Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
smart-contract-vulnerabilities — A collection of smart contract vulnerabilities along with prevention methods | Kitploit
Tools/GitHubGitHub/kadenzipfel/smart-contract-vulnerabilities
Static Code Analysis (SAST)Vulnerability AnalysisLearning & EducationCurated Resources
GitHubkadenzipfel/smart-contract-vulnerabilities

smart-contract-vulnerabilities

A collection of smart contract vulnerabilities along with prevention methods

View Repository

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
Website
2.5k33247 months agoReviewed by Kitploit

Smart Contract Vulnerabilities

A collection of smart contract vulnerabilities along with prevention methods.

See /references for LLM-optimized references.

Access Control

  • Authorization Through tx.origin
  • Insufficient Access Control
  • Delegatecall to Untrusted Callee
  • Signature Malleability
  • Missing Protection against Signature Replay Attacks

Math

  • Integer Overflow and Underflow
  • Off-By-One
  • Lack of Precision

Control Flow

  • Reentrancy
  • DoS with Block Gas Limit
  • DoS with (Unexpected) revert
  • Using msg.value in a Loop
  • Transaction-Ordering Dependence
  • Insufficient Gas Griefing

Data Handling

  • Unchecked Return Value
  • Write to Arbitrary Storage Location
  • Unbounded Return Data
  • Uninitialized Storage Pointer
  • Unexpected ecrecover null address

Unsafe Logic

  • Weak Sources of Randomness from Chain Attributes
  • Hash Collision when using abi.encodePacked() with Multiple Variable-Length Arguments
  • Timestamp Dependence
  • Unsafe Low-Level Call
  • Unsupported Opcodes
  • Unencrypted Private Data On-Chain
  • Asserting Contract from Code Size

Code Quality

  • Floating Pragma
  • Outdated Compiler Version
  • Use of Deprecated Functions
  • Incorrect Constructor Name
  • Shadowing State Variables
  • Incorrect Inheritance Order
  • Presence of Unused Variables
  • Default Visibility
  • Inadherence to Standards
  • Assert Violation
  • Requirement Violation
Download Tool