{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,2]],"date-time":"2026-07-02T05:53:23Z","timestamp":1782971603527,"version":"3.54.5"},"reference-count":128,"publisher":"Association for Computing Machinery (ACM)","issue":"6","funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"crossref","award":["62272145 and U21B2016"],"award-info":[{"award-number":["62272145 and U21B2016"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities of China","doi-asserted-by":"crossref","award":["B250201038"],"award-info":[{"award-number":["B250201038"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"crossref"}]},{"name":"CloudTech-RMIT Green Bitcoin Joint Research Program, and the Digital Finance CRC Industry PhD Scholarship"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Trans. Softw. Eng. Methodol."],"published-print":{"date-parts":[[2026,6,30]]},"abstract":"<jats:p>With the rapid development of blockchain technology, smart contract applications have become increasingly widespread. However, vulnerabilities in contracts may be exploited by attackers, causing serious financial losses. In recent years, learning-based approaches have gained prominence for their accuracy and efficiency by automatically extracting explicit syntactic or semantic features from a large number of smart contracts with minimal manual intervention. In this article, we conduct a comprehensive analysis and ultimately select 61 scientific publications to provide researchers, especially beginners, with a comprehensive understanding of the learning-based detection process and guidance on selecting appropriate code representations. We first introduce common types of vulnerabilities, detail uncovered vulnerabilities, and summarize datasets used in learning-based methods. Then, we elaborate on the general process of learning-based detection and classify existing publications based on code representations, including sequence, tree, graph, and mixed features. Finally, we summarize the progress of existing work and explore future research directions in this field.<\/jats:p>","DOI":"10.1145\/3750042","type":"journal-article","created":{"date-parts":[[2025,7,23]],"date-time":"2025-07-23T16:19:33Z","timestamp":1753287573000},"page":"1-46","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["A Review of Learning-based Smart Contract Vulnerability Detection: A Perspective on Code Representation"],"prefix":"10.1145","volume":"35","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-8947-0768","authenticated-orcid":false,"given":"Ben","family":"Wang","sequence":"first","affiliation":[{"name":"Key Laboratory of Water Big Data Technology of Ministry of Water Resources, College of Computer Science and Software Engineering, Hohai University, Nanjing, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-9263-1714","authenticated-orcid":false,"given":"Yanxiang","family":"Tong","sequence":"additional","affiliation":[{"name":"Key Laboratory of Water Big Data Technology of Ministry of Water Resources, College of Computer Science and Software Engineering, Hohai University, Nanjing, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8584-5795","authenticated-orcid":false,"given":"Shunhui","family":"Ji","sequence":"additional","affiliation":[{"name":"Key Laboratory of Water Big Data Technology of Ministry of Water Resources, College of Computer Science and Software Engineering, Hohai University, Nanjing, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7033-5688","authenticated-orcid":false,"given":"Hai","family":"Dong","sequence":"additional","affiliation":[{"name":"School of Computing Technologies &amp; Centre for Cyber Security Research and Innovation, RMIT University, Melbourne, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9082-3208","authenticated-orcid":false,"given":"Xiapu","family":"Luo","sequence":"additional","affiliation":[{"name":"Department of Computing &amp; Shenzhen Research Institute, Hong Kong Polytechnic University, Kowloon, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3594-408X","authenticated-orcid":false,"given":"Pengcheng","family":"Zhang","sequence":"additional","affiliation":[{"name":"Key Laboratory of Water Big Data Technology of Ministry of Water Resources, College of Computer Science and Software Engineering, Hohai University, Nanjing, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,5,13]]},"reference":[{"key":"e_1_3_2_2_2","article-title":"Bitcoin: A peer-to-peer electronic cash system","author":"Nakamoto Satoshi","year":"2008","unstructured":"Satoshi Nakamoto. 