学位论文详细信息
Erays: Reverse engineering ethereums opaque smart contracts
Smart Contract, Reverse Engineering
Zhou, Yi ; Bailey ; Michael D
关键词: Smart Contract, Reverse Engineering;   
Others  :  https://www.ideals.illinois.edu/bitstream/handle/2142/104882/ZHOU-THESIS-2019.pdf?sequence=1&isAllowed=y
美国|英语
来源: The Illinois Digital Environment for Access to Learning and Scholarship
PDF
【 摘 要 】

Interacting with Ethereum smart contracts can have potentially devastating financial consequences. In light of this, several regulatory bodies have called for a need to audit smart contracts for security and correctness guarantees. Unfortunately, auditing smart contracts that do not have readily available source code can be challenging, and there are currently few tools available that aid in this process. Such contracts remain opaque to auditors. To address this, we present Erays, a reverse engineering tool for smart contracts without the need for source code. Erays takes in smart contract from the Ethereum blockchain and produces high-level pseudocode suitable for manual analysis. We show how Erays can be used to provide insight into several contract properties, such as code complexity and code reuse in the ecosystem. We then leverage Erays to link contracts with no previously available source code to public source code, thus reducing the overall opacity in the ecosystem. Finally, we demonstrate how Erays can be used for reverse-engineering in four case studies: high-value multi-signature wallets, arbitrage bots, exchange accounts, and finally, a popular smart-contract game, Cryptokitties. We conclude with a discussion regarding the value of reverse engineering in the smart contract ecosystem, and how Erays can be leveraged to address the challenges that lie ahead.

【 预 览 】
附件列表
Files Size Format View
Erays: Reverse engineering ethereums opaque smart contracts 427KB PDF download
  文献评价指标  
  下载次数:30次 浏览次数:17次