p/QRg5ad/officercia
https://t.me/officer_cia/269
https://telegra.ph/Crypto-Telegram-Channels--Chats-04-19
9
Web3 网络钓鱼
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
0
MetaMask 针对性攻击
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
1
Web3 时间线中的所有黑客攻击和安全事件。
https://newsletter.blockthreat.io
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
2
跨链桥攻击
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
3
数据整理
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
4
所有智能合约安全工具:
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
5
视频学习
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
6
区块链去中心化应用黑客课程
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
7
在 web3 中工作
工作:
| 阅读:https://web3.smsunarto.com
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
8
赠款和 DAO:
https://github.com/OffcierCia/DeFi-Developer-Road-Map/blob/main/translations/README_cn.md
9
Web3漏洞赏金平台:
使用我的特别纲要中的几乎所有内容
https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20
研究
https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/
另外,您需要研究审计清单:
http://t.me/officer_cia/177
这些课程
http://twitter.com/0xBlasco/status/1500455598684618753
区块链安全框架
https://t.me/officer_cia/232
Tokenomics 模拟工具
http://t.me/officer_cia/69并了解它(资源)
https://t.me/officer_cia/89
speedrunethereum.com 或https://cryptozombies.io/,
捕获以太或http://ethernaut.openzeppelin.com/
仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
0
ETHSecurity社区
使用我的特别纲要中的几乎所有内容
https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20
研究
https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/
另外,您需要研究审计清单:
http://t.me/officer_cia/177
这些课程
http://twitter.com/0xBlasco/status/1500455598684618753
区块链安全框架
https://t.me/officer_cia/232
Tokenomics 模拟工具
http://t.me/officer_cia/69并了解它(资源)
https://t.me/officer_cia/89
speedrunethereum.com 或https://cryptozombies.io/,
捕获以太或http://ethernaut.openzeppelin.com/
仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
1
智能合约审计清单推荐
使用我的特别纲要中的几乎所有内容
https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20
研究
https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/
另外,您需要研究审计清单:
http://t.me/officer_cia/177
这些课程
http://twitter.com/0xBlasco/status/1500455598684618753
区块链安全框架
https://t.me/officer_cia/232
Tokenomics 模拟工具
http://t.me/officer_cia/69并了解它(资源)
https://t.me/officer_cia/89
speedrunethereum.com 或https://cryptozombies.io/,
捕获以太或http://ethernaut.openzeppelin.com/
仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
2
审计必读
使用我的特别纲要中的几乎所有内容
https://telegra.ph/All-known-smart-contract-side-and-user-side-attacks-and-vulnerabilities-in-Web30--DeFi-03-31和https://telegra.ph/Solidity-Catsheets-Pack-03-20
研究
https://quillaudits.substack.com/p/openseas-official-discord-compromised和http://rekt.news/
另外,您需要研究审计清单:
http://t.me/officer_cia/177
这些课程
http://twitter.com/0xBlasco/status/1500455598684618753
区块链安全框架
https://t.me/officer_cia/232
Tokenomics 模拟工具
http://t.me/officer_cia/69并了解它(资源)
https://t.me/officer_cia/89
speedrunethereum.com 或https://cryptozombies.io/,
捕获以太或http://ethernaut.openzeppelin.com/
仔细研究https://github.com/Rari-Capital/solcurity 和 https://cmichel.io/how-to-become-a-smart-contract-auditor和https://pentacle.xyz/projects/security
3
推荐阅读:
推荐站内搜索:最好用的开发软件、免费开源系统、渗透测试工具云盘下载、最新渗透测试资料、最新黑客工具下载……
还没有评论,来说两句吧...