2008. Bitcoin: A peer-to-peer electronic cash system. Decentralized Business Review (2008). Retrieved from https:\/\/bitcoin.org\/bitcoin.pdf","journal-title":"Decentralized Business Review"},{"key":"e_1_3_2_3_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2019.2942301"},{"key":"e_1_3_2_4_2","unstructured":"Vitalik Buterin. 2013. Ethereum white paper. GitHub Repository 22\u201323."},{"key":"e_1_3_2_5_2","unstructured":"Wikipedia. 2023. Poly Network Exploit. Retrieved from https:\/\/en.wikipedia.org\/wiki\/Poly_Network_exploit"},{"key":"e_1_3_2_6_2","unstructured":"Wikipedia. 2016. The DAO (organization). Retrieved from https:\/\/en.wikipedia.org\/wiki\/The_DAO_(organization)"},{"key":"e_1_3_2_7_2","unstructured":"NVD. 2018. CVE\u20112018\u201110299: Integer Overflow in batchTransfer of Beauty Ecosystem Coin (BEC) ERC\u201120 Token. National Vulnerability Database. Retrieved from https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-10299"},{"key":"e_1_3_2_8_2","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978309"},{"key":"e_1_3_2_9_2","first-page":"54","article-title":"Smashing ethereum smart contracts for fun and real profit","volume":"9","author":"Mueller Bernhard","year":"2018","unstructured":"Bernhard Mueller. 2018. Smashing ethereum smart contracts for fun and real profit. In HITB SECCONF Amsterdam, Vol. 9, 54.","journal-title":"HITB SECCONF Amsterdam"},{"key":"e_1_3_2_10_2","doi-asserted-by":"publisher","DOI":"10.1109\/WETSEB.2019.00008"},{"key":"e_1_3_2_11_2","doi-asserted-by":"crossref","unstructured":"Sukrit Kalra Seep Goel Mohan Dhawan and Subodh Sharma. 2018. Zeus: Analyzing safety of smart contracts. In Network and Distributed Systems Security 1\u201312.","DOI":"10.14722\/ndss.2018.23082"},{"key":"e_1_3_2_12_2","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243780"},{"key":"e_1_3_2_13_2","first-page":"243","volume-title":"Proceedings of the 7th International Conference on Principles of Security and Trust (POST \u201918), Held As Part of the European Joint Conferences on Theory and Practice of Software (ETAPS \u201918)","author":"Grishchenko Ilya","year":"2018","unstructured":"Ilya Grishchenko, Matteo Maffei, and Clara Schneidewind. 2018. A semantic framework for the security analysis of ethereum smart contracts. In Proceedings of the 7th International Conference on Principles of Security and Trust (POST \u201918), Held As Part of the European Joint Conferences on Theory and Practice of Software (ETAPS \u201918). Springer, 243\u2013269."},{"key":"e_1_3_2_14_2","doi-asserted-by":"publisher","DOI":"10.1145\/3238147.3238177"},{"key":"e_1_3_2_15_2","doi-asserted-by":"publisher","DOI":"10.1145\/3395363.3404366"},{"key":"e_1_3_2_16_2","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380334"},{"issue":"7","key":"e_1_3_2_17_2","first-page":"2040","article-title":"Survey of software vulnerability mining methods based on machine learning","volume":"31","author":"Li Yun","year":"2020","unstructured":"Yun Li, Chenlin Huang, Zhongfeng Wang, Lu Yuan, and Xiao Chuan Wang. 2020. Survey of software vulnerability mining methods based on machine learning. Journal of Software 31, 7 (2020), 2040\u20132061.","journal-title":"Journal of Software"},{"key":"e_1_3_2_18_2","doi-asserted-by":"publisher","DOI":"10.1145\/3180155.3180197"},{"key":"e_1_3_2_19_2","doi-asserted-by":"publisher","DOI":"10.1145\/3391195"},{"key":"e_1_3_2_20_2","doi-asserted-by":"publisher","DOI":"10.1145\/3464421"},{"key":"e_1_3_2_21_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2023.107221"},{"issue":"8","key":"e_1_3_2_22_2","first-page":"3059","article-title":"Smart contract vulnerability detection technique: A survey","volume":"33","author":"Qian Peng","year":"2022","unstructured":"Peng Qian, Zhiguang Liu, Qianming He, Botao Huang, Dazhi Tian, and Xin Wang. 2022. Smart contract vulnerability detection technique: A survey. Journal of Software 33, 8 (2022), 3059\u20133085.","journal-title":"Journal of Software"},{"key":"e_1_3_2_23_2","doi-asserted-by":"crossref","first-page":"112160","DOI":"10.1016\/j.jss.2024.112160","article-title":"Vulnerability detection techniques for smart contracts: A systematic literature review","author":"Vidal Fernando Richter","year":"2024","unstructured":"Fernando Richter Vidal, Naghmeh Ivaki, and Nuno Laranjeiro. 