Authors
Jiaming Ye, Mingliang Ma, Yun Lin, Yulei Sui, Yinxing Xue
Publication date
2020/6/27
Book
Proceedings of the ACM/IEEE 42nd International Conference on Software Engineering: Companion Proceedings
Pages
274-275
Description
Reentrancy bugs in smart contracts caused a devastating financial loss in 2016, considered as one of the most severe vulnerabilities in smart contracts. Most of the existing general-purpose security tools for smart contracts have claimed to be able to detect reentrancy bugs. In this paper, we present Clairvoyance, a cross-function and cross-contract static analysis by identifying infeasible paths to detect reentrancy vulnerabilities in smart contracts. To reduce FPs, we have summarized five major path protective techniques (PPTs) to support fast yet precise path feasibility checking. We have implemented our approach and compared Clairvoyance with three state-of-the-art tools on 17770 real-worlds contracts. The results show that Clairvoyance yields the best detection accuracy among all the tools.
Total citations
20202021202220232024135107
Scholar articles