3 citations · 4 across the 23 of their papers we have counts for
8 papers · 1 filter
Smart Contract Invariants Protect Against Cybercriminals
Sofia Bobadilla, Humaira Afrin, Angela Novelli +1
Blockchains are among the most adversarial environments in computing. Billions are stolen by cybercriminals who exploit vulnerabilities. This is an open problem and no concept or t…
Trusting-Trust Attack against an Entire Linux Distribution through Binary Manipulation
Julien Malka, Aman Sharma, Martin Monperrus +2
Ken Thompson's trusting-trust attack, in which a compromised compiler backdoors the programs it builds and reproduces the backdoor in subsequent rebuilds of itself, is widely regar…
zkSBOM: Privacy-Preserving SBOM Sharing with Zero-Knowledge Sets
Tom Sorger, Eric Cornelissen, Aman Sharma +3
Software Bills of Materials (SBOMs) are increasingly mandated by regulators, yet existing sharing mechanisms impose a binary choice between full disclosure and full opacity. This e…
Evaluating Cryptographic API Misuse Detectors for Go
Vivi Andersson, Martin Monperrus
Cryptographic API misuse represents a critical vulnerability class that undermines the security foundations of modern software. Yet, it remains largely unexplored in Go despite its…
Software Supply Chain Security of Web3
Martin Monperrus
Web3 applications, built on blockchain technology, manage billions of dollars in digital assets through decentralized applications (dApps) and smart contracts. These systems rely o…
PoCo: Agentic Proof-of-Concept Exploit Generation for Smart Contracts
Vivi Andersson, Sofia Bobadilla, Harald Hobbelhagen +1
Smart contracts operate in a highly adversarial environment, where vulnerabilities can lead to substantial financial losses. Thus, smart contracts are subject to security audits. I…