2024. Vulnerability detection techniques for smart contracts: A systematic literature review. Journal of Systems and Software 217 (2024), 112160.","journal-title":"Journal of Systems and Software"},{"key":"e_1_3_2_24_2","first-page":"110","article-title":"A survey on ethereum smart contract vulnerability detection using machine learning","volume":"12117","author":"S\u00fcr\u00fcc\u00fc Onur","year":"2022","unstructured":"Onur S\u00fcr\u00fcc\u00fc, Uygar Yeprem, Connor Wilkinson, Waleed Hilal, S. Andrew Gadsden, John Yawney, Naseem Alsadi, and Alessandro Giuliano. 2022. A survey on ethereum smart contract vulnerability detection using machine learning. Disruptive Technologies in Information Sciences VI 12117 (2022), 110\u2013121.","journal-title":"Disruptive Technologies in Information Sciences VI"},{"key":"e_1_3_2_25_2","doi-asserted-by":"publisher","DOI":"10.32604\/cmes.2024.046758"},{"key":"e_1_3_2_26_2","doi-asserted-by":"crossref","unstructured":"Dalila Ressi Alvise Span\u00f2 Lorenzo Benetollo Carla Piazza Michele Bugliesi and Sabina Rossi. 2024. Vulnerability detection in ethereum smart contracts via machine learning: A qualitative analysis. arXiv:2407.18639. Retrieved from https:\/\/arxiv.org\/abs\/2407.18639","DOI":"10.1016\/j.bcra.2025.100390"},{"key":"e_1_3_2_27_2","doi-asserted-by":"publisher","DOI":"10.3390\/electronics13122295"},{"key":"e_1_3_2_28_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2019.12.019"},{"key":"e_1_3_2_29_2","unstructured":"ConsenSys Diligence. 2020. Smart contract weakness classification registry. Retrieved from https:\/\/swcregistry.io"},{"key":"e_1_3_2_30_2","unstructured":"Staffs M. Charters and Barbara Kitchenham. 2007. Guidelines for performing systematic literature reviews in software engineering."},{"key":"e_1_3_2_31_2","unstructured":"Wesley Joon-Wie Tann Xing Jie Han Sourav Sen Gupta and Yew-Soon Ong. 2018. Towards safer smart contracts: A sequence learning approach to detecting security threats. arXiv:1811.06632. Retrieved from https:\/\/arxiv.org\/abs\/1811.06632"},{"issue":"3","key":"e_1_3_2_32_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3442694","article-title":"Software testing effort estimation and related problems: A systematic literature review","volume":"54","author":"Bluemke Ilona","year":"2021","unstructured":"Ilona Bluemke and Agnieszka Malanowska. 2021. Software testing effort estimation and related problems: A systematic literature review. ACM Computing Surveys 54, 3 (2021), 1\u201338.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_33_2","doi-asserted-by":"publisher","DOI":"10.1145\/3238147.3240728"},{"key":"e_1_3_2_34_2","first-page":"1","volume-title":"Proceedings of the 2019 17th International Conference on Privacy, Security and Trust (PST)","author":"Momeni Pouyan","year":"2019","unstructured":"Pouyan Momeni, Yu Wang, and Reza Samavi. 2019. Machine learning model for smart contracts security analysis. In Proceedings of the 2019 17th International Conference on Privacy, Security and Trust (PST). IEEE, 1\u20136."},{"key":"e_1_3_2_35_2","doi-asserted-by":"publisher","DOI":"10.1109\/IOTSMS48152.2019.8939256"},{"key":"e_1_3_2_36_2","first-page":"433","volume-title":"Proceedings of the 13th International Conference on Network and System Security (NSS \u201919)","author":"Song Jingjing","year":"2019","unstructured":"Jingjing Song, Haiwu He, Zhuo Lv, Chunhua Su, Guangquan Xu, and Wei Wang. 2019. An efficient vulnerability detection model for ethereum smart contracts. In Proceedings of the 13th International Conference on Network and System Security (NSS \u201919). Springer, 433\u2013442."},{"key":"e_1_3_2_37_2","first-page":"394","volume-title":"Proceedings of the 2019 IEEE International Conference on Software Maintenance and Evolution (ICSME)","author":"Gao Zhipeng","year":"2019","unstructured":"Zhipeng Gao, Vinoj Jayasundara, Lingxiao Jiang, Xin Xia, David Lo, and John Grundy. 2019. Smartembed: A tool for clone and bug detection in smart contracts through structural code embedding. In Proceedings of the 2019 IEEE International Conference on Software Maintenance and Evolution (ICSME). IEEE, 394\u2013397."},{"key":"e_1_3_2_38_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNSE.2020.2968505"},{"key":"e_1_3_2_39_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2969429"},{"key":"e_1_3_2_40_2","doi-asserted-by":"publisher","DOI":"10.1088\/2633-1357\/abcd29"},{"key":"e_1_3_2_41_2","unstructured":"Nicolas Lesimple and Martin Jaggi. 