Goplus 团队在智能合约与 DeFi 安全领域的综述论文正式被中科院一区 TOP 期刊录用

深潮2025-06-10 tarihinde yayınlandı2025-06-10 tarihinde güncellendi

论文系统回顾了DeFi安全领域的研究进展,重点聚焦于漏洞检测、攻击追踪、风险评估与自动化修复等关键方向。

Comprehensive Review of Smart Contract and DeFi Security: Attack, Vulnerability Detection, and Automated Repair

近日,Goplus团队在智能合约与去中心化金融(DeFi)安全领域的综述论文《Comprehensive Review of Smart Contract and DeFi Security: Attack, Vulnerability Detection, and Automated Repair》正式被中科院一区TOP期刊《Expert Systems With Applications》录用!

《ExpertSystems With Applications》于1990年创刊,是Elsevier旗下的计算机科学和人工智能领域的权威期刊,期刊当前影响因子为7.5,中科院一区TOP期刊,JCR分区Q1。

随着DeFi快速发展并形成点对点金融生态系统,协议中锁定的大量资产成为攻击者的目标,造成了数十亿美元的安全损失。尽管业界和学术界已提出诸多防护策略,但针对DeFi与智能合约安全的系统性、全面性研究仍相对缺乏。

为填补该领域的研究空白,论文系统回顾了DeFi安全领域的研究进展,重点聚焦于漏洞检测、攻击追踪、风险评估与自动化修复等关键方向。具体内容包括:

· 系统总结DeFi面临的主要安全威胁,并将历史攻击事件归纳为六大类;

· 实证评估9种主流DeFi安全工具,涵盖漏洞检测与风险评估功能;

· 分析38种智能合约漏洞检测工具的适用性与效果;

· 初步探讨8种自动修复工具在DeFi场景下的应用潜力。

为支持后续研究与工具开发,论文还构建并开放了一个包含99个DeFi协议、共计7,340个智能合约的标准数据集,覆盖六类典型攻击类型,助力DeFi社区提升整体安全水平。

该研究不仅为学术界提供了系统全面的参考框架,也为实际应用提供了评估与防御指导,有望在推动DeFi安全基础设施建设方面发挥积极作用。

Trend Kriptolar

İlgili Okumalar

Just now, DeepSeek V4 updates with DSpark, improving inference speed by 80%

DeepSeek has updated its DeepSeek V4 model with the DSpark speculative decoding framework, achieving a significant 60-85% speedup in generation for Flash models and 57-78% for Pro models while maintaining the same overall throughput. This engineering-focused update, rather than a core architectural change, introduces DSpark to address latency and throughput bottlenecks in high-concurrency production environments. DSpark combines high-throughput parallel generation with adaptive load-aware verification. Its key innovations include a semi-autoregressive generation architecture to model dependencies within token blocks and a hardware-aware confidence-scheduled verification system. This system uses a confidence head to predict token acceptance probabilities, allowing it to dynamically optimize verification length per request and allocate compute only to tokens with the highest expected payoff. The asynchronous scheduler is designed for real-world deployment, ensuring zero-overhead scheduling and continuous CUDA graph replay while preserving the target model's output distribution. In tests across mathematical reasoning, code generation, and daily dialogue, DSpark outperformed state-of-the-art models like Eagle3 and DFlash, increasing average acceptance length by 26.7%-30.9% and 16.3%-18.4% respectively on Qwen3 target models. DeepSeek also open-sourced DeepSpec, a full-stack codebase for training and evaluating speculative decoding draft models, providing a standardized toolkit that includes data preparation tools, model implementations, training code, and evaluation scripts.

marsbit4 saat önce

Just now, DeepSeek V4 updates with DSpark, improving inference speed by 80%

marsbit4 saat önce

BIT Research: The 2028 Halving Is Not the End, the Real Shake-Up of the Bitcoin Mining Industry Is Just Beginning

The Bitcoin mining industry is undergoing its most complex structural adjustment since inception. Despite Bitcoin's price holding near $61,000 and the network hash rate approaching a record 1 ZH/s, miner profitability is deteriorating. The industry is operating close to its breakeven point, with the 2028 halving expected to accelerate consolidation. The challenges extend beyond the halving's subsidy reduction; the industry's revenue model has yet to successfully transition towards a fee-driven structure. Increasingly, mining companies are evolving from simple Bitcoin producers into infrastructure and energy operators, including providers of AI/HPC computing power. Competition is shifting from pure hash rate expansion to business model upgrades. Economic pressure is evident. The theoretical daily mining revenue at current prices is around $78 million, yet the actual figure is only about $33 million—a 136% gap. Transaction fees remain low at roughly $220k daily, far below historical implied levels. With a current estimated industry-wide breakeven price near $65,000, mining alone is struggling to generate ideal profits. The 2028 halving is projected to push the fundamental production cost floor to approximately $93,289. This will likely accelerate a shift towards consolidation among larger, well-capitalized miners with diversified revenue streams. Competitive advantage will belong to institutionalized players with access to low-cost energy, AI/HPC hosting operations, and stronger balance sheets. In essence, Bitcoin mining is transitioning from a "mining business" to an "infrastructure business." Future profitability and resilience will depend less on block rewards and more on diversified income sources like energy management and computational infrastructure services. For investors, the key question is not the halving itself, but which miners can successfully navigate this business model transformation.

