{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,2]],"date-time":"2026-03-02T19:30:01Z","timestamp":1772479801961,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":72,"publisher":"ACM","license":[{"start":{"date-parts":[[2025,4,22]],"date-time":"2025-04-22T00:00:00Z","timestamp":1745280000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,4,28]]},"DOI":"10.1145\/3696410.3714686","type":"proceedings-article","created":{"date-parts":[[2025,4,22]],"date-time":"2025-04-22T23:08:29Z","timestamp":1745363309000},"page":"4284-4299","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["<scp>SigScope:<\/scp>\n            Detecting and Understanding Off-Chain Message Signing-related Vulnerabilities in Decentralized Applications"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-8535-2975","authenticated-orcid":false,"given":"Sajad","family":"Meisami","sequence":"first","affiliation":[{"name":"Illinois Institute of Technology, Chicago, IL, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0008-3693-5314","authenticated-orcid":false,"given":"Hugo","family":"Dabadie","sequence":"additional","affiliation":[{"name":"INRIA, Lyon, France"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7961-8502","authenticated-orcid":false,"given":"Song","family":"Li","sequence":"additional","affiliation":[{"name":"Zhejiang University, HangZhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8911-106X","authenticated-orcid":false,"given":"Yuzhe","family":"Tang","sequence":"additional","affiliation":[{"name":"Syracuse University, Syracuse, NY, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1049-9645","authenticated-orcid":false,"given":"Yue","family":"Duan","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,4,22]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"[n. d.]. IPFS is the Distributed Web. https:\/\/ipfs.io\/."},{"key":"e_1_3_2_1_2_1","unstructured":"2016. ERC-191: Signed Data Standard. https:\/\/eips.ethereum.org\/EIPS\/eip-191."},{"key":"e_1_3_2_1_3_1","unstructured":"2017. EIP-712: Typed structured data hashing and signing. https:\/\/eips.ethereum.org\/EIPS\/eip-712."},{"key":"e_1_3_2_1_4_1","unstructured":"2024. DApp Ranking. https:\/\/dappradar.com\/rankings\/protocol\/ethereum."},{"key":"e_1_3_2_1_5_1","unstructured":"2024. Elliptic Curve Digital Signature Algorithm. https:\/\/en.bitcoin.it\/wiki\/ Elliptic_Curve_Digital_Signature_Algorithm."},{"key":"e_1_3_2_1_6_1","unstructured":"2024. Meta Transactions. https:\/\/docs.web3j.io\/4.10.0\/use_cases\/meta_transaction\/."},{"key":"e_1_3_2_1_7_1","unstructured":"2024. State Channels. https:\/\/ethereum.org\/developers\/docs\/scaling\/state-channels\/."},{"key":"e_1_3_2_1_8_1","unstructured":"Retrieved Oct 2024. Account abstraction on ethereum.org. https:\/\/ethereum.org\/en\/roadmap\/account-abstraction\/."},{"key":"e_1_3_2_1_9_1","unstructured":"Retrieved Oct 2024. Geth: the Go Client for Ethereum. https:\/\/www.ethereum.org\/cli#geth."},{"key":"e_1_3_2_1_10_1","unstructured":"Retrieved Oct 2024. How to Build a Gasless Dapp. https:\/\/metamask.io\/news\/developers\/how-to-build-gasless-dapps\/."},{"key":"e_1_3_2_1_11_1","volume-title":"Mastodon: Social networking that's not for sale. https:\/\/joinmastodon.org\/.","author":"Oct Retrieved","year":"2024","unstructured":"Retrieved Oct, 2024. Mastodon: Social networking that's not for sale. https:\/\/joinmastodon.org\/."},{"key":"e_1_3_2_1_12_1","unstructured":"Retrieved Oct 2024. OP mainnet ETH blockchains. https:\/\/optimistic.etherscan.io\/."},{"key":"e_1_3_2_1_13_1","unstructured":"Retrieved Oct 2024. Scroll: the Geth fork. https:\/\/github.com\/scroll-tech\/go- ethereum\/tree\/scroll-v5.5.17."},{"key":"e_1_3_2_1_14_1","unstructured":"Retrieved Oct 2024. ZKsync Era: A ZK Rollup For Scaling Ethereum. https:\/\/github.com\/matter-labs\/zksync-era."},{"key":"e_1_3_2_1_15_1","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"William E","year":"2023","unstructured":"William E Bodell III, Sajad Meisami, and Yue Duan. 2023. Proxy hunting: Un- derstanding and characterizing proxy-based upgradeable smart contracts in blockchains. In 32nd USENIX Security Symposium (USENIX Security 23). 1829-- 1846."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833721"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/ASE51524.2021.9678888"},{"key":"e_1_3_2_1_18_1","unstructured":"Codeql. 2018. Codeql the code analysis engine. https:\/\/github.com\/github\/codeql."},{"key":"e_1_3_2_1_19_1","unstructured":"Compound. 2024. Compound.Finance. https:\/\/compound.finance\/."