> For the complete documentation index, see [llms.txt](https://docs.salusec.io/untitled/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.salusec.io/untitled/web3-penetration-test/web3-penetration-test-overview.md).

# Web3 Penetration Test Overview

### How is it different from smart contract auditing?

WEB3 penetration testing and smart contracts are two different technological domains. Although both are related to blockchain, they have different focuses and objectives. WEB3 penetration testing refers to the security testing of applications built using blockchain technology. These applications are typically based on Web3 technology and include centralized exchanges, cryptocurrency wallets, DEFI, GameFi, and other application types. The main goal of WEB3 penetration testing is to identify security vulnerabilities in the application and provide recommendations for fixing them.

### View typical risks in different project types：

{% content-ref url="/pages/ez4CPdR6iOGbcIzzXXCj" %}
[Risks in GameFi](/untitled/web3-penetration-test/risks-in-gamefi.md)
{% endcontent-ref %}

{% content-ref url="/pages/23BVT62w7SfVaAhEcA7r" %}
[Risks in DeFi](/untitled/web3-penetration-test/risks-in-defi.md)
{% endcontent-ref %}

{% content-ref url="/pages/uDESsPmYtrNW7r31Mw8C" %}
[Risks in Cefi](/untitled/web3-penetration-test/risks-in-cefi.md)
{% endcontent-ref %}

{% content-ref url="/pages/s04kTbMPmjSeHK5so297" %}
[Risks in social media](/untitled/web3-penetration-test/risks-in-social-media.md)
{% endcontent-ref %}
