Smart Contract Auditing via Multi-Analyzer Aggregation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Smart contracts are vulnerable to security attacks due to existing vulnerabilities in their code, making it difficult and costly for developers to manually audit them, and existing automated tools are often unmaintained and hard to integrate into development workflows.

Innovation Solution

A smart contracts auditing system that extracts data from a blockchain, analyzes it using multiple security analyzers, aggregates the results, and generates a security report including a smart contract security score, which can be efficiently integrated into development workflows.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual audits of smart contract code are performed, then security vulnerabilities can be identified, but the process is costly in time and resources

Engineering Contradiction:
Improvesecurity vulnerability identificationVSAvoidaudit time and resource costs
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent replaces manual mechanical auditing processes with automated computational analysis systems. Multiple security analyzers automatically scan smart contract code, execute test cases, and generate vulnerability reports without human intervention, thereby maintaining high reliability in vulnerability detection while dramatically reducing time and resource costs.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system creates virtual copies of smart contracts through formal verification models and simulation environments. These copies are analyzed using multiple analyzers that test various attack scenarios and edge cases, enabling comprehensive security auditing without risking the actual contract or requiring manual review of every code path.

Inventive Principle:
Principle #26Copying

2Productivity

If existing automated security tools are used, then audit efficiency improves, but the tools are unmaintained and difficult to integrate into development workflows

Engineering Contradiction:
Improveaudit efficiencyVSAvoidintegration difficulty and maintenance
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The patent creates a universal auditing platform that integrates multiple security analyzers with different specialized functions into a single cohesive system. This multi-functional platform can analyze various smart contract languages and frameworks through a unified interface, making it easy to integrate into different development workflows while maintaining high audit efficiency through automated parallel execution of multiple analysis tools.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20240202824A1Smart contract security auditing
Publication Date: 2024.06.20 HAMAD BIN KHALIFA UNIVERSITY
  • US20240202824A1 patent drawing
  • US20240202824A1 patent drawing
  • US20240202824A1 patent drawing

AI summary

Smart contract auditing may be provided by: receiving a request to audit a prospective smart contract; executing a smart contracts auditing model; extracting raw data from at least one blockchain using the smart contracts auditing model; analyzing the raw data using at least two security analyzers; aggregating the output of the at least two security analyzers according to an aggregator; and generating a smart contracts security report from the aggregated output for the prospective smart contract, which includes a smart contracts security score.