PSCVFinder: A Prompt-Tuning Based Framework for Smart Contract Vulnerability Detection

计算机科学 脆弱性(计算) 利用 智能合约 依赖关系(UML) 程序切片 计算机安全 适应性 编码(集合论) 脆弱性评估 基线(sea) 人工智能 程序设计语言 软件 心理学 生态学 海洋学 集合(抽象数据类型) 心理弹性 块链 心理治疗师 生物 地质学
作者
Lei Yu,Junyi Lu,Xianglong Liu,Yang Li,Fengjun Zhang,Jiajia Ma
标识
DOI:10.1109/issre59848.2023.00030
摘要

With the increasing security issues in the blockchain, smart contract vulnerability detection has gradually become the focus of research. Recently, many approaches have been proposed to detect smart contract vulnerabilities. Despite promising results, these approaches still have three drawbacks: 1) Symbolic execution and static analysis methods are constrained by predefined rules, which limits their adaptability to different vulnerabilities. 2) Most smart contract code contains abundant irrelevant information which is useless for vulnerability detection. 3) Pre-trained models fail to bridge the gap between pre-training and detecting smart contract vulnerabilities.To solve these problems, we propose an approach named PSCVFinder for detecting reentrancy vulnerability and times-tamp dependency vulnerability, which are two severe vulnerabilities in smart contract. To better detect these vulnerabilities, we propose CSCV which is a smart contract slicing method to reduce the irrelevant code. Unlike existing approaches, our model first learns the representation of programming language through the pre-training model, then fully exploits the capacity of large language model with prompt-tuning to precisely detect smart contract vulnerability. We conduct experiments on real-world dataset and the results reflect that PSCVFinder scores 93.83% and 93.49% on two kinds of vulnerabilities in F1-score, surpassing the state-of-the-art baseline by 1.14% and 4.02%, respectively.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
1秒前
1秒前
上官若男应助不想当牛马采纳,获得30
1秒前
钱多多发布了新的文献求助10
1秒前
2秒前
3秒前
3秒前
JamesPei应助科研小白采纳,获得10
3秒前
3秒前
所所应助行云岛采纳,获得10
3秒前
CodeCraft应助青青采纳,获得10
4秒前
4秒前
azhuo完成签到,获得积分20
5秒前
Twonej应助善良的无剑采纳,获得20
6秒前
6秒前
汐夕发布了新的文献求助10
7秒前
哈哈发布了新的文献求助10
7秒前
天狼发布了新的文献求助10
8秒前
10秒前
10秒前
10秒前
脑洞疼应助ZJL采纳,获得10
10秒前
被科研耽误的艺术家完成签到,获得积分10
12秒前
12秒前
12秒前
CMQ2021102261发布了新的文献求助10
15秒前
xiaoyuanyuan完成签到,获得积分10
16秒前
LILI2发布了新的文献求助10
16秒前
SciGPT应助乔治采纳,获得10
17秒前
陈陈陈发布了新的文献求助10
19秒前
19秒前
molihuakai应助科研通管家采纳,获得20
19秒前
molihuakai应助科研通管家采纳,获得10
20秒前
20秒前
20秒前
wanci应助科研通管家采纳,获得10
20秒前
20秒前
20秒前
情怀应助科研通管家采纳,获得10
20秒前
奋斗的lin应助科研通管家采纳,获得50
20秒前
高分求助中
Adhesion Science: Principles & Practice 1234
Signals, Systems, and Signal Processing 610
The Resilient Mindset 400
Impact of Storage Orientation and Duration on Prefilled Syringe Performance: Break-Loose and Glide Forces, and Injection Time Across Multiple Time Points 360
Programming for Chemical Engineers Using C, C++, and MATLAB 300
Upland Kenya wild flowers and ferns: a flora of the flowers, ferns, grasses, and sedges of highland Kenya 300
Disturbing the Quiet Life? Competition and CEO Incentives 300
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6652611
求助须知:如何正确求助?哪些是违规求助? 8406460
关于积分的说明 17974950
捐赠科研通 5848033
什么是DOI,文献DOI怎么找? 2971759
邀请新用户注册赠送积分活动 1947257
关于科研通互助平台的介绍 1867762