Cointime

Download App
iOS & Android

Breaking Barriers: GPTScan's Game-changing Role in Smart Contract Security

Validated Project

Recently, MetaTrust Lab unveiled its latest AI research report, introducing a groundbreaking weapon in the Web3 security industry's arsenal to combat smart contract vulnerabilities: GPTScan. As a powerful engine, GPTScan integrates generative pre-trained transformers (GPT) with static analysis, seamlessly embedded within the AI-driven security scanning tool, MetaScan. This innovation efficiently detects logical vulnerabilities in smart contracts.

The research paper titled "When GPT Meets Program Analysis: Towards Intelligent Detection of Smart Contract Logic Vulnerabilities in GPTScan" was first publicly disclosed in early August 2023 and is currently under review for a prestigious conference in the software engineering domain. The paper meticulously delves into the architecture, design, and evaluation of GPTScan, showcasing its effectiveness in identifying vulnerabilities within complex smart contracts. Evaluation conducted on a diverse dataset comprising approximately 400 contract projects and 3,000 Solidity files revealed GPTScan's high precision, especially in substantial projects like DefiHacks, where it achieved an impressive accuracy rate exceeding 90%. It effectively identified real logic flaws with a recall rate exceeding 70%.

https://github.com/MetaTrustLabs/GPTScan-DefiHacks

For researchers, GPTScan ushers in a new era in AI-driven security, inspiring further exploration of comprehensive AI capabilities. With GPTScan, the software engineering field can make rapid strides in constructing more robust, reliable, and secure decentralized systems. Researchers at MetaTrust AI Labs commented during an academic visit, stating, "GPTScan is the first tool to harness GPT technology to match potential vulnerability functions based on code-level context and features."

As smart contracts and DeFi projects continue to expand, vulnerabilities in susceptible contracts have led to losses amounting to billions of dollars, emphasizing the urgent need for advanced security solutions in the industry. GPTScan offers a distinct advantage to smart contract developers and auditors by reducing financial and reputational risks through the identification of previously undiscovered vulnerabilities.

Notably, researchers have improved the accuracy of smart contract scanning by guiding GPT to identify critical variables and statements, followed by static confirmation, effectively mitigating the issue of false positives that can occur when relying solely on GPT for vulnerability identification. Furthermore, GPTScan uncovered nine new vulnerabilities not present in the Code4rena audit report, underscoring its value as a complementary tool for human auditors.

https://github.com/MetaTrustLabs/GPTScan-Web3Bugs

This pioneering fusion of AI and blockchain in GPTScan has garnered recognition from researchers in the AI field. "The inherent autonomy of artificial intelligence aligns closely with the decentralization and autonomy features of blockchain and smart contracts. It has the potential to shift the prevailing centralized governance in the blockchain ecosystem to a truly decentralized and autonomous paradigm," remarked AI researchers.

On the path to smart contract security, GPTScan's emergence provides an unprecedented tool for gaining insight into and safeguarding smart contracts from potential threats. Whether you are a developer, auditor, or participant in the blockchain ecosystem, GPTScan offers an effective means to address previously imperceptible logic flaws.

The birth of GPTScan represents the organic union of artificial intelligence and blockchain, bringing forth new opportunities and challenges. We eagerly anticipate witnessing more innovations in the future, further advancing the security and reliability of smart contracts.

About MetaTrust Labs

MetaTrust Labs is the world's leading provider of Web3 AI security services with largest research team in Asia which incubated by Nanyang Technological University in Singapore. Our range of services includes AI Security Scanning, Security Audits, Security Monitoring, and Open Source Smart Contract Templates. We offer fast, accurate, and cost-efficient solutions through every stage of the project development lifecycle to help builders develop secure Web3 applications with ease.

Comments

All Comments

Recommended for you

  • BTC breaks through $69,000

     the market shows BTC breaking through $69,000, currently at $69,021.49, with a 24-hour increase of 1.15%. The market is highly volatile, please manage your risk accordingly.

  • Spanish Foreign Minister: Not worried about any consequences of refusing US access to military bases

     on March 3 local time, Spanish Foreign Minister Alvarez defended the Spanish government's refusal to provide the Rota and Moron military bases to the United States for participation in attacks on Iran. Alvarez stated that the operation initiated by the United States and Israel is not supported by the United Nations and is not part of the bilateral agreements allowing the use of the aforementioned Spanish sovereign military bases. Alvarez also said that the Spanish government is not concerned that this stance will have any consequences. Alvarez stated: "The position of the Spanish government represents the will of the vast majority of the Spanish people as well as the vast majority of people worldwide, which is to defend the UN Charter, respect international law, and believe that cooperation is always more powerful than confrontation."

  • Spot gold plunges nearly $100 in the short term.

     spot gold plunged nearly 100 dollars in a short time, spot gold fell below 5170 dollars/ounce, with a daily decline of 2.94%. 

  • BTC falls below $67,000

    the market shows BTC fell below $67,000, currently at $66,996.93, with a 24-hour increase of 1.18%. The market is highly volatile, please manage your risk accordingly.

  • ETH breaks $2,000

    the market shows ETH breaking through $2000, currently at $2001.64, with a 24-hour increase of 2.89%. The market is highly volatile, please manage your risks accordingly.

  • The US spot Bitcoin ETF saw a net inflow of $962.48 million yesterday.

    according to Trader T's monitoring, the US spot Bitcoin ETF had a net inflow of 962.48 million USD yesterday.

  • BTC falls below $66,000

     the market shows BTC fell below 66,000 USD, currently at 65,986.66 USD, with a 24-hour decline of 1.31%. The market is highly volatile, please manage your risks accordingly.

  • BTC falls below $66,000

     the market shows BTC fell below $66,000, currently at $65,973.16, a 24-hour drop of 2.66%. The market is highly volatile, please manage your risks accordingly.

  • ETH breaks $2,000

    market shows ETH breaking through $2000, currently at $2000.29, with a 24-hour increase of 3.73%. The market is volatile, please manage your risk accordingly.

  • Web3 data and AI company Validation Cloud completes $10 million in new round of financing

     Web3 data and AI company Validation Cloud announced a $10 million financing round from True Global Ventures. The company plans to use the funds to expand its AI products and achieve seamless access to Web3 data.