A comparison of solidity fuzzing tools Foundry, Echidna & Medusa
-
Updated
Feb 1, 2025 - Solidity
Fuzzing or fuzz testing is an automated software black box testing technique that evaluates the program’s reaction to providing invalid, unexpected, or random data as inputs to a computer program.
A comparison of solidity fuzzing tools Foundry, Echidna & Medusa
Benchmark Generator for Smart-Contract Fuzzers
Collection of Web3 Audits and Publications by ChainLight of Theori
Advanced Smart Contract Security Scanner | 52 Rust Crates | 1314+ Vulnerability Patterns | 51 Analysis Engines | Bytecode + Source Analysis | EVM Exploit Detection | Formal Verification | Fuzz Testing
Formal verification effort for proving the ABDK Math 64.64 library properties using Echidna/hevm/Certora
A comprehensive guide to Foundry's testing capabilities including Fuzz Testing and Invariant Testing
Provides a template for setting up a new Foundry project. Foundry is a blockchain development framework that makes it easy to build and deploy decentralized applications (dApps) on various blockchain platforms
Ported SushiSwap v1 contracts to Solidity 0.8.25 for replicating PeckShield-audited vulnerabilities, writing fuzz tests, and researching exploits.
Test APIs by generating custom attack scenarios using large language models to uncover logic flaws beyond standard scanners.
Simple boilerplate for getting started quickly developing Foundry projects.
Cyfrin-Updraft foundry course
Defender-side stateful invariant harness for Euler Earn allocator + vault share accounting. Clean/planted twin pair against the Pashov Audit Group M-01 finding (2025-07-25) and Euler's fix commit. Real Euler Earn contracts (pinned submodule); no mocks except Euler Earn's own EVault strategy fixture. GPL-2.0-or-later.
USD-pegged ERC20 stablecoin in Solidity/Foundry. 200% over-collateralized with WETH/WBTC, Chainlink-priced, invariant-fuzzed, Slither-gated in CI, deployed on Sepolia.
Created by Barton Miller
Released September 1988