},{"key":"e_1_3_2_1_20_1","unstructured":"ConsenSys. 2022. Mythril: security analysis tool for EVM bytecode. https:\/\/github.com\/ConsenSys\/mythril\/."},{"key":"e_1_3_2_1_21_1","unstructured":"Carbon DApp. 2021. Carbon DApp Front-end. https:\/\/github.com\/Switcheo\/carbon-js-sdk\/blob\/7c39e0ccfdc5518374501a3f2243ea11c8997c92\/src\/constant\/eip712.ts#L101C1-L106C2."},{"key":"e_1_3_2_1_22_1","volume-title":"Industry Report","year":"2023","unstructured":"DappRadar. 2024. Dapp Industry Report 2023. https:\/\/dappradar.com\/blog\/dapp-industry-\\protect\\penalty-\\@Mreport-2023-defi-nft-web3-games."},{"key":"e_1_3_2_1_23_1","unstructured":"DappRadar. 2024. Top DApps ranking. https:\/\/dappradar.com\/rankings\/protocol\/ethereum'sort=totalBalanceInFiat&order=desc."},{"key":"e_1_3_2_1_24_1","volume-title":"Compiler techniques for code compaction. ACM Transactions on Programming languages and Systems (TOPLAS) 22, 2","author":"Debray Saumya K","year":"2000","unstructured":"Saumya K Debray, William Evans, Robert Muth, and Bjorn De Sutter. 2000. Compiler techniques for code compaction. ACM Transactions on Programming languages and Systems (TOPLAS) 22, 2 (2000), 378--415."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3559384"},{"key":"e_1_3_2_1_26_1","unstructured":"Ethereum. 2018. Ethereum Provider JavaScript API. https:\/\/eips.ethereum.org\/EIPS\/eip-1193."},{"key":"e_1_3_2_1_27_1","unstructured":"Ethereum. 2022. https:\/\/ethereum.org\/en\/."},{"key":"e_1_3_2_1_28_1","unstructured":"Etherscan. 2022. Real-world Transaction Example to transfer NFTs. https:\/\/etherscan.io\/tx\/0xee038a31ab6e3f06bd747a\\ b9dd0c3abafa48a51e969bcb666ecd3f22ff989589."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101764"},{"key":"e_1_3_2_1_30_1","volume-title":"CONFUZZIUS: A Data Dependency-Aware Hybrid Fuzzer for Smart Contracts. In European Symposium on Security and Privacy, Vienna 7--11","author":"Torres Christof Ferreira","year":"2021","unstructured":"Christof Ferreira Torres, Antonio Ken Iannillo, and Arthur Gervais. 2021. CONFUZZIUS: A Data Dependency-Aware Hybrid Fuzzer for Smart Contracts. In European Symposium on Security and Privacy, Vienna 7--11 September 2021."},{"key":"e_1_3_2_1_31_1","volume-title":"ETHBMC: A Bounded Model Checker for Smart Contracts. In 29th USENIX Security Symposium (USENIX Security 20)","author":"Frank Joel","year":"2020","unstructured":"Joel Frank, Cornelius Aschermann, and Thorsten Holz. 2020. ETHBMC: A Bounded Model Checker for Smart Contracts. In 29th USENIX Security Symposium (USENIX Security 20). 2757--2774."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/3276486"},{"key":"e_1_3_2_1_33_1","volume-title":"USENIX Security Symposium","volume":"10","author":"Guarnieri Salvatore","year":"2009","unstructured":"Salvatore Guarnieri and V Benjamin Livshits. 2009. GATEKEEPER: Mostly Static Enforcement of Security and Reliability Policies for JavaScript Code.. In USENIX Security Symposium, Vol. 10. 78--85."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/3238147.3238177"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"crossref","unstructured":"Sukrit Kalra Seep Goel Mohan Dhawan and Subodh Sharma. 2018. Zeus: analyzing safety of smart contracts.. In Ndss. 1--12.","DOI":"10.14722\/ndss.2018.23082"},{"key":"e_1_3_2_1_36_1","volume-title":"2023 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 1059--1076","author":"Kang Mingqing","year":"2023","unstructured":"Mingqing Kang, Yichao Xu, Song Li, Rigel Gjomemo, Jianwei Hou, VN Venkatakrishnan, and Yinzhi Cao. 2023. Scaling JavaScript Abstract Interpretation to Detect and Exploit Node. js Taint-style Vulnerability. In 2023 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 1059--1076."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2022.24308"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/2635868.2635904"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/3183440.3183495"},{"key":"e_1_3_2_1_40_1","unstructured":"looksrare. 2024. Looksrare NFT marketplace. https:\/\/looksrare.org\/."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978309"},{"key":"e_1_3_2_1_42_1","unstructured":"MetaMask. 2024. A crypto wallet & gateway to blockchain apps. https:\/\/metamask.io\/."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/EUROSP60621.2024.00022"},{"key":"e_1_3_2_1_44_1","volume-title":"Bitcoin: A Peer-to-Peer Electronic Cash System","author":"Nakamoto Satoshi","year":"2009","unstructured":"Satoshi Nakamoto. 2009. Bitcoin: A Peer-to-Peer Electronic Cash System. http:\/\/www.bitcoin.org\/bitcoin.pdf."