首页> 外文会议>International symposium on leveraging applications of formal method, verification and validation >The Good, The Bad and The Ugly: Pitfalls and Best Practices in Automated Sound Static Analysis of Ethereum Smart Contracts
【24h】

The Good, The Bad and The Ugly: Pitfalls and Best Practices in Automated Sound Static Analysis of Ethereum Smart Contracts

机译:好的,坏和丑陋的丑陋:陷阱和以外的智能合同自动声音静态分析中的最佳实践

获取原文

摘要

Ethereum smart contracts are distributed programs running on top of the Ethereum blockchain. Since program flaws can cause significant monetary losses and can hardly be fixed due to the immutable nature of the blockchain, there is a strong need of automated analysis tools which provide formal security guarantees. Designing such analyzers, however, proved to be challenging and error-prone. We review the existing approaches to automated, sound, static analysis of Ethereum smart contracts and highlight prevalent issues in the state of the art. Finally, we overview eThor, a recent static analysis tool that we developed following a principled design and implementation approach based on rigorous semantic foundations to overcome the problems of past works.
机译:Etereum Smart合同是在Ethereum BlockChain之上运行的分布式程序。由于计划缺陷可能导致严重的货币损失,并且由于区块链的不可变性而几乎无法修复,因此有强烈需要自动分析工具,提供正式的安全保障。然而,设计这种分析仪被证明是挑战性和容易出错的。我们审查了全自动,声音,静态分析对国内智能合约的现有方法,并突出了现有技术的普遍存在问题。最后,我们概述了一个近期静态分析工具,以便根据严格的语义基础,以克服过去作品问题的原则设计和实施方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号