论文标题

对DEFI安全的调查:挑战和机遇

A Survey of DeFi Security: Challenges and Opportunities

论文作者

Li, Wenkai, Bu, Jiuyang, Li, Xiaoqi, Peng, Hongli, Niu, Yuanzheng, Zhang, Yuqing

论文摘要

DEFI或分散的财务基于一个称为区块链技术的分布式分类帐。使用区块链,DEFI可以自定义各方之间的预定操作执行。 DEFI系统使用区块链技术执行用户交易,例如贷款和交换。 DEFI中锁定的总价值从2022年4月的2000亿美元减少到2022年7月的800亿美元,这表明该地区的安全性仍然有问题。在本文中,我们解决了Defi安全研究的不足。据我们所知,我们的论文是第一个对Defi安全性进行系统分析的论文。首先,我们总结了每个区块链层中与Defi相关的漏洞。此外,还分析了应用程序级漏洞。然后,我们根据与漏洞相关的原则对现实世界进行分类。此外,我们从数据,网络,共识,智能合约和应用程序层中收集优化策略。然后,我们描述了它们解决的弱点和技术方法。根据这项全面的分析,我们总结了DEFI中的几个挑战和未来的方向,以提供进一步研究的想法。

DeFi, or Decentralized Finance, is based on a distributed ledger called blockchain technology. Using blockchain, DeFi may customize the execution of predetermined operations between parties. The DeFi system use blockchain technology to execute user transactions, such as lending and exchanging. The total value locked in DeFi decreased from \$200 billion in April 2022 to \$80 billion in July 2022, indicating that security in this area remained problematic. In this paper, we address the deficiency in DeFi security studies. To our best knowledge, our paper is the first to make a systematic analysis of DeFi security. First, we summarize the DeFi-related vulnerabilities in each blockchain layer. Additionally, application-level vulnerabilities are also analyzed. Then we classify and analyze real-world DeFi attacks based on the principles that correlate to the vulnerabilities. In addition, we collect optimization strategies from the data, network, consensus, smart contract, and application layers. And then, we describe the weaknesses and technical approaches they address. On the basis of this comprehensive analysis, we summarize several challenges and possible future directions in DeFi to offer ideas for further research.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源