},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380334"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/3274694.3274743"},{"key":"e_1_3_2_1_47_1","unstructured":"Trail of Bits. 2024. Manticore: symbolic execution tool for smart contract. https:\/\/github.com\/trailofbits\/manticore\/."},{"key":"e_1_3_2_1_48_1","unstructured":"OpenSea. 2024. OpenSea NFT marketplace. https:\/\/opensea.io\/."},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00024"},{"key":"e_1_3_2_1_50_1","unstructured":"Remix Project. 2024. Remix IDE. https:\/\/remix-project.org."},{"key":"e_1_3_2_1_51_1","unstructured":"Yos Riady. 2019. Signing and Verifying Ethereum Signatures. https:\/\/www.codementor.io\/@yosriady\/\\protect\\penalty-\\@Msigning-and-verifying-ethereum-\\protect\\penalty-\\@Msignatures-vhe8ro3h6."},{"key":"e_1_3_2_1_52_1","unstructured":"Slither. 2024. Slither the Solidity source analyzer. https:\/\/github.com\/crytic\/slither\/."},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00032"},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00085"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1145\/3106741"},{"key":"e_1_3_2_1_56_1","volume-title":"Synthetix: Derivatives Liquidity Protocol. https:\/\/synthetix.io.","year":"2024","unstructured":"Synthetix. 2024. Synthetix: Derivatives Liquidity Protocol. https:\/\/synthetix.io."},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/3194113.3194115"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/3274694.3274737"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1145\/2610384.2610385"},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243780"},{"key":"e_1_3_2_1_61_1","unstructured":"Uniswap. 2024. Uniswap Protocol. https:\/\/uniswap.org\/."},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2023.3237123"},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1145\/3468264.3468568"},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1145\/3368089.3417064"},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380388"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1145\/3324884.3416553"},{"key":"e_1_3_2_1_67_1","volume-title":"xFuzz: Machine Learning Guided Cross-Contract Fuzzing","author":"Xue Yinxing","year":"2022","unstructured":"Yinxing Xue, Jiaming Ye, Wei Zhang, Jun Sun, Lei Ma, Haijun Wang, and Jianjun Zhao. 2022. xFuzz: Machine Learning Guided Cross-Contract Fuzzing. IEEE Transactions on Dependable and Secure Computing (2022)."},{"key":"e_1_3_2_1_68_1","doi-asserted-by":"publisher","DOI":"10.1145\/3597926.3598057"},{"key":"e_1_3_2_1_69_1","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3616584"},{"key":"e_1_3_2_1_70_1","volume-title":"Demystifying and Detecting Cryptographic Defects in Ethereum Smart Contracts. In IEEE\/ACM International Conference on Software Engineering.","author":"Zhang Jiashuo","year":"2024","unstructured":"Jiashuo Zhang, Yiming Shen, Jiachi Chen, Jianzhong Su, Yanlin Wang, Ting Chen, Jianbo Gao, and Zhong Chen. 2024. Demystifying and Detecting Cryptographic Defects in Ethereum Smart Contracts. In IEEE\/ACM International Conference on Software Engineering."},{"key":"e_1_3_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.1145\/3468264.3468546"},{"key":"e_1_3_2_1_72_1","volume-title":"DAppSCAN: Building Large-Scale Datasets for Smart Contract Weaknesses in DApp Projects. arXiv preprint arXiv:2305.08456","author":"Zheng Zibin","year":"2023","unstructured":"Zibin Zheng, Jianzhong Su, Jiachi Chen, David Lo, Zhijie Zhong, and Mingxi Ye. 2023. DAppSCAN: Building Large-Scale Datasets for Smart Contract Weaknesses in DApp Projects. arXiv preprint arXiv:2305.08456 (2023)."}],"event":{"name":"WWW '25: The ACM Web Conference 2025","location":"Sydney NSW Australia","acronym":"WWW '25","sponsor":["SIGWEB ACM Special Interest Group on Hypertext, Hypermedia, and Web"]},"container-title":["Proceedings of the ACM on Web Conference 2025"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3696410.3714686","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3696410.3714686","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T01:18:57Z","timestamp":1750295937000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3696410.3714686"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,4,22]]},"references-count":72,"alternative-id":["10.1145\/3696410.3714686","10.1145\/3696410"],"URL":"https:\/\/doi.org\/10.1145\/3696410.3714686","relation":{},"subject":[],"published":{"date-parts":[[2025,4,22]]},"assertion":[{"value":"2025-04-22","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}