marsbit6 saat önce

BIT Research: The 2028 Halving Is Not the End, the Real Shake-Up of the Bitcoin Mining Industry Is Just Beginning

marsbit6 saat önce

This is How God Karpathy Uses Claude?

Andrej Karpathy, a prominent figure in AI, has reportedly joined Anthropic, leading to a noticeable decrease in his open-source contributions and social media activity. A document claiming to be his personal "CLAUDE.md" file—a set of instructions for the Claude AI to follow within a specific codebase—has been circulating online. While its authenticity is unverified, the content aligns closely with Karpathy's publicly shared principles on effective AI-assisted programming. The document outlines key rules for AI coding assistants, emphasizing the importance of reading existing code thoroughly before writing new code to maintain consistency. It advises against over-engineering, advocating for simple, surgical modifications that match the project's existing style. Other guidelines include clarifying assumptions upfront, writing meaningful tests, thoughtful debugging, and carefully considering dependencies. The core message is that these principles help prevent common AI coding failures, such as introducing unnecessary abstractions, style drift, or making invisible architectural decisions. The community has noted that even experts like Karpathy require detailed instructions to guide AI effectively, akin to managing a junior developer. A related GitHub repository, "andrej-karpathy-skills," which encapsulates these ideas, is reported to significantly reduce Claude's code error rate. Ultimately, the advice stresses that the best CLAUDE.md is tailored to one's own tech stack and coding practices.

marsbit6 saat önce

This is How God Karpathy Uses Claude?

marsbit6 saat önce

İşlemler

Spot

Popüler Makaleler

TOP Nasıl Satın Alınır

HTX.com’a hoş geldiniz! TOP AI Network (TOP) satın alma işlemlerini basit ve kullanışlı bir hâle getirdik. Adım adım açıkladığımız rehberimizi takip ederek kripto yolculuğunuza başlayın. 1. Adım: HTX Hesabınızı OluşturunHTX'te ücretsiz bir hesap açmak için e-posta adresinizi veya telefon numaranızı kullanın. Sorunsuzca kaydolun ve tüm özelliklerin kilidini açın. Hesabımı Aç2. Adım: Kripto Satın Al Bölümüne Gidin ve Ödeme Yönteminizi SeçinKredi/Banka Kartı: Visa veya Mastercard'ınızı kullanarak anında TOP AI Network (TOP) satın alın.Bakiye: Sorunsuz bir şekilde işlem yapmak için HTX hesap bakiyenizdeki fonları kullanın.Üçüncü Taraflar: Kullanımı kolaylaştırmak için Google Pay ve Apple Pay gibi popüler ödeme yöntemlerini ekledik.P2P: HTX'teki diğer kullanıcılarla doğrudan işlem yapın.Borsa Dışı (OTC): Yatırımcılar için kişiye özel hizmetler ve rekabetçi döviz kurları sunuyoruz.3. Adım: TOP AI Network (TOP) Varlıklarınızı SaklayınTOP AI Network (TOP) satın aldıktan sonra HTX hesabınızda saklayın. Alternatif olarak, blok zinciri transferi yoluyla başka bir yere gönderebilir veya diğer kripto para birimlerini takas etmek için kullanabilirsiniz.4. Adım: TOP AI Network (TOP) Varlıklarınızla İşlem YapınHTX'in spot piyasasında TOP AI Network (TOP) ile kolayca işlemler yapın.Hesabınıza erişin, işlem çiftinizi seçin, işlemlerinizi gerçekleştirin ve gerçek zamanlı olarak izleyin. Hem yeni başlayanlar hem de deneyimli yatırımcılar için kullanıcı dostu bir deneyim sunuyoruz.

168 Toplam GörüntülenmeYayınlanma 2024.12.10Güncellenme 2026.06.02

TOP Nasıl Satın Alınır

Tartışmalar

HTX Topluluğuna hoş geldiniz. Burada, en son platform gelişmeleri hakkında bilgi sahibi olabilir ve profesyonel piyasa görüşlerine erişebilirsiniz. Kullanıcıların TOP (TOP) fiyatı hakkındaki görüşleri aşağıda sunulmaktadır.

活动图片