8 papers · 1 filter
An Effective and Cost-Efficient Agentic Framework for Ethereum Smart Contract Auditing
Xiaohui Hu, Wun Yu Chan, Yuejie Shi +5
Smart contract security is paramount, but identifying intricate business logic vulnerabilities remains a persistent challenge because existing solutions consistently fall short: ma…
Cybersquatting in Web3: The Case of NFT
Kai Ma, Ningyu He, Jintao Huang +3
Cybersquatting refers to the practice where attackers register a domain name similar to a legitimate one to confuse users for illegal gains. With the growth of the Non-Fungible Tok…
WalletProbe: A Testing Framework for Browser-based Cryptocurrency Wallet Extensions
Xiaohui Hu, Ningyu He, Haoyu Wang
Serving as the first touch point for users to the cryptocurrency world, cryptocurrency wallets allow users to manage, receive, and transmit digital assets on blockchain networks an…
Following Devils' Footprint: Towards Real-time Detection of Price Manipulation Attacks
Bosi Zhang, Ningyu He, Xiaohui Hu +2
Price manipulation attack is one of the notorious threats in decentralized finance (DeFi) applications, which allows attackers to exchange tokens at an extensively deviated price f…
Remeasuring the Arbitrage and Sandwich Attacks of Maximal Extractable Value in Ethereum
Tianyang Chi, Ningyu He, Xiaohui Hu +1
Maximal Extractable Value (MEV) drives the prosperity of the blockchain ecosystem. By strategically including, excluding, or reordering transactions within blocks, block producers…
SeeWasm: An Efficient and Fully-Functional Symbolic Execution Engine for WebAssembly Binaries
Ningyu He, Zhehao Zhao, Hanqin Guan +6
WebAssembly (Wasm), as a compact, fast, and isolation-guaranteed binary format, can be compiled from more than 40 high-level programming languages. However, vulnerabilities in Wasm…