Safeguarding DeFi Smart Contracts against Oracle Deviations
Fuente:
arXiv
Salvato in:
| Autori principali: | , , , , , |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2024
|
| Soggetti: | |
| Accesso online: | |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
| _version_ | 1866910294704390144 |
|---|---|
| author | Deng, Xun Beillahi, Sidi Mohamed Minwalla, Cyrus Du, Han Veneris, Andreas Long, Fan |
| author_facet | Deng, Xun Beillahi, Sidi Mohamed Minwalla, Cyrus Du, Han Veneris, Andreas Long, Fan |
| contents | This paper presents OVer, a framework designed to automatically analyze the behavior of decentralized finance (DeFi) protocols when subjected to a "skewed" oracle input. OVer firstly performs symbolic analysis on the given contract and constructs a model of constraints. Then, the framework leverages an SMT solver to identify parameters that allow its secure operation. Furthermore, guard statements may be generated for smart contracts that may use the oracle values, thus effectively preventing oracle manipulation attacks. Empirical results show that OVer can successfully analyze all 10 benchmarks collected, which encompass a diverse range of DeFi protocols. Additionally, this paper also illustrates that current parameters utilized in the majority of benchmarks are inadequate to ensure safety when confronted with significant oracle deviations. |
| format | Preprint |
| id |
arxiv_https___arxiv_org_abs_2401_06044 |
| institution | arXiv |
| publishDate | 2024 |
| record_format | arxiv |
| spellingShingle | Safeguarding DeFi Smart Contracts against Oracle Deviations Deng, Xun Beillahi, Sidi Mohamed Minwalla, Cyrus Du, Han Veneris, Andreas Long, Fan Software Engineering D.2.4 This paper presents OVer, a framework designed to automatically analyze the behavior of decentralized finance (DeFi) protocols when subjected to a "skewed" oracle input. OVer firstly performs symbolic analysis on the given contract and constructs a model of constraints. Then, the framework leverages an SMT solver to identify parameters that allow its secure operation. Furthermore, guard statements may be generated for smart contracts that may use the oracle values, thus effectively preventing oracle manipulation attacks. Empirical results show that OVer can successfully analyze all 10 benchmarks collected, which encompass a diverse range of DeFi protocols. Additionally, this paper also illustrates that current parameters utilized in the majority of benchmarks are inadequate to ensure safety when confronted with significant oracle deviations. |
| title | Safeguarding DeFi Smart Contracts against Oracle Deviations |
| topic | Software Engineering D.2.4 |
| url | https://arxiv.org/abs/2401.06044 |