awesome-evm-security
github.com/kareniel/awesome-evm-security ↗🕶 A high-level overview of the EVM security ecosystem
Use this list with your AI agent
Add the Context Awesome MCP server to Claude, Cursor, or any MCP client, then ask:
"Show me see also resources from awesome-evm-security"
Installation instructions →What's inside
Vulnerabilities
- 246 Findings
246 Findings From Trail of Bits Smart Contract Audits.
- A Survey of Security Vulnerabilities in Ethereum Smart Contracts
Explains eight vulnerabilities that are specific to the application level of blockchain technology by analyzing the past exploitation case scenarios of these security vulnerabilities.
- List of Known Bugs
A JSON-formatted list of some of the known security-relevant bugs in the Solidity compiler.
- List of Security Vulnerabilities
A comprehensive list of common smart contract security vulnerabilities, compiled from various sources.
- SWC Registry
Smart Contract Weakness Classification and Test Cases.
Governance
- A beginner's guide to DAOs
Gives a high level overview of what DAOs are, why they are interesting and some of their use cases.
- DAOs, Democracy and Governance
A paper by Ralph Merkle about DAOs.
- Deep DAO
Lists, ranks and analyzes top DAOs across multiple metrics.
- It Takes a Cryptonetwork
Prime's Strategy for DAO to DAO Relations.
- SAFT Agreements
A commercial instrument used to convey rights in tokens prior to the development of the tokens' functionality.
- The Wyoming DAO bill
A thread about Wyoming DAOs .
Architecture
- A Crash Course in Mechanism Design for Cryptoeconomic Applications
Introduces the basic concepts of mechanism design, and gives a taste for their usefulness in the cryptocurrency world.
- Bonding Curves Explained
What bonding curves are and their potential applications.
- Foundations of Cryptoeconomic Systems
This paper explores why the term "cryptoeconomics" is context dependent and proposes complementary micro, meso and macro definitions of the term.
- Shelling Out: The Origins of Money
Illustrates the value of collectibles in reducing social transaction costs.
- Towards a Practice of Token Engineering
How do we design tokenized ecosystems, their incentives and how do we analyze or verify them?
- WTF Is QF
A simple explanation of quadratic funding.
Footnotes
- Awesome BlockSec CTFSee Also
Blockchain security Capture the Flag (CTF) competitions.
- Awesome Buggy ERC20 TokensSee Also
Vulnerabilities in ERC20 Smart Contracts With Tokens Affected.
- Awesome CryptoeconomicsSee Also
Cryptoeconomic research and learning materials.
- Awesome MEV resourcesSee Also
- Awesome Zero-Knowledge Proofs (ZKP)See Also
A curated list of awesome things related to learning Zero-Knowledge Proofs (ZKP).
- Officer CIA's Ultimate DeFi Research BaseSee Also
Curated DeFI & Blockchain research papers and tools.
Threats
- Blockchain Graveyard
A list of all massive security breaches or thefts involving blockchains.
- Blockchain Threat Intelligence
The latest in blockchain, DeFi and cryptocurrency threat intelligence, vulnerabilities, security tools, and events.
- CryptoScamDB
Keeping track of cryptocurrency scams in an open-source database.
- DeFiYield's REKT db
Database of Crypto Hacks, Exploit, Scam.
- Flash Boys 2.0 Paper
Frontrunning in Decentralized Exchanges, Miner Extractable Value, and Consensus Instability.
- Flashloan monitor
Dashboard that helps you monitor flashloan transactions.
Controls
- Building Secure Contracts
Trail of Bits' guidelines and best practices on how to write secure smart contracts.
- CERtified
Top 100 exchanges by Cybersecurity rating.
- Forta
Community-based runtime security network for smart contracts.
- Gnosis Safe
Multi-sig. Require multiple team members to confirm every transaction in order to execute it, which helps prevent unauthorized access to company crypto.
- List of DeFi auditors
List of DeFi auditors maintained by DeFiSafety.
- Security Pattern for Ethereum and Solidity
Google Sheets Checklists.
Standards
- CryptoCurrency Security Standard (CCSS)
A set of requirements for all information systems that make use of cryptocurrencies, including exchanges, web applications, and cryptocurrency storage solutions.
- DASP Top 10 of 2018
Decentralized Application Security Project Top 10 vulnerabilities.
- DeFi Safety
Best practices security score reviews.
- IVSCS
Immunefi Vulnerability Severity Classification System.
- Secureth guidelines
Aid you in formulating your own software engineering process by giving a complete picture of all the different concerns and expectations in your software projects.
- Smart Contract Security Verification Standard
A free 14-part checklist created to standardize the security of smart contracts for developers, architects, security reviewers and vendors.
Guides
- CryptoSec.info
Information to help beginners learn how to protect their funds against hackers and scammers.
- How to become a smart contract auditor
Frequently asked questions that are related to auditing and auditors can get their first job.
- Simplified Roadmap for Blockchain Security
Covers all rudimentary topics that one needs to know in order to get into the field of Blockchain Security.
Showing a sample of 69 resources. View the full list on GitHub →