Smart Contracts- Vulnerabilities, CodeLlama Usage and Gas Driven Detection

Natan Katz, Natan Katz · Advances in Knowledge-Based Systems Data Science and Cybersecurity · 2025

Smart contracts are a major tool in Ethereum transactions. Therefore, hackers can exploit them by generating malicious code and using their vulnerabilities to perform malicious transactions. This paper presents two successful approaches for detecting malicious contracts: one uses opcode and relies on GPT2, and the other uses the Solidity source and a LORA finetuned CodeLlama. Finally, we present an XGBOOST model that combines gas properties and Hexadecimal signatures for detecting malicious transactions. This approach relies on early assumptions that maliciousness is manifested by the uncommon usage of the contracts’ functions and the effort to pursue the transaction.

Read the paper · More papers on PaperTik