2020. Exploring deep learning models for vulnerabilities detection in smart contracts."},{"issue":"2","key":"e_1_3_2_42_2","first-page":"1296","article-title":"Combining graph neural networks with expert knowledge for smart contract vulnerability detection","volume":"35","author":"Liu Zhenguang","year":"2021","unstructured":"Zhenguang Liu, Peng Qian, Xiaoyang Wang, Yuan Zhuang, Lin Qiu, and Xun Wang. 2021. Combining graph neural networks with expert knowledge for smart contract vulnerability detection. IEEE Transactions on Knowledge and Data Engineering 35, 2 (2021), 1296\u20131310.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"e_1_3_2_43_2","first-page":"378","volume-title":"Proceedings of the 2021 IEEE 32nd International Symposium on Software Reliability Engineering (ISSRE)","author":"Wu Hongjun","year":"2021","unstructured":"Hongjun Wu, Zhuo Zhang, Shangwen Wang, Yan Lei, Bo Lin, Yihao Qin, Haoyu Zhang, and Xiaoguang Mao. 2021. Peculiar: Smart contract vulnerability detection based on crucial data flow graph and pre-training techniques. In Proceedings of the 2021 IEEE 32nd International Symposium on Software Reliability Engineering (ISSRE). IEEE, 378\u2013389."},{"key":"e_1_3_2_44_2","unstructured":"Zhenguang Liu Peng Qian Xiang Wang Lei Zhu Qinming He and Shouling Ji. 2021. Smart contract vulnerability detection: From pure neural network to interpretable graph feature and expert pattern fusion. arXiv:2106.09282. Retrieved from https:\/\/arxiv.org\/abs\/2106.09282"},{"key":"e_1_3_2_45_2","first-page":"3283","volume-title":"Proceedings of the 29th International Conference on International Joint Conferences on Artificial Intelligence","author":"Zhuang Yuan","year":"2021","unstructured":"Yuan Zhuang, Zhenguang Liu, Peng Qian, Qi Liu, Xiang Wang, and Qinming He. 2021. Smart contract vulnerability detection using graph neural networks. In Proceedings of the 29th International Conference on International Joint Conferences on Artificial Intelligence, 3283\u20133290."},{"key":"e_1_3_2_46_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3050051"},{"key":"e_1_3_2_47_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICBC51069.2021.9461050"},{"key":"e_1_3_2_48_2","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN52387.2021.9534324"},{"key":"e_1_3_2_49_2","doi-asserted-by":"publisher","DOI":"10.1145\/3457337.3457841"},{"key":"e_1_3_2_50_2","first-page":"012004","article-title":"Attention-based machine learning model for smart contract vulnerability detection","volume":"1820","author":"Sun Yuhang","year":"2021","unstructured":"Yuhang Sun and Lize Gu. 2021. Attention-based machine learning model for smart contract vulnerability detection. Journal of Physics: Conference Series 1820 (2021), 012004. IOP Publishing.","journal-title":"Journal of Physics: Conference Series"},{"key":"e_1_3_2_51_2","unstructured":"Oliver Lutz Huili Chen Hossein Fereidooni Christoph Sendner Alexandra Dmitrienko Ahmad Reza Sadeghi and Farinaz Koushanfar. 2021. Escort: Ethereum smart contracts vulnerability detection using deep neural network and transfer learning. arXiv:2103.12607. Retrieved from https:\/\/arxiv.org\/abs\/2103.12607"},{"key":"e_1_3_2_52_2","doi-asserted-by":"publisher","DOI":"10.1145\/3463274.3463348"},{"issue":"1","key":"e_1_3_2_53_2","first-page":"5798033","article-title":"A novel machine learning-based analysis model for smart contract vulnerability","volume":"2021","author":"Xu Yingjie","year":"2021","unstructured":"Yingjie Xu, Gengran Hu, Lin You, and Chengtang Cao. 2021. A novel machine learning-based analysis model for smart contract vulnerability. Security and Communication Networks 2021, 1 (2021), 5798033.","journal-title":"Security and Communication Networks"},{"key":"e_1_3_2_54_2","first-page":"1361","volume-title":"Proceedings of the 30th USENIX Security Symposium (USENIX Security \u201921)","author":"So Sunbeom","year":"2021","unstructured":"Sunbeom So, Seongjoon Hong, and Hakjoo Oh. 2021. \\(\\{\\) SmarTest \\(\\}\\) : Effectively hunting vulnerable transaction sequences in smart contracts through language \\(\\{\\) Model-Guided \\(\\}\\) symbolic execution. In Proceedings of the 30th USENIX Security Symposium (USENIX Security \u201921), 1361\u20131378."