Safeguarding DeFi Smart Contracts against Oracle Deviations

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Deng, Xun, Beillahi, Sidi Mohamed, Minwalla, Cyrus, Du, Han, Veneris, Andreas, Long, Fan
Natura: Preprint
Pubblicazione: 2024
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866910294704390144
author Deng, Xun
Beillahi, Sidi Mohamed
Minwalla, Cyrus
Du, Han
Veneris, Andreas
Long, Fan
author_facet Deng, Xun
Beillahi, Sidi Mohamed
Minwalla, Cyrus
Du, Han
Veneris, Andreas
Long, Fan
contents This paper presents OVer, a framework designed to automatically analyze the behavior of decentralized finance (DeFi) protocols when subjected to a "skewed" oracle input. OVer firstly performs symbolic analysis on the given contract and constructs a model of constraints. Then, the framework leverages an SMT solver to identify parameters that allow its secure operation. Furthermore, guard statements may be generated for smart contracts that may use the oracle values, thus effectively preventing oracle manipulation attacks. Empirical results show that OVer can successfully analyze all 10 benchmarks collected, which encompass a diverse range of DeFi protocols. Additionally, this paper also illustrates that current parameters utilized in the majority of benchmarks are inadequate to ensure safety when confronted with significant oracle deviations.
format Preprint
id arxiv_https___arxiv_org_abs_2401_06044
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Safeguarding DeFi Smart Contracts against Oracle Deviations
Deng, Xun
Beillahi, Sidi Mohamed
Minwalla, Cyrus
Du, Han
Veneris, Andreas
Long, Fan
Software Engineering
D.2.4
This paper presents OVer, a framework designed to automatically analyze the behavior of decentralized finance (DeFi) protocols when subjected to a "skewed" oracle input. OVer firstly performs symbolic analysis on the given contract and constructs a model of constraints. Then, the framework leverages an SMT solver to identify parameters that allow its secure operation. Furthermore, guard statements may be generated for smart contracts that may use the oracle values, thus effectively preventing oracle manipulation attacks. Empirical results show that OVer can successfully analyze all 10 benchmarks collected, which encompass a diverse range of DeFi protocols. Additionally, this paper also illustrates that current parameters utilized in the majority of benchmarks are inadequate to ensure safety when confronted with significant oracle deviations.
title Safeguarding DeFi Smart Contracts against Oracle Deviations
topic Software Engineering
D.2.4
url https://arxiv.org/abs/2401.06044