Skip to main content
Exécutez n'importe quel Skill dans Manus
en un clic
Dépôt GitHub

web3-bug-bounty-hunting-ai-skills

web3-bug-bounty-hunting-ai-skills contient 11 skills collectées depuis shuvonsec, avec une couverture métier par dépôt et des pages de détail sur le site.

skills collectés
11
Stars
110
mis à jour
2026-03-14
Forks
29
Couverture métier
2 catégories métier · 100% classifié
explorateur de dépôts

Skills dans ce dépôt

web3-triage-report
Analystes en sécurité de l'information

Bug triage validation system, Immunefi report format, and 20 real paid bounty examples dissected. Use this when validating a finding before submitting, writing an Immunefi report, checking if a bug is actually valid, or studying real examples of paid vulnerabilities.

2026-03-14
web3-start-here
Analystes en sécurité de l'information

Master index for the web3 smart contract security knowledge base. Use this to navigate the skill chain. Read files in order — each ends with NEXT.

2026-03-14
web3-solidity-audit-mcp
Développeurs de logiciels

MCP server integrating Slither + Aderyn + SWC patterns into Claude Code for smart contract auditing. Use when analyzing Solidity files, running DeFi-specific detectors, or generating invariants. 10 MCP tools, 86 SWC detectors, DeFi preset pack, CI/CD workflow.

2026-03-14
web3-poc-foundry
Développeurs de logiciels

Complete Foundry PoC writing guide + all cheatcodes + DeFiHackLabs reproduction patterns. Use this when building a proof of concept exploit, setting up a fork test, using Foundry cheatcodes, or reproducing a known DeFi hack for learning.

2026-03-14
web3-methodology-research
Développeurs de logiciels

External research synthesis from Trail of Bits, SlowMist, ConsenSys, Immunefi, and Cyfrin. Use this for advanced audit methodology, Echidna/Medusa fuzzing setup, Slither custom detector writing, attack pattern deep dives, or the 4-phase learning roadmap.

2026-03-14
web3-hunt-zksync-era
Développeurs de logiciels

ZKsync Era (Immunefi) completed hunt — 0 findings after exhaustive 5-session audit. Use as a DEFENSE STUDY — learn what makes a protocol unhuntable, which patterns block all 10 bug classes, and when to abandon a target. Contains architecture breakdown, 25 tested attack vectors, and pre-dive scoring refinements for large L1 bridge protocols.

2026-03-14
web3-hunt-foundation
Développeurs de logiciels

Hunter mindset, recon setup, and target scoring for Web3 bug bounty. Use at the START of any new protocol hunt - scoring targets, setting up environment, understanding architecture.

2026-03-14
web3-grep-arsenal
Développeurs de logiciels

Master grep command arsenal for Web3 smart contract auditing. Use when starting a new protocol scan, before deep code review, or when hunting specific vulnerability classes.

2026-03-14
web3-case-study-role-misconfig
Développeurs de logiciels

Case study - role misconfiguration bug class applied to a yield aggregator protocol. Use as a template for applying all 10 bug classes to a single target.

2026-03-14
web3-bug-classes
Développeurs de logiciels

Complete reference for all 10 DeFi smart contract bug classes. Use this when hunting for specific vulnerability types, need attack patterns for accounting desync, access control, incomplete path, off-by-one, oracle manipulation, ERC4626 vaults, reentrancy, flash loans, signature replay, or proxy/upgrade bugs.

2026-03-14
web3-ai-tools
Développeurs de logiciels

AI-powered tools for Web3 bug bounty automation. Use when you want to automate recon, run autonomous audits, or use AI agents for vulnerability discovery.

2026-03-14