<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Track Awesome Evm Security Updates Weekly</title>
  <id>https://www.trackawesomelist.com/kareniel/awesome-evm-security/week/feed.xml</id>
  <updated>2022-05-16T14:14:00.000Z</updated>
  <link rel="self" type="application/atom+xml" href="https://www.trackawesomelist.com/kareniel/awesome-evm-security/week/feed.xml"/>
  <link rel="alternate" type="application/json" href="https://www.trackawesomelist.com/kareniel/awesome-evm-security/week/feed.json"/>
  <link rel="alternate" type="text/html" href="https://www.trackawesomelist.com/kareniel/awesome-evm-security/week/"/>
  <generator uri="https://github.com/bcomnes/jsonfeed-to-atom#readme" version="1.2.2">jsonfeed-to-atom</generator>
  <icon>https://www.trackawesomelist.com/favicon.ico</icon>
  <logo>https://www.trackawesomelist.com/icon.png</logo>
  <subtitle>🕶 A high-level overview of the EVM security ecosystem</subtitle>
  <entry>
    <id>https://www.trackawesomelist.com/2022/20/</id>
    <title>Awesome Evm Security Updates on May 16 - May 22, 2022</title>
    <updated>2022-05-16T14:14:00.000Z</updated>
    <published>2022-05-16T14:14:00.000Z</published>
    <content type="html"><![CDATA[<h3><p>Controls</p>
</h3>
<ul>
<li><a href="https://github.com/nascentxyz/simple-security-toolkit" rel="noopener noreferrer">Simple Security Toolkit (⭐586)</a> - Opinionated recommendations that the team at Nascent find to be appropriate,  particularly for teams developing and managing early versions of a protocol.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/20/"/>
    <summary>1 awesome projects updated on May 16 - May 22, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/12/</id>
    <title>Awesome Evm Security Updates on Mar 21 - Mar 27, 2022</title>
    <updated>2022-03-25T15:39:49.000Z</updated>
    <published>2022-03-25T15:36:53.000Z</published>
    <content type="html"><![CDATA[<h3><p>Guides</p>
</h3>
<ul>
<li><a href="https://cryptosec.info/" rel="noopener noreferrer">CryptoSec.info</a> - Information to help beginners learn how to protect their funds against hackers and scammers.</li>
</ul>

<ul>
<li><a href="https://devansh.xyz/blockchain-security/2021/09/17/genesis-0x01.html" rel="noopener noreferrer">Simplified Roadmap for Blockchain Security</a> - Covers all rudimentary topics that one needs to know in order to get into the field of Blockchain Security.</li>
</ul>

<ul>
<li><a href="https://cmichel.io/how-to-become-a-smart-contract-auditor/" rel="noopener noreferrer">How to become a smart contract auditor</a> - Frequently asked questions that are related to auditing and auditors can get their first job.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/12/"/>
    <summary>3 awesome projects updated on Mar 21 - Mar 27, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/11/</id>
    <title>Awesome Evm Security Updates on Mar 14 - Mar 20, 2022</title>
    <updated>2022-03-17T15:21:30.000Z</updated>
    <published>2022-03-17T15:21:30.000Z</published>
    <content type="html"><![CDATA[<h3><p>Governance</p>
</h3>
<ul>
<li><a href="https://linda.mirror.xyz/Vh8K4leCGEO06_qSGx-vS5lvgUqhqkCz9ut81WwCP2o" rel="noopener noreferrer">A beginner's guide to DAOs</a> - Gives a high level overview of what DAOs are, why they are interesting and some of their use cases.</li>
</ul>

<ul>
<li><a href="https://deepdao.io/#/deepdao/dashboard" rel="noopener noreferrer">Deep DAO</a> - Lists, ranks and analyzes top DAOs across multiple metrics.</li>
</ul>

<ul>
<li><a href="https://saftproject.com/" rel="noopener noreferrer">SAFT Agreements</a> - A commercial instrument used to convey rights in tokens prior to the development of the tokens' functionality.</li>
</ul>

<ul>
<li><a href="https://medium.com/daostack/voting-options-in-daos-b86e5c69a3e3" rel="noopener noreferrer">Voting Options in DAOs</a> - Voting Options in DAOs.</li>
</ul>

