首页> 外文会议>International Conference on Network and System Security >Security Evaluation of Smart Contract-Based On-chain Ethereum Wallets
【24h】

Security Evaluation of Smart Contract-Based On-chain Ethereum Wallets

机译:基于智能合同的链轮的安全评估

获取原文

摘要

Ethereum is a leading blockchain platform that supports decentralised applications (Dapps) using smart contract programs. It executes cryptocurrency transactions between user accounts or smart contract accounts. Wallets are utilised to integrate with Dapps to manage and hold users' transactions and private keys securely and effectively. Ethereum wallets are available in different forms, and we especially examine on-chain smart contract wallets to measure their safeness property. We have conducted an exploratory study on 86 distinct bytecode versions of Ethereum smart contract wallets and analysed them using four popular security scanning tools. We have identified that, on average, 10.2% of on-chain wallets on the Ethereum platform are vulnerable to different problems. We propose a novel analysis framework to classify the security problems in smart contract wallets using the experimental data. Most of the vulnerabilities detected from smart contract wallets are related to security issues in programming code and interaction with external sources.
机译:Ethereum是一个领先的区块链平台,支持使用智能合同计划的分散应用程序(DAPP)。它在用户帐户或智能合同帐户之间执行加密货币交易。钱包用于与DAPP集成,以安全和有效地管理和保持用户的交易和私钥。 Etreeum钱包有不同的形式,我们特别检查连锁智能合同钱包,以衡量其安全性。我们对86个独特的字节码版本的Ethereum Smart合同钱包进行了探索性研究,并使用四个流行的安全扫描工具分析它们。我们已经确定,平均而言,在Ethereum平台上的10.2%的连锁钱包容易受到不同问题的影响。我们提出了一种新的分析框架,使用实验数据对智能契约钱包中的安全问题进行分类。从智能合同钱包检测到的大多数漏洞与编程代码和与外部源的交互相关的安全问题有关。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号