Smart Contract Security & Auditing
Think like an auditor. Reentrancy, oracle manipulation, signature malleability, governance attacks — the bug classes that keep eating protocols.
5 lessons · 4 hr 30 min · expert
- 1The Auditor's MindsetReading code adversarially. Threat modeling. The 80/20 of finding real bugs, the audit firm landscape, and what good audits cost.30 min
- 2Reentrancy: Classic & Cross-FunctionThe DAO hack, the CEI pattern, ReentrancyGuard, and the read-only and cross-function variants that still drain protocols a decade later.40 min
- 3Oracle Manipulation & Price AttacksChainlink vs on-chain oracles, Uniswap V3 TWAPs, flash-loan price attacks, and the line of incidents from bZx to Mango Markets to Beanstalk.40 min
- 4Access Control & Governance BugsCompromised admin keys, malicious upgrades, multisig social engineering, and the proxy patterns that decide who really controls a protocol. From Parity to Ronin to Bybit.35 min
- 5Tooling: Slither, Echidna, Mythril, Manual ReviewStatic analysis, property fuzzing, symbolic execution, formal verification — what each tool actually catches, what each tool misses, and why manual review still owns the depth.35 min
Educational only — not financial advice.
