Papers1 provider Ā· 1 record
May 1, 2019Ā· 2019 IEEE/ACM 41st International Conference on Software Engineering: Companion Proceedings (ICSE-Companion)
conference-paper

Finding Concurrency Exploits on Smart Contracts

Authors:Yue Li *

Abstract

Smart contracts have been widely used on Ethereum to enable business services across various application domains. However, they are prone to different forms of security attacks due to the dynamic and non-deterministic blockchain runtime environment. In this work, we highlighted a general miner-side type of exploit, called concurrency exploit, which attacks smart contracts via generating malicious transaction sequences. Moreover, we designed a systematic algorithm to automatically detect such exploits. In our preliminary evaluation, our approach managed to identify real vulnerabilities that cannot be detected by other tools in the literature.

Community

0 comments
Use Connect Wallet in the navigation

No discussion yet

Be the first to share a question or observation.