ReconDock By Kdairatchi
Go To ReconDock
MyRepo
MyRepo
  • Pastebin Services
  • Awesome Ai Talk
  • Bug Bounty Testing, Techniques, and Tools
  • Cybersources
  • Targets
  • Bug checklist
  • Bug Bounty Platforms
  • Awesome Bug Bounty Tips Awesome
    • CVE Exploits and PoC Collection
  • ============ Awesome Bugs
    • Awesome One-liner Bug Bounty
  • Awesome CS Courses
  • Awesome Cyber Co
  • Awesome Dev
  • Awesome Free Certs
  • Awesome Git
  • Awesome Github
  • Awesome Go
  • Awesome Interviews
  • Awesome Keys
  • Awesome Mac OpenSource
  • Awesome Mac
  • Awesome Python
    • Awesome Tool
  • Awesome-Selfhosted
    • Awesome Hacker Search Engines
  • Awesome Shell
  • Awesome Shodan Search Queries
  • Awesome Static Website Services Awesome
  • Awesome Vulnerable Applications
  • Awesome WAF
  • Awesome First PR Opportunities
  • Awesome-Bugbounty-Writeups
  • Awesome-web3-Security awesome
  • Bug-Bounty
  • CTF Tools
  • Awesome Blockchain Bug Bounty
  • Awesome Bug Bounty
  • awesome-design-systems
  • Awesome Google VRP Writeups
  • Web Scraping
  • awesome
  • bug-bounty-reference
  • the-book-of-secret-knowledge
  • APACHE
  • AWS
  • AZURE
  • CISCO
  • CLOUDFLARE
  • Cross Origin Resource Sharing (CORS)
  • CRLF Injection || HTTP Response Splitting
  • CSV Injection
  • Content Injection
  • CRLF Injection || HTTP Response Splitting
  • JENKINS
  • JIRA
  • LFI
  • OR
  • PostgreSQL Environment Variable Manipulation Vulnerability
  • RCE
  • Recon
  • SSRF
  • Proof OF Concept (POC): SharePoint Vulnerability Detection
  • Template Injection
  • WORDPRESS
  • XSLT Injection
  • XSS
  • XXE
  • Books
  • Firebase Subdomain Enumeration & PoC Testing
  • SQLI
  • Special Tools
  • Account Takeover
  • Authentication
  • Broken Link Hijacking
  • Business Logic Errors
  • Default Credentials
  • Email Spoofing
  • ExposedAPIkeys
  • ForgotPasswordFunctionality
  • JWT Vulnerabilities
  • OWASPTestingChecklist1
  • Tabnabbing
  • Web Cache Poisoning
  • Wordpress Endpoints to look
  • lfi_vulnerble_targets
  • (LFI)passwrd
  • LostSec
  • POCS
    • CVES
      • CVE-2021-36873
      • BreadcrumbsSQL_Injection_cve_2024
      • CVE-2024-0195
      • CVE-2024-29269 Exploit
  • 403-ByPass
  • Chat-bot_xss_payloads
  • burp
    • Match & Replace
    • Zap
  • cloudflare-waf-bypass
  • infosec
    • Customize the bash shell environments
    • automation
    • Website Ideas
  • 2FA bypass
  • Account Takeover
  • OWASP Web Application Security Testing Checklist
  • Projects
  • OWASP Top Ten
  • links
  • Bug Bounty Builder ¯\(ツ)/¯
  • Awesome
    • AllAboutBugBounty: All about bug bounty (bypasses, payloads, and etc)
  • Cheatsheets
  • Checklists
    • Here’s a clear, step by step breakdown of commands, tools, and objectives for each section in your Web Security Testing Guide (WSTG). Each test includes easy to follow commands, explanations, and examples where applicable.
  • Dorks
  • Scripts
  • Loads
  • OWASP
    • Checklist
  • ai
    • Ai Best for Information and Coding
  • Medium Recent Writeups
  • 🌟 Useful Extensions for Bug Bounty Hunting 🌟
  • Customize the bash shell environments
  • Fabric
    • Test Application Platform Configuration
  • Docker
  • Git auto
  • Bug Bounty Beginner's Roadmap
  • Methodology 2025
    • Advanced Recon Methodology
Powered by GitBook
On this page
  • Awesome-web3-Security
  • A curated list of web3 Security materials and resources For Pentesters and Bug Hunters.
  • Vulnerable Web3 CTFs
  • Common Vulnerabilities in Smart contracts MindMap
  • How to become a smart contract auditor?
  • Web3 Security Tools
  • Web3 blogs and postmortem reports
  • Crypto Bug Bounty Platforms
  • Web3 Security Newsletter
  • Complete Collection of Hacks, Trends, Resources
  • Web3 Security Conference Talks and Videos
  • Resources to learn Solidity
  • Smart Contract Security Audit Reports
  • Smart Contract Security Certifications