},{"key":"e_1_3_2_55_2","doi-asserted-by":"publisher","DOI":"10.1145\/3551349.3560428"},{"key":"e_1_3_2_56_2","doi-asserted-by":"publisher","DOI":"10.1145\/3540250.3558927"},{"key":"e_1_3_2_57_2","doi-asserted-by":"publisher","DOI":"10.3390\/s22093577"},{"key":"e_1_3_2_58_2","doi-asserted-by":"publisher","DOI":"10.3390\/s22124621"},{"key":"e_1_3_2_59_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3162065"},{"key":"e_1_3_2_60_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2022.3196269"},{"issue":"2","key":"e_1_3_2_61_2","first-page":"515","article-title":"Xfuzz: Machine learning guided cross-contract fuzzing","volume":"21","author":"Xue Yinxing","year":"2022","unstructured":"Yinxing Xue, Jiaming Ye, Wei Zhang, Jun Sun, Lei Ma, Haijun Wang, and Jianjun Zhao. 2022. Xfuzz: Machine learning guided cross-contract fuzzing. IEEE Transactions on Dependable and Secure Computing 21, 2 (2022), 515\u2013529.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_2_62_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2022.109289"},{"key":"e_1_3_2_63_2","doi-asserted-by":"publisher","DOI":"10.1145\/3543507.3583367"},{"key":"e_1_3_2_64_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2023.3317209"},{"key":"e_1_3_2_65_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2022.111550"},{"key":"e_1_3_2_66_2","first-page":"42","volume-title":"Proceedings of the International Conference on Algorithms and Architectures for Parallel Processing","author":"Zeng Shengqiang","year":"2023","unstructured":"Shengqiang Zeng, Hongwei Zhang, Jinsong Wang, and Kai Shi. 2023. Solgpt: A gpt-based static vulnerability detection model for enhancing smart contract security. In Proceedings of the International Conference on Algorithms and Architectures for Parallel Processing. Springer, 42\u201362."},{"key":"e_1_3_2_67_2","first-page":"568","volume-title":"Proceedings of the 2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE)","author":"Zhu Huijuan","year":"2023","unstructured":"Huijuan Zhu, Kaixuan Yang, Liangmin Wang, Zhicheng Xu, and Victor S. Sheng. 2023. Grabit: A sequential model-based framework for smart contract vulnerability detection. In Proceedings of the 2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE). IEEE, 568\u2013577."},{"key":"e_1_3_2_68_2","doi-asserted-by":"crossref","first-page":"270","DOI":"10.1109\/SmartTechCon57526.2023.10391767","volume-title":"Proceedings of the 2023 2nd International Conference on Smart Technologies for Smart Nation (SmartTechCon)","author":"Mittal Amit","year":"2023","unstructured":"Amit Mittal, Gunawan Widjaja, Renzon Daniel Cosme Pecho, R. Kiruba, Jesus Marino Falc\u00f3n Roque, and Alok Chandra. 2023. Blockchain based abstract syntax tree to detect vulnerability in iot-enabled smart contract. In Proceedings of the 2023 2nd International Conference on Smart Technologies for Smart Nation (SmartTechCon). IEEE, 270\u2013275."},{"key":"e_1_3_2_69_2","first-page":"280","volume-title":"Proceedings of the 2023 IEEE 23rd International Conference on Software Quality, Reliability, and Security Companion (QRS-C)","author":"Feng Miaomiao","year":"2023","unstructured":"Miaomiao Feng, Wei Mi, Xiaodan Zhang, Baojian Chen, and Mingming Huang. 2023. A smart contract vulnerability detection model based on multi-type features and pre-training techniques. In Proceedings of the 2023 IEEE 23rd International Conference on Software Quality, Reliability, and Security Companion (QRS-C). IEEE, 280\u2013289."},{"key":"e_1_3_2_70_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2023.111705"},{"key":"e_1_3_2_71_2","first-page":"556","volume-title":"Proceedings of the2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE)","author":"Yu Lei","year":"2023","unstructured":"Lei Yu, Junyi Lu, Xianglong Liu, Li Yang, Fengjun Zhang, and Jiajia Ma. 2023. Pscvfinder: A prompt-tuning based framework for smart contract vulnerability detection. Proceedings of the In 2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE). IEEE, 556\u2013567."},{"key":"e_1_3_2_72_2","unstructured":"Isaac David Liyi Zhou Kaihua Qin Dawn Song Lorenzo Cavallaro and Arthur Gervais. 2023. Do you still need a manual smart contract audit? arXiv:2306.12338. Retrieved from https:\/\/arxiv.org\/abs\/2306.12338"},{"issue":"9","key":"e_1_3_2_73_2","first-page":"4916","article-title":"Smart contract vulnerability detection based on automated feature extraction and feature interaction","volume":"36","author":"Li Lina","year":"2023","unstructured":"Lina Li, Yang Liu, Guodong Sun, and Nianfeng Li. 2023. Smart contract vulnerability detection based on automated feature extraction and feature interaction. IEEE Transactions on Knowledge and Data Engineering 36, 9 (2023), 4916\u20134929.