<ul>
<li><a href="https://twitter.com/awrigh01/status/1369328856260354051" rel="noopener noreferrer">The Wyoming DAO bill</a> - A thread about Wyoming DAOs .</li>
</ul>

<ul>
<li><a href="https://medium.com/primedao/it-takes-a-cryptonetwork-2ae9ab541c17" rel="noopener noreferrer">It Takes a Cryptonetwork</a> - Prime's Strategy for DAO to DAO Relations.</li>
</ul>

<ul>
<li><a href="https://merkle.com/papers/DAOdemocracyDraft.pdf" rel="noopener noreferrer">DAOs, Democracy and Governance</a> - A paper by Ralph Merkle about DAOs.</li>
</ul>
<h3><p>Architecture</p>
</h3>
<ul>
<li><a href="https://nakamotoinstitute.org/shelling-out/" rel="noopener noreferrer">Shelling Out: The Origins of Money</a> - Illustrates the value of collectibles in reducing social transaction costs.</li>
</ul>

<ul>
<li><a href="https://medium.com/blockchannel/a-crash-course-in-mechanism-design-for-cryptoeconomic-applications-a9f06ab6a976" rel="noopener noreferrer">A Crash Course in Mechanism Design for Cryptoeconomic Applications</a> - Introduces the basic concepts of mechanism design, and gives a taste for their usefulness in the cryptocurrency world.</li>
</ul>

<ul>
<li><a href="https://wtfisqf.com/?grant=&amp;grant=&amp;grant=&amp;grant=&amp;match=1000" rel="noopener noreferrer">WTF Is QF</a> - A simple explanation of quadratic funding.</li>
</ul>
<h3><p>Standards</p>
</h3>
<ul>
<li><a href="https://www.defisafety.com/" rel="noopener noreferrer">DeFi Safety</a> - Best practices security score reviews.</li>
</ul>

<ul>
<li><a href="https://dasp.co/" rel="noopener noreferrer">DASP Top 10 of 2018</a> - Decentralized Application Security Project Top 10 vulnerabilities.</li>
</ul>

<ul>
<li><a href="https://immunefi.com/severity-updated/" rel="noopener noreferrer">IVSCS</a> - Immunefi Vulnerability Severity Classification System.</li>
</ul>

<ul>
<li><a href="https://securing.github.io/SCSVS/" rel="noopener noreferrer">Smart Contract Security Verification Standard</a> - A free 14-part checklist created to standardize the security of smart contracts for developers, architects, security reviewers and vendors.</li>
</ul>

<ul>
<li><a href="https://guidelines.secureth.org/" rel="noopener noreferrer">Secureth guidelines</a> - Aid you in formulating your own software engineering process by giving a complete picture of all the different concerns and expectations in your software projects.</li>
</ul>

<ul>
<li><a href="https://cryptoconsortium.github.io/CCSS/" rel="noopener noreferrer">CryptoCurrency Security Standard (CCSS)</a> - A set of requirements for all information systems that make use of cryptocurrencies, including exchanges, web applications, and cryptocurrency storage solutions.</li>
</ul>

<ul>
<li><a href="https://github.com/Rari-Capital/solcurity" rel="noopener noreferrer">The Solcurity Standard (⭐972)</a> - Opinionated security and code quality standard for Solidity smart contracts.</li>
</ul>
<h3><p>System Assets</p>
</h3>
<ul>
<li><a href="https://docs.soliditylang.org/en/v0.8.6/security-considerations.html" rel="noopener noreferrer">Security Considerations in the Solidity documentation</a> - Lists some pitfalls and general security recommendations.</li>
</ul>

<ul>
<li><a href="https://leastauthority.com/static/publications/LeastAuthority-Ethereum-2.0-Specifications-Audit-Report.pdf" rel="noopener noreferrer">Ethereum 2.0 Specifications Security Audit Report</a> - Security Audit Report of the Eth2.0 spec by Least Authority.</li>
</ul>

<ul>
<li><a href="https://hackernoon.com/getting-deep-into-evm-how-ethereum-works-backstage-ac7efa1f0015" rel="noopener noreferrer">Getting Deep Into EVM</a> - An Ultimate, In-depth Explanation of How EVM Works.</li>
</ul>

