Cointime

Download App
iOS & Android

Breaking Barriers: GPTScan's Game-changing Role in Smart Contract Security

Validated Project

Recently, MetaTrust Lab unveiled its latest AI research report, introducing a groundbreaking weapon in the Web3 security industry's arsenal to combat smart contract vulnerabilities: GPTScan. As a powerful engine, GPTScan integrates generative pre-trained transformers (GPT) with static analysis, seamlessly embedded within the AI-driven security scanning tool, MetaScan. This innovation efficiently detects logical vulnerabilities in smart contracts.

The research paper titled "When GPT Meets Program Analysis: Towards Intelligent Detection of Smart Contract Logic Vulnerabilities in GPTScan" was first publicly disclosed in early August 2023 and is currently under review for a prestigious conference in the software engineering domain. The paper meticulously delves into the architecture, design, and evaluation of GPTScan, showcasing its effectiveness in identifying vulnerabilities within complex smart contracts. Evaluation conducted on a diverse dataset comprising approximately 400 contract projects and 3,000 Solidity files revealed GPTScan's high precision, especially in substantial projects like DefiHacks, where it achieved an impressive accuracy rate exceeding 90%. It effectively identified real logic flaws with a recall rate exceeding 70%.

https://github.com/MetaTrustLabs/GPTScan-DefiHacks

For researchers, GPTScan ushers in a new era in AI-driven security, inspiring further exploration of comprehensive AI capabilities. With GPTScan, the software engineering field can make rapid strides in constructing more robust, reliable, and secure decentralized systems. Researchers at MetaTrust AI Labs commented during an academic visit, stating, "GPTScan is the first tool to harness GPT technology to match potential vulnerability functions based on code-level context and features."

As smart contracts and DeFi projects continue to expand, vulnerabilities in susceptible contracts have led to losses amounting to billions of dollars, emphasizing the urgent need for advanced security solutions in the industry. GPTScan offers a distinct advantage to smart contract developers and auditors by reducing financial and reputational risks through the identification of previously undiscovered vulnerabilities.

Notably, researchers have improved the accuracy of smart contract scanning by guiding GPT to identify critical variables and statements, followed by static confirmation, effectively mitigating the issue of false positives that can occur when relying solely on GPT for vulnerability identification. Furthermore, GPTScan uncovered nine new vulnerabilities not present in the Code4rena audit report, underscoring its value as a complementary tool for human auditors.

https://github.com/MetaTrustLabs/GPTScan-Web3Bugs

This pioneering fusion of AI and blockchain in GPTScan has garnered recognition from researchers in the AI field. "The inherent autonomy of artificial intelligence aligns closely with the decentralization and autonomy features of blockchain and smart contracts. It has the potential to shift the prevailing centralized governance in the blockchain ecosystem to a truly decentralized and autonomous paradigm," remarked AI researchers.

On the path to smart contract security, GPTScan's emergence provides an unprecedented tool for gaining insight into and safeguarding smart contracts from potential threats. Whether you are a developer, auditor, or participant in the blockchain ecosystem, GPTScan offers an effective means to address previously imperceptible logic flaws.

The birth of GPTScan represents the organic union of artificial intelligence and blockchain, bringing forth new opportunities and challenges. We eagerly anticipate witnessing more innovations in the future, further advancing the security and reliability of smart contracts.

About MetaTrust Labs

MetaTrust Labs is the world's leading provider of Web3 AI security services with largest research team in Asia which incubated by Nanyang Technological University in Singapore. Our range of services includes AI Security Scanning, Security Audits, Security Monitoring, and Open Source Smart Contract Templates. We offer fast, accurate, and cost-efficient solutions through every stage of the project development lifecycle to help builders develop secure Web3 applications with ease.

Comments

All Comments

Recommended for you

  • How Crypto Could Help Open-Source AI Reach Its Potential

    The impact of artificial intelligence (AI) is being felt across various sectors, including drug discovery, workforce productivity, and personalized content on streaming platforms like Netflix. Experts predict that the AI industry will grow by 40% annually and reach a trillion-dollar market by 2030, potentially transforming industries on an unprecedented scale. The use of cryptocurrency could play a crucial role in enabling open-source AI to overcome current limitations and reach its full potential.

  • ECB board member Patsalides warns Trump's tariff plan could lead to stagflation in Europe

    Christodoulos Patsalides, a member of the European Central Bank's board, warns that if US President-elect Donald Trump follows through on his threatened trade tariffs, the European economy could ultimately fall into stagflation. "Trade tensions are escalating," said the Cyprus Central Bank governor on Thursday in Nicosia. "If trade restrictions become a reality, the outcome could be inflation, economic recession, or worse, stagflation." He said that although there is room for further lowering of borrowing costs, it should be done "at a stable pace and magnitude."

  • Scam Sniffer: Crypto-Malware "Meeten" Renamed to "Meetio", Reminding Community to Be Vigilant

    Scam Sniffer posted on X platform, stating that the crypto conference malware "Meeten" has been renamed to "Meetio". The community is warned to be vigilant, as the renamed application is just a "disguise" and still poses a security threat.

  • Bankless Co-founder: The market has entered the beginning of the second half of the crypto bull market

    Ryan Sean Adams, co-founder of Bankless, posted on X platform stating that the current market has entered the beginning stage of the second half of the crypto bull market.

  • Elon Musk appointed by Trump to lead advisory board on government efficiency and restructuring

    President-elect Donald Trump has appointed Elon Musk and Ramaswamy to lead an advisory board called the "Department of Government Efficiency." The board aims to reduce government bureaucracy, cut wasteful spending, and restructure federal agencies. Rep. Marjorie Taylor Greene will chair a House subcommittee on "DOGE" to recommend executive actions to reduce waste and provide savings for taxpayers. Musk and Ramaswamy are reportedly creating a smartphone app for Americans to file taxes for free, causing shares of tax filing services H&R Block and Intuit to drop. However, the commission has received criticism from Senator Elizabeth Warren.

  • Curve: Market leverage demand surged after Trump's election, and protocol revenue grew rapidly

    On November 21st, Curve Finance stated that the crypto industry has experienced a large-scale increase after Trump recently won the US election. Key stocks such as MSTR and COIN have been reevaluated, and Bitcoin has approached the $100,000 mark. The demand for leverage has led to an increase in DAO's weekly income, rising from an average of $268,000 before Trump took office to $581,000 in the past week. Currently, the annual income allocated to veCRV holders is approximately $31 million, not including income from participating in voting incentives. As of today, including voting incentive bonuses, DAO has accumulated $554 million.

  • Paypal: There is a problem with the system at present, which may affect multiple products

     Paypal: Currently experiencing system issues that may affect multiple products; Merchants may be facing a higher number of errors.

  • Sui: The cause of the outage has been identified and a fix will be released soon

    Sui stated in a post on X that the Sui network is currently experiencing a malfunction and is unable to process transactions. The problem has been identified and a fix will be released soon. Earlier reports indicated that Sui Network stopped producing blocks 2 hours ago and has not yet resumed.

  • BCH breaks through $500

    market shows BCH has surpassed $500, currently trading at $521, with a daily increase of over 20%. The market is volatile, please be prepared for risk control.

  • Web3 data and AI company Validation Cloud completes $10 million in new round of financing

     Web3 data and AI company Validation Cloud announced a $10 million financing round from True Global Ventures. The company plans to use the funds to expand its AI products and achieve seamless access to Web3 data.