Fetching the paper…
Reading the bibliography…
Smart contracts are prone to various vulnerabilities, leading to substantial financial losses over time.
Language models are few-shot learners
Tom Brown, Benjamin Mann, Nick Ryder, Melanie Subbiah, Jared D Kaplan, Prafulla Dhariwal, Arvind Neelakantan, Pranav Shyam, Girish Sastry, Amanda Askell, et al · 1901
Earlier work this paper cites.
Vandal: A scalable security analysis framework for smart contracts
Lexi Brent, Anton Jurisevic, Michael Kong, Eric Liu, Francois Gauthier, Vincent Gramoli, Ralph Holz, and Bernhard Scholz. 2018 · 2018
Earlier work this paper cites.
Contractfuzzer: Fuzzing smart contracts for vulnerability detection. In Proceedings of the 33rd ACM/IEEE International Conference on Automated Software Engineering . 259–269
Bo Jiang, Ye Liu, and Wing Kwong Chan. 2018 · 2018
Earlier work this paper cites.
ZEUS: Analyzing Safety of Smart Contracts. In Proceedings 2018 Network and Distributed System Security Symposium . Internet Society, San Diego, CA
Sukrit Kalra, Seep Goel, Mohan Dhawan, and Subodh Sharma. 2018 · 2018
Earlier work this paper cites.
Securify: Practical security analysis of smart contracts. In Proceedings of the 2018 ACM SIGSAC conference on computer and communications security . 67–82
Petar Tsankov, Andrei Dan, Dana Drachsler-Cohen, Arthur Gervais, Florian Buenzli, and Martin Vechev. 2018 · 2018
Earlier work this paper cites.
Slither: a static analysis framework for smart contracts. In 2019 IEEE/ACM 2nd International Workshop on Emerging Trends in Software Engineering for Blockchain (WETSEB) . IEEE, 8–15
Josselin Feist, Gustavo Grieco, and Alex Groce. 2019 · 2019
Earlier work this paper cites.
Manticore: A User-Friendly Symbolic Execution Framework for Binaries and Smart Contracts. In Proc. ACM ASE
Mark Mossberg, Felipe Manzano, Eric Hennenfent, Alex Groce, Gustavo Greico, Josselin Feist, Trent Brunson, and Artem Dinaburg. 2019 · 2019
Earlier work this paper cites.
Sereum: Protecting Existing Smart Contracts Against Re-Entrancy Attacks. In 26th Annual Network and Distributed System Security Symposium, NDSS 2019, San Diego, California, USA, February 24-27, 2019 . The Internet Society
Michael Rodler, Wenting Li, Ghassan O. Karame, and Lucas Davi. 2019 · 2019
Earlier work this paper cites.
Mpro: Combining static and symbolic analysis for scalable testing of smart contract. In 2019 IEEE 30th International Symposium on Software Reliability Engineering (ISSRE) . IEEE, 456–462
William Zhang, Sebastian Banescu, Leonardo Pasos, Steven Stewart, and Vijay Ganesh. 2019 · 2019
Earlier work this paper cites.
Ethainter: a smart contract security analyzer for composite vulnerabilities. In Proceedings of the 41st ACM SIGPLAN Conference on Programming Language Design and Implementation . 454–469
Lexi Brent, Neville Grech, Sifis Lagouvardos, Bernhard Scholz, and Yannis Smaragdakis. 2020 · 2020
Earlier work this paper cites.
Echidna: effective, usable, and fast fuzzing for smart contracts. In Proceedings of the 29th ACM SIGSOFT International Symposium on Software Testing and Analysis . 557–560
Gustavo Grieco, Will Song, Artur Cygan, Josselin Feist, and Alex Groce. 2020 · 2020
Earlier work this paper cites.
Verx: Safety verification of smart contracts. In 2020 IEEE symposium on security and privacy (SP) . IEEE, 1661–1677
Anton Permenev, Dimitar Dimitrov, Petar Tsankov, Dana Drachsler-Cohen, and Martin Vechev. 2020 · 2020
Earlier work this paper cites.
VeriSmart: A highly precise safety verifier for Ethereum smart contracts. In 2020 IEEE Symposium on Security and Privacy (SP) . IEEE, 1678–1694
Sunbeom So, Myungho Lee, Jisu Park, Heejo Lee, and Hakjoo Oh. 2020 · 2020
Earlier work this paper cites.
Harvey: A greybox fuzzer for smart contracts. In Proceedings of the 28th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering . 1398–1409
Valentin Wüstholz and Maria Christakis. 2020 · 2020
Cited alongside, same era.
Cross-Contract Static Analysis for Detecting Practical Reentrancy Vulnerabilities in Smart Contracts. In 35th IEEE/ACM International Conference on Automated Software Engineering, ASE 2020, Melbourne, Australia, September 21-25, 2020 . IEEE, 1029–1040
Yinxing Xue, Mingliang Ma, Yun Lin, Yulei Sui, Jiaming Ye, and Tianyong Peng. 2020 · 2020
Cited alongside, same era.
Peculiar: Smart contract vulnerability detection based on crucial data flow graph and pre-training techniques. In 2021 IEEE 32nd International Symposium on Software Reliability Engineering (ISSRE) . IEEE, 378–389
Hongjun Wu, Zhuo Zhang, Shangwen Wang, Yan Lei, Bo Lin, Yihao Qin, Haoyu Zhang, and Xiaoguang Mao. 2021 · 2021
Cited alongside, same era.