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"e_1_3_2_74_2","doi-asserted-by":"publisher","DOI":"10.1049\/blc2.12046"},{"key":"e_1_3_2_75_2","unstructured":"Phan The Duy Nghi Hoang Khoa Nguyen Huu Quyen Le Cong Trinh Vu Trung Kien Trinh Minh Hoang and Van-Hau Pham. 2023. Vulnsense: Efficient vulnerability detection in ethereum smart contracts by multimodal learning with graph neural network and language model. arXiv:2309.08474. Retrieved from https:\/\/arxiv.org\/abs\/2309.08474"},{"key":"e_1_3_2_76_2","first-page":"578","volume-title":"Proceedings of the 2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE)","author":"Li Mengliang","year":"2023","unstructured":"Mengliang Li, Xiaoxue Ren, Han Fu, Zhuo Li, and Jianling Sun. 2023. Convmhsa-scvd: Enhancing smart contract vulnerability detection through a knowledge-driven and data-driven framework. In Proceedings of the 2023 IEEE 34th International Symposium on Software Reliability Engineering (ISSRE). IEEE, 578\u2013589."},{"key":"e_1_3_2_77_2","doi-asserted-by":"publisher","DOI":"10.1109\/TPS-ISA58951.2023.00044"},{"key":"e_1_3_2_78_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2023.103484"},{"key":"e_1_3_2_79_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2024.110238"},{"key":"e_1_3_2_80_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2023.111919"},{"key":"e_1_3_2_81_2","first-page":"1","volume-title":"Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering","author":"Chen Yizhou","year":"2024","unstructured":"Yizhou Chen, Zeyu Sun, Zhihao Gong, and Dan Hao. 2024. Improving smart contract security with contrastive learning-based vulnerability detection. In Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering, 1\u201311."},{"key":"e_1_3_2_82_2","doi-asserted-by":"publisher","DOI":"10.1145\/3605098.3636003"},{"issue":"3","key":"e_1_3_2_83_2","doi-asserted-by":"crossref","first-page":"63","DOI":"10.1007\/s10922-024-09832-w","article-title":"Enhancing bert-based language model for multi-label vulnerability detection of smart contract in blockcha","volume":"32","author":"Tong Van","year":"2024","unstructured":"Van Tong, Cuong Dao, Hai-Anh Tran, Truong X. Tran, and Sami Souihi. 2024. Enhancing bert-based language model for multi-label vulnerability detection of smart contract in blockcha. Journal of Network and Systems Management 32, 3 (2024), 63.","journal-title":"Journal of Network and Systems Management"},{"key":"e_1_3_2_84_2","first-page":"126","volume-title":"Proceedings of the 2024 IEEE Symposium on Security and Privacy (SP)","author":"Wang Sally Junsong","year":"2024","unstructured":"Sally Junsong Wang, Kexin Pei, and Junfeng Yang. 2024. Smartinv: Multimodal learning for smart contract invariant inference. In Proceedings of the 2024 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 126\u2013126."},{"key":"e_1_3_2_85_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639117"},{"key":"e_1_3_2_86_2","unstructured":"Wei Ma Daoyuan Wu Yuqiang Sun Tianwen Wang Shangqing Liu Jian Zhang Yue Xue and Yang Liu. 2024. Combining fine-tuning and llm-based agents for intuitive smart contract auditing with justifications. arXiv:2403.16073. Retrieved from https:\/\/arxiv.org\/abs\/2403.16073"},{"key":"e_1_3_2_87_2","unstructured":"Shihao Xia Shuai Shao Mengting He Tingting Yu Linhai Song and Yiying Zhang. 2024. Auditgpt: Auditing smart contracts with chatgpt. arXiv:2404.04306. Retrieved from https:\/\/arxiv.org\/abs\/2404.04306"},{"key":"e_1_3_2_88_2","unstructured":"Md Tauseef Alam Raju Halder and Abyayananda Maiti. 2024. Detection made easy: Potentials of large language models for solidity vulnerabilities. arXiv:2409.10574. Retrieved from https:\/\/arxiv.org\/abs\/2409.10574"},{"key":"e_1_3_2_89_2","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2024.3480010"},{"key":"e_1_3_2_90_2","doi-asserted-by":"publisher","DOI":"10.1145\/3654522.3654577"},{"key":"e_1_3_2_91_2","doi-asserted-by":"publisher","DOI":"10.1145\/3687251.3687253"},{"key":"e_1_3_2_92_2","first-page":"1","volume-title":"Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering","author":"Luo Feng","year":"2024","unstructured":"Feng Luo, Ruijie Luo, Ting Chen, Ao Qiao, Zheyuan He, Shuwei Song, Yu Jiang, and Sixing Li. 2024. Scvhunter: Smart contract vulnerability detection based on heterogeneous graph attention network. In Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering, 1\u201313."