Blockchain Smart Contract Security: Threats and Mitigation Strategies in a Lifecycle Perspective
作者
Detian Liu,Jianbiao Zhang,Yifan Wang,Hong Shen,Zhaoqian Zhang,Tao Ye
出处
期刊:ACM Computing Surveys [Association for Computing Machinery] 日期:2025-09-19卷期号:58 (4): 1-34被引量:1
标识
DOI:10.1145/3769013
摘要
Smart contracts, as self-executing agreements on blockchain platforms, promise to eliminate intermediaries and enhance transaction efficiency. However, their susceptibility to security vulnerabilities not only poses risks of substantial financial losses but also erodes trustworthiness in blockchain ecosystems, driving extensive research into enhancing both their security and trustworthiness. We provide a comprehensive review of the current state of smart contract assurance, covering the primary security threats and mitigation strategies throughout the contract lifecycle–from development to deployment, execution, and maintenance. It evaluates both established and advanced vulnerability detection techniques while exploring underexamined areas, including automated repair, secure execution environments, and defenses against malicious attacks. We further propose a framework to ensure the holistic security and trustworthiness of smart contracts, and discuss future directions for research and development, emphasizing the need to address both technical and regulatory challenges to promote widespread adoption.