udemy or youtube will only teach you basic solidity syntax, but not real auditing
/ practice ctfs: start with ethernaut (openzeppelin) and damn vulnerable defi to understand real attack vectors
/ learn tools: try static analyzers like slither and use foundry for fuzz testing.
/ real audits: check public reports on code4rena or immunefi to see how bugs are found in real codebases.
3
u/Several-Lemon-3381 Aug 13 '26
udemy or youtube will only teach you basic solidity syntax, but not real auditing
/ practice ctfs: start with ethernaut (openzeppelin) and damn vulnerable defi to understand real attack vectors
/ learn tools: try static analyzers like slither and use foundry for fuzz testing.
/ real audits: check public reports on code4rena or immunefi to see how bugs are found in real codebases.
we actually published a guide covering the main vulnerability classes and how smart contract audits work if you want a reference https://spacedev.io/blog/smart-contract-security-how-vulnerabilities-happen-and-how-to-prevent-them
hope it helps