<ul>
<li><a href="https://takenobu-hs.github.io/downloads/ethereum_evm_illustrated.pdf" rel="noopener noreferrer">Ethereum EVM illustrated</a> - Exploring some mental models and implementations.</li>
</ul>

<ul>
<li><a href="https://www.aniccaresearch.tech/blog/ethereum-blockspace-who-gets-what-and-why" rel="noopener noreferrer">Ethereum Blockspace: Who Gets What and Why</a> - Ethereum blockspace market structure.</li>
</ul>

<ul>
<li><a href="https://academy.binance.com/en/articles/what-is-uniswap-and-how-does-it-work" rel="noopener noreferrer">What Is Uniswap and How Does It Work?</a> - What Uniswap is, how it works, and how you can swap tokens on it simply with an Ethereum wallet.</li>
</ul>

<ul>
<li><a href="https://capitalgram.com/posts/scaling-evm/" rel="noopener noreferrer">Scaling EVM (Ethereum Virtual Machine)</a> - How fast and far can the EVM based blockchain architecture still take us.</li>
</ul>

<ul>
<li><a href="https://l2beat.com/" rel="noopener noreferrer">L2Beat</a> - Transparent and verifiable insights into emerging layer two (L2) technologies.</li>
</ul>

<ul>
<li><a href="https://opensea.io/blog/guides/non-fungible-tokens" rel="noopener noreferrer">The Non-Fungible Token Bible</a> - Everything you need to know about NFTs.</li>
</ul>

<ul>
<li><a href="https://github.com/kframework/evm-semantics" rel="noopener noreferrer">KEVM (⭐377)</a> - A formal model of the EVM in the K framework.</li>
</ul>
<h3><p>Threats</p>
</h3>
<ul>
<li><a href="https://bitcointalk.org/index.php?topic=576337" rel="noopener noreferrer">List of Bitcoin Heists</a> - Research on prior Bitcoin-related thefts.</li>
</ul>

<ul>
<li><a href="https://rekt.news/" rel="noopener noreferrer">Rekt News</a> - Investigative journalism, creative commentary, and incident analysis.</li>
</ul>

<ul>
<li><a href="https://defiyield.app/rekt-database" rel="noopener noreferrer">DeFiYield's REKT db</a> - Database of Crypto Hacks, Exploit, Scam.</li>
</ul>

<ul>
<li><a href="https://cryptoscamdb.org/scams" rel="noopener noreferrer">CryptoScamDB</a> - Keeping track of cryptocurrency scams in an open-source database.</li>
</ul>

<ul>
<li><a href="https://mudit.blog/twitter-threads/" rel="noopener noreferrer">Mudit Gupta's Twitter threads</a> - Early analysis and educational content on Twitter.</li>
</ul>

<ul>
<li><a href="https://ieeexplore.ieee.org/document/9152675" rel="noopener noreferrer">Flash Boys 2.0 Paper</a> - Frontrunning in Decentralized Exchanges, Miner Extractable Value, and Consensus Instability.</li>
</ul>

<ul>
<li><a href="https://explore.flashbots.net/" rel="noopener noreferrer">MEV-explore</a> - Help the community understand and quantify the significance of "Dark Forest activities" and their impact on the Ethereum network.</li>
</ul>

<ul>
<li><a href="https://monitor.blocksecteam.com/" rel="noopener noreferrer">Flashloan monitor</a> - Dashboard that helps you monitor flashloan transactions.</li>
</ul>

<ul>
<li><a href="https://consensys.github.io/smart-contract-best-practices/known_attacks/" rel="noopener noreferrer">Known Attacks</a> - A list of known attacks which you should be aware of, from Consensys.</li>
</ul>

<ul>
<li><a href="https://blog.sigmaprime.io/solidity-security.html" rel="noopener noreferrer">Solidity Security</a> - Comprehensive list of known attack vectors and common anti-patterns.</li>
</ul>
<h3><p>Vulnerabilities</p>
</h3>
<ul>
<li><a href="https://swcregistry.io/" rel="noopener noreferrer">SWC Registry</a> - Smart Contract Weakness Classification and Test Cases.</li>
</ul>

