|
|
safety guards for ethereum smart contracts
|
|
|
|
|
نویسنده
|
amirmohseni morteza ,dorri nogoorani sadegh
|
منبع
|
the isc international journal of information security - 2024 - دوره : 16 - شماره : 1 - صفحه:37 -53
|
چکیده
|
Smart contracts are applications that are deployed on a blockchain and can be executed through transactions. the code and the state of the smart contracts are persisted on the ledger, and their execution is validated by all blockchain nodes. smart contracts often hold and manage amounts of cryptocurrency. therefore, their code should be secured against attacks. smart contracts can be secured either by fixing their source/byte code before deployment (offline) or by inserting some protection code into the runtime (online). on the one hand, the offline methods do not have enough data for effective protection, and on the other hand, the existing online methods are too costly. in this paper, we propose an online method to complement the offline methods with a low overhead. our protections are categorized into multiple emph{safety guards}. these guards are implemented in the blockchain nodes (clients), and require some parameters to be set in the constructor to be activated. after deployment, the configured guards protect the contract and revert suspicious transactions. we have implemented our proposed safety guards by small changes to the hyperledger besu ethereum client. our evaluations show that our implementation is effective in preventing the corresponding attacks, and has low execution overhead.
|
کلیدواژه
|
blockchain ,runtime monitoring ,smart contract ,vulnerability
|
آدرس
|
tarbiat modares university, faculty of electrical and computer engineering, blockchain laboratory, iran, tarbiat modares university, faculty of electrical and computer engineering, blockchain laboratory, iran
|
پست الکترونیکی
|
dorri@modares.ac.ir
|
|
|
|
|
|
|
|
|
|
|
|
Authors
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|