},{"key":"e_1_3_2_93_2","first-page":"139","volume-title":"Proceedings of the 2020 IEEE International Conference on Software Maintenance and Evolution (ICSME)","author":"Zhang Pengcheng","year":"2020","unstructured":"Pengcheng Zhang, Feng Xiao, and Xiapu Luo. 2020. A framework and dataset for bugs in ethereum smart contracts. In Proceedings of the 2020 IEEE International Conference on Software Maintenance and Evolution (ICSME). IEEE, 139\u2013150."},{"key":"e_1_3_2_94_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2020.2989002"},{"key":"e_1_3_2_95_2","first-page":"1447","volume-title":"Proceedings of the ACM on Software Engineering","volume":"1","author":"Li Kaixuan","year":"2024","unstructured":"Kaixuan Li, Yue Xue, Sen Chen, Han Liu, Kairan Sun, Ming Hu, Haijun Wang, Yang Liu, and Yixiang Chen. 2024. Static application security testing (SAST) tools for smart contracts: How far are we? Proceedings of the ACM on Software Engineering 1, FSE (2024), 1447\u20131470."},{"key":"e_1_3_2_96_2","doi-asserted-by":"crossref","first-page":"2444","DOI":"10.1109\/SP46215.2023.10179435","volume-title":"Proceedings of the 2023 IEEE Symposium on Security and Privacy (SP)","author":"Zhou Liyi","year":"2023","unstructured":"Liyi Zhou, Xihan Xiong, Jens Ernstberger, Stefanos Chaliasos, Zhipeng Wang, Ye Wang, Kaihua Qin, Roger Wattenhofer, Dawn Song, and Arthur Gervais. 2023. Sok: Decentralized finance (defi) attacks. In Proceedings of the 2023 IEEE Symposium on Security and Privacy (SP). IEEE, 2444\u20132461."},{"key":"e_1_3_2_97_2","unstructured":"NCC Group. 2018. Decentralized application security project (or dasp) top 10 of 2018."},{"key":"e_1_3_2_98_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2024.3383422"},{"issue":"14","key":"e_1_3_2_99_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3593293","article-title":"Security threat mitigation for smart contracts: A comprehensive survey","volume":"55","author":"Ivanov Nikolay","year":"2023","unstructured":"Nikolay Ivanov, Chenning Li, Qiben Yan, Zhiyuan Sun, Zhichao Cao, and Xiapu Luo. 2023. Security threat mitigation for smart contracts: A comprehensive survey. ACM Computing Surveys 55, 14s (2023), 1\u201337.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_100_2","unstructured":"SmartContractSecurity. 2022. Swc-Registry. Retrieved from https:\/\/swcregistry.io"},{"key":"e_1_3_2_101_2","unstructured":"SmartContractSecurity. 2022. Swc-106: Unprotected Selfdestruct Instruction. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-106"},{"key":"e_1_3_2_102_2","unstructured":"SmartContractSecurity. 2022. Swc-114: Transaction Order Dependence. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-114"},{"key":"e_1_3_2_103_2","unstructured":"SmartContractSecurity. 2022. Swc-111: Use of Deprecated Solidity Functions. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-111"},{"key":"e_1_3_2_104_2","unstructured":"SmartContractSecurity. 2022. Swc-117: Signature Malleability. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-117"},{"key":"e_1_3_2_105_2","unstructured":"SmartContractSecurity. 2022. Swc-121: Missing Protection against Signature Replay Attacks. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-121"},{"key":"e_1_3_2_106_2","unstructured":"SmartContractSecurity. 2022. Swc-124: Write to Arbitrary Storage Location. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-124"},{"key":"e_1_3_2_107_2","unstructured":"SmartContractSecurity. 2022. Swc-125: Incorrect Inheritance Order. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-125"},{"key":"e_1_3_2_108_2","unstructured":"SmartContractSecurity. 2022. Swc-127: Arbitrary Jump with Function Type Variable. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-127"},{"key":"e_1_3_2_109_2","unstructured":"SmartContractSecurity. 2022. Swc-130: Right-to-Left-Override Control Character (u+202e). Retrieved from https:\/\/swcregistry.io\/docs\/SWC-130"},{"key":"e_1_3_2_110_2","unstructured":"SmartContractSecurity. 2022. Swc-131: Presence of Unused Variables. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-131"},{"key":"e_1_3_2_111_2","unstructured":"SmartContractSecurity. 2022. Swc-132: Unexpected Ether Balance. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-132"},{"key":"e_1_3_2_112_2","unstructured":"SmartContractSecurity. 