Awesome-web3-Security awesome

PreviousAwesome-Bugbounty-WriteupsNextBug-Bounty

Last updated 4 months ago

Awesome-web3-Security

A curated list of web3 Security materials and resources For Pentesters and Bug Hunters.

Vulnerable Web3 CTFs

Common Vulnerabilities in Smart contracts MindMap

How to become a smart contract auditor?

Web3 Security Tools

Check Remix Ethereum project here: https://remix-project.org/ (The Remix Project is a rich toolset which can be used for the entire journey of contract development by users of any knowledge level, and as a learning lab for teaching and experimenting with Ethereum.)

Web3 blogs and postmortem reports

Crypto Bug Bounty Platforms

Web3 Security Newsletter

Complete Collection of Hacks, Trends, Resources

Web3 Security Conference Talks and Videos

// To be updated!

Resources to learn Solidity

  • https://cryptozombies.io/

  • https://www.learnweb3.io/

  • https://www.smartcontract.engineer/

  • https://solidity-by-example.org/

  • https://www.web3.university/

  • https://www.useweb3.xyz/

Smart Contract Security Audit Reports

Smart Contract Security Certifications

// To be updated! // RoadMap to be added

A star to the repo would be fantastic

Open the mindmap in

Open the

Open the Check the Repo for more details

Use the coupon code 100-OFF to get 100% discount

)

Immunefi Medium
Openzeppelin Blogs
QuillAudits Blogs
Solidity Scan Blogs
Beosin
Neptune Mutual
BlockSec
CertiK
mouse-run
Immunefi
Hackenproof
Code4rena
Gitcoin
HackerOne
Spearbit
Sherlock
The Saloon
Hats Finance
Blockchain Threat Intelligence
REKT
Week in Ethereum News
HashingBits Newsletter
Web3sec.news
Overview of Web3 Smart Contract Hacking | IWCON-S22 Talk by Duncan Townsend
hat Ethereum Smart Contract Hacking Looks Like by LiveOverFlow
The Web3 Security Mindset with Corey Petty
Security and Vulnerabilities in Web3 - Harry Papacharissiou
Web3 Security Playlist
Unstoppable - Damn Vulnerable DeFi | CTF
Smart Contract Hacking - 0x0C - Attacking Authorization with Web3.js
How to Audit a Smart Contract | Can you find the Solidity Security Vulnerabilities?
Learn Blockchain, Solidity, and Full Stack Web3 Development with JavaScript – 32-Hour Course
Chainsulting
Code4rena Audit Reports
Consensys Audit Reports
QuillAudits Audit Reports
Spearbit Audit Reports
iskdrews
Sherlock
Avastars Smart Contract Audit Public Report
KubixSquare audit
lemonade-audits
Techrate
interfinetwork
Decentraland audit
Tech-Audit
Sifchain
Complete List of Security Audit Reports
Certified Blockchain Practitioner (CBP)
Certified Blockchain Security Professional (CBSP)
Capture the Ether
The Ethernaut
Damn Vulnerable DeFi
Security Innovation Blockchain CTF
GOAT Casino
Paradigm CTF
Blocksec CTFs
ciphershastra CTF
DeFiVulnLabs
QuillCTF
Vulnmachines - Blockchain hacking
Web3Pwn - Web3 Security Training Platform
Xmind
MindMap
MindMap
Quillhash Web3-Security-Tools