Sailfish: Vetting smart contract state-inconsistency bugs in seconds. In 2022 IEEE Symposium on Security and Privacy (SP) . IEEE, 161–178
Do you still need a manual smart contract audit?
Isaac David, Liyi Zhou, Kaihua Qin, Dawn Song, Lorenzo Cavallaro, and Arthur Gervais. 2023 · 2023
Closest in time.
Large Language Models Are Zero-Shot Fuzzers: Fuzzing Deep-Learning Libraries via Large Language Models. In Proceedings of the 32nd ACM SIGSOFT International Symposium on Software Testing and Analysis . ACM, Seattle WA USA, 423–435
Yinlin Deng, Chunqiu Steven Xia, Haoran Peng, Chenyuan Yang, and Lingming Zhang. 2023 · 2023
Closest in time.
Beyond “Protected” and “Private”: An Empirical Security Analysis of Custom Function Modifiers in Smart Contracts. In Proc. ACM ISSTA
Yuzhou Fang, Daoyuan Wu, Xiao Yi, Shuai Wang, Yufan Chen, Mengjie Chen, Yang Liu, and Lingxiao Jiang. 2023 · 2023
Closest in time.
Prompting Is All Your Need: Automated Android Bug Replay with Large Language Models
Sidong Feng and Chunyang Chen. 2023 · 2023
Closest in time.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Priyanka Bose, Dipanjan Das, Yanju Chen, Yu Feng, Christopher Kruegel, and Giovanni Vigna. 2022 · 2022
Cited alongside, same era.
Large language models are zero-shot reasoners
Takeshi Kojima, Shixiang Shane Gu, Machel Reid, Yutaka Matsuo, and Yusuke Iwasawa. 2022 · 2022
Cited alongside, same era.
Finding permission bugs in smart contracts with role mining. In Proceedings of the 31st ACM SIGSOFT International Symposium on Software Testing and Analysis . 716–727
Ye Liu, Yi Li, Shang-Wei Lin, and Cyrille Artho. 2022 · 2022
Cited alongside, same era.
Training language models to follow instructions with human feedback
Long Ouyang, Jeff Wu, Xu Jiang, Diogo Almeida, Carroll L. Wainwright, Pamela Mishkin, Chong Zhang, Sandhini Agarwal, Katarina Slama, Alex Ray, John Schulman, Jacob Hilton, Fraser Kelton, Luke Miller, Maddie Simens, Amanda Askell, Peter Welinder, Paul Christiano, Jan Leike, and Ryan Lowe. 2022b · 2022
Cited alongside, same era.
SolType: refinement types for arithmetic overflow in solidity. In Proc. ACM POPL
Bryan Tan, Benjamin Mariano, Shuvendu K Lahiri, Isil Dillig, and Yu Feng. 2022 · 2022
Cited alongside, same era.
Transformer-based language models for software vulnerability detection. In Proceedings of the 38th Annual Computer Security Applications Conference . 481–496
Chandra Thapa, Seung Ick Jang, Muhammad Ejaz Ahmed, Seyit Camtepe, Josef Pieprzyk, and Surya Nepal. 2022 · 2022
Cited alongside, same era.
Self-Instruct: Aligning Language Model with Self Generated Instructions
Yizhong Wang, Yeganeh Kordi, Swaroop Mishra, Alisa Liu, Noah A. Smith, Daniel Khashabi, and Hannaneh Hajishirzi. 2022 · 2022
Cited alongside, same era.
GreyDGL/PentestGPT
2023 · 2023
Cited alongside, same era.
DiverseVul: A New Vulnerable Source Code Dataset for Deep Learning Based Vulnerability Detection
Yizheng Chen, Zhoujie Ding, Xinyun Chen, and David Wagner. 2023 · 2023
Cited alongside, same era.
AChecker: Statically Detecting Smart Contract Access Control Vulnerabilities
Asem Ghaleb, Julia Rubin, and Karthik Pattabiraman. 2023 · 2023
Closest in time.
Impact of code language models on automated program repair
Nan Jiang, Kevin Liu, Thibaud Lutellier, and Lin Tan. 2023 · 2023
Closest in time.
What are liquidity provider (LP) tokens, and how do they work?
Emi Lacapra. 2023 · 2023
Closest in time.
Detecting software vulnerabilities using Language Models
Marwan Omar. 2023 · 2023
Closest in time.
Keep the Conversation Going: Fixing 162 out of 337 bugs for $0.42 each using ChatGPT
Chunqiu Steven Xia and Lingming Zhang. 2023 · 2023
Closest in time.
BlockScope: Detecting and Investigating Propagated Vulnerabilities in Forked Blockchain Projects. In Proc. ISOC NDSS
Xiao Yi, Yuzhou Fang, Daoyuan Wu, and Lingxiao Jiang. 2023 · 2023
Closest in time.
Demystifying Exploitable Bugs in Smart Contracts. In 2023 IEEE/ACM 37th IEEE International Conference on Software Engineering
Zhuo Zhang, Brian Zhang, Wen Xu, and Zhiqiang Lin. 2023b · 2023
Closest in time.
SoK: Decentralized Finance (DeFi) Attacks. In IEEE Symposium on Security and Privacy (SP) . IEEE
Liyi Zhou, Xihan Xiong, Jens Ernstberger, Stefanos Chaliasos, Zhipeng Wang, Ye Wang, Kaihua Qin, Roger Wattenhofer, Dawn Song, and Arthur Gervais. 2023 · 2023
Closest in time.