<ul>
<li><a href="https://blog.trailofbits.com/2019/08/08/246-findings-from-our-smart-contract-audits-an-executive-summary/" rel="noopener noreferrer">246 Findings</a> - 246 Findings From Trail of Bits Smart Contract Audits.</li>
</ul>

<ul>
<li><a href="https://arxiv.org/pdf/2105.06974.pdf" rel="noopener noreferrer">A Survey of Security Vulnerabilities in Ethereum Smart Contracts</a> - Explains eight vulnerabilities that are specific to the application level of blockchain technology by analyzing the past exploitation case scenarios of these security vulnerabilities.</li>
</ul>

<ul>
<li><a href="https://github.com/runtimeverification/verified-smart-contracts/wiki/List-of-Security-Vulnerabilities" rel="noopener noreferrer">List of Security Vulnerabilities (⭐535)</a> - A comprehensive list of common smart contract security vulnerabilities, compiled from various sources.</li>
</ul>

<ul>
<li><a href="https://docs.soliditylang.org/en/v0.8.1/bugs.html" rel="noopener noreferrer">List of Known Bugs</a> - A JSON-formatted list of some of the known security-relevant bugs in the Solidity compiler.</li>
</ul>
<h3><p>Controls</p>
</h3>
<ul>
<li><a href="https://docs.gnosis-safe.io" rel="noopener noreferrer">Gnosis Safe</a> - Multi-sig. Require multiple team members to confirm every transaction in order to execute it, which helps prevent unauthorized access to company crypto.</li>
</ul>

<ul>
<li><a href="https://www.defisafety.com/auditors" rel="noopener noreferrer">List of DeFi auditors</a> - List of DeFi auditors maintained by DeFiSafety.</li>
</ul>

<ul>
<li><a href="https://medium.com/conflux-network/the-overlooked-element-of-defi-adoption-e3b29829e3da" rel="noopener noreferrer">State of DeFi Audits</a> - Article taking a look at the auditing space and its importance in onboarding users by properly securing new DeFi protocols.</li>
</ul>

<ul>
<li><a href="https://github.com/crytic/building-secure-contracts/" rel="noopener noreferrer">Building Secure Contracts (⭐1.2k)</a> - Trail of Bits' guidelines and best practices on how to write secure smart contracts.</li>
</ul>

<ul>
<li><a href="https://fravoll.github.io/solidity-patterns/" rel="noopener noreferrer">Solidity Patterns</a> - A compilation of patterns and best practices for the smart contract programming language Solidity.</li>
</ul>

<ul>
<li><a href="https://docs.google.com/spreadsheets/d/1PF4QZudW6Z7EV4hqQfwPo3A43AVqPrsuzzzey5yRYcs/edit#gid=0" rel="noopener noreferrer">Security Pattern for Ethereum and Solidity</a> - Google Sheets Checklists.</li>
</ul>

<ul>
<li><a href="https://consensys.net/blog/developers/solidity-best-practices-for-smart-contract-security/" rel="noopener noreferrer">Solidity Best Practices for Smart Contract Security</a> - Pro tips from Consensys to ensure your Ethereum smart contracts are fortified.</li>
</ul>

<ul>
<li><a href="https://cer.live/" rel="noopener noreferrer">CERtified</a> - Top 100 exchanges by Cybersecurity rating.</li>
</ul>

<ul>
<li><a href="https://docs.forta.network/" rel="noopener noreferrer">Forta</a> - Community-based runtime security network for smart contracts.</li>
</ul>
<h3><p>Ecosystem</p>
</h3>
<ul>
<li><a href="https://twitter.com/i/lists/1453086258436128770" rel="noopener noreferrer">People to follow on Twitter</a> - Twitter list to an overview of the web3 ecosystem and security people.</li>
</ul>

<ul>
<li><a href="https://www.youtube.com/playlist?list=PLox242_JhiuEe64LzW1M8XpiQ2-N5bZsX" rel="noopener noreferrer">Videos to watch on YouTube</a> - YouTube playlist of web3 security videos.</li>
</ul>
<h3><p>Footnotes / See Also</p>
</h3>
<ul>
<li><a href="https://github.com/0xjeffsec/awesome-blocksec-ctf" rel="noopener noreferrer">Awesome BlockSec CTF (⭐7)</a> - Blockchain security Capture the Flag (CTF) competitions.</li>
</ul>