2022. Swc-133: Hash Collisions with Multiple Variable Length Arguments. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-133"},{"key":"e_1_3_2_113_2","unstructured":"SmartContractSecurity. 2022. Swc-134: Message Call with Hardcoded Gas Amount. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-134"},{"key":"e_1_3_2_114_2","unstructured":"SmartContractSecurity. 2022. Swc-135: Code with No Effects. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-135"},{"key":"e_1_3_2_115_2","unstructured":"SmartContractSecurity. 2022. Swc-136: Unencrypted Private Data On-Chain. Retrieved from https:\/\/swcregistry.io\/docs\/SWC-136"},{"key":"e_1_3_2_116_2","first-page":"615","volume-title":"Proceedings of the 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE)","author":"Zhang Zhuo","year":"2023","unstructured":"Zhuo Zhang, Brian Zhang, Wen Xu, and Zhiqiang Lin. 2023. Demystifying exploitable bugs in smart contracts. In Proceedings of the 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE). IEEE, 615\u2013627."},{"key":"e_1_3_2_117_2","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380364"},{"key":"e_1_3_2_118_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2024.3464539"},{"key":"e_1_3_2_119_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2022.3163614"},{"key":"e_1_3_2_120_2","doi-asserted-by":"publisher","DOI":"10.1145\/3395363.3397385"},{"key":"e_1_3_2_121_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2020.2971482"},{"key":"e_1_3_2_122_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2020.2993293"},{"key":"e_1_3_2_123_2","unstructured":"Chong Chen Jianzhong Su Jiachi Chen Yanlin Wang Tingting Bi Jianxing Yu Yanli Wang Xingwei Lin Ting Chen and Zibin Zheng. 2023. When chatgpt meets smart contract vulnerability detection: How far are we? arXiv:2309.05520. Retrieved from https:\/\/arxiv.org\/abs\/2309.05520"},{"key":"e_1_3_2_124_2","first-page":"169","volume-title":"Proceedings of the 2022 8th International Symposium on System Security, Safety, and Reliability (ISSSR)","author":"Yang Huiwen","year":"2022","unstructured":"Huiwen Yang, Jiaming Zhang, Xiguo Gu, and Zhanqi Cui. 2022. Smart contract vulnerability detection based on abstract syntax tree. In Proceedings of the 2022 8th International Symposium on System Security, Safety, and Reliability (ISSSR). IEEE, 169\u2013170."},{"key":"e_1_3_2_125_2","doi-asserted-by":"publisher","DOI":"10.1145\/3212695"},{"key":"e_1_3_2_126_2","first-page":"106","volume-title":"Proceedings of the 5th International Workshop on Computer-Aided Software Engineering","author":"Merlo E.","year":"1992","unstructured":"E. Merlo, K. Kontogiannis, and J. F. Girard. 1992. Structural and behavioral code representation for program understanding. In Proceedings of the 5th International Workshop on Computer-Aided Software Engineering. IEEE Computer Society, 106\u2013107."},{"key":"e_1_3_2_127_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2018.00120"},{"key":"e_1_3_2_128_2","doi-asserted-by":"publisher","DOI":"10.5555\/2349018"},{"issue":"12","key":"e_1_3_2_129_2","first-page":"2485","article-title":"Contractual security and privacy security of smart contract: A system mapping study","volume":"44","author":"Hu Tianyuan","year":"2021","unstructured":"Tianyuan Hu, Zecheng Li, Bixin Li, and Qihao Bao. 2021. Contractual security and privacy security of smart contract: A system mapping study. Chinese Journal of Computer 44, 12 (2021), 2485\u20132514.","journal-title":"Chinese Journal of Computer"}],"container-title":["ACM Transactions on Software Engineering and Methodology"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3750042","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,14]],"date-time":"2026-05-14T02:35:01Z","timestamp":1778726101000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3750042"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,13]]},"references-count":128,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2026,6,30]]}},"alternative-id":["10.1145\/3750042"],"URL":"https:\/\/doi.org\/10.1145\/3750042","relation":{},"ISSN":["1049-331X","1557-7392"],"issn-type":[{"value":"1049-331X","type":"print"},{"value":"1557-7392","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,5,13]]},"assertion":[{"value":"2025-01-07","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-07-16","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2026-05-13","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}