<ul>
<li><a href="https://github.com/sec-bit/awesome-buggy-erc20-tokens" rel="noopener noreferrer">Awesome Buggy ERC20 Tokens (⭐494)</a> - Vulnerabilities in ERC20 Smart Contracts With Tokens Affected.</li>
</ul>

<ul>
<li><a href="https://github.com/jpantunes/awesome-cryptoeconomics" rel="noopener noreferrer">Awesome Cryptoeconomics (⭐1.5k)</a> - Cryptoeconomic research and learning materials.</li>
</ul>

<ul>
<li><a href="https://github.com/matter-labs/awesome-zero-knowledge-proofs" rel="noopener noreferrer">Awesome Zero-Knowledge Proofs (ZKP) (⭐3k)</a> - A curated list of awesome things related to learning Zero-Knowledge Proofs (ZKP).</li>
</ul>

<ul>
<li><a href="https://github.com/OffcierCia/ultimate-defi-research-base" rel="noopener noreferrer">Officer CIA's Ultimate DeFi Research Base (⭐929)</a> - Curated DeFI &amp; Blockchain research papers and tools.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/11/"/>
    <summary>58 awesome projects updated on Mar 14 - Mar 20, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/7/</id>
    <title>Awesome Evm Security Updates on Feb 14 - Feb 20, 2022</title>
    <updated>2022-02-18T03:31:15.000Z</updated>
    <published>2022-02-18T03:31:15.000Z</published>
    <content type="html"><![CDATA[<h3><p>Footnotes / See Also</p>
</h3>
<ul>
<li><a href="https://github.com/0xalpharush/awesome-MEV-resources" rel="noopener noreferrer">Awesome MEV resources (⭐696)</a></li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/7/"/>
    <summary>1 awesome projects updated on Feb 14 - Feb 20, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/47/</id>
    <title>Awesome Evm Security Updates on Nov 22 - Nov 28, 2021</title>
    <updated>2021-11-25T19:52:24.000Z</updated>
    <published>2021-11-23T19:47:31.000Z</published>
    <content type="html"><![CDATA[<h3><p>Architecture</p>
</h3>
<ul>
<li><a href="https://epub.wu.ac.at/7309/8/Foundations%20of%20Cryptoeconomic%20Systems.pdf" rel="noopener noreferrer">Foundations of Cryptoeconomic Systems</a> - This paper explores why the term
"cryptoeconomics" is context dependent and proposes complementary micro, meso and macro definitions of the term.</li>
</ul>

<ul>
<li><a href="https://blog.oceanprotocol.com/towards-a-practice-of-token-engineering-b02feeeff7ca" rel="noopener noreferrer">Towards a Practice of Token Engineering</a> - How do we design tokenized ecosystems, their incentives and how do we analyze or verify them?</li>
</ul>

<ul>
<li><a href="https://yos.io/2018/11/10/bonding-curves" rel="noopener noreferrer">Bonding Curves Explained</a> - What bonding curves are and their potential applications.</li>
</ul>
<h3><p>Controls</p>
</h3>
<ul>
<li><a href="https://github.com/ethereum-lists/contracts" rel="noopener noreferrer">Smart Contract Security Registry (⭐82)</a> - An effort to identify deployed contracts instances given their chain and address, by listing the project they belong to.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/47/"/>
    <summary>4 awesome projects updated on Nov 22 - Nov 28, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/46/</id>
    <title>Awesome Evm Security Updates on Nov 15 - Nov 21, 2021</title>
    <updated>2021-11-17T03:15:53.000Z</updated>
    <published>2021-11-17T03:15:53.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threats</p>
</h3>
<ul>
<li><a href="https://magoo.github.io/Blockchain-Graveyard/" rel="noopener noreferrer">Blockchain Graveyard</a> - A list of all massive security breaches or thefts involving blockchains.</li>
</ul>

<ul>
<li><a href="https://www.blockthreat.io/" rel="noopener noreferrer">Blockchain Threat Intelligence</a> - The latest in blockchain, DeFi and cryptocurrency threat intelligence, vulnerabilities, security tools, and events.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/46/"/>
    <summary>2 awesome projects updated on Nov 15 - Nov 21, 2021</summary>
  </entry>
</feed>