IRTUM – Institutional Repository of the Technical University of Moldova

A multi - agent framework for auditing Smart contracts

Show simple item record

dc.contributor.author SPATARU, Alexe Luca
dc.contributor.author CARABAS, Costin
dc.contributor.author TURCANU, Dinu
dc.date.accessioned 2026-02-18T16:12:36Z
dc.date.available 2026-02-18T16:12:36Z
dc.date.issued 2025
dc.identifier.citation SPATARU, Alexe Luca; Costin CARABAS and Dinu TURCANU. A multi - agent framework for auditing Smart contracts. In: 24th RoEduNet International Conference Networking in Education and Research, Chisinau, Republic of Moldova, 17-19 September, 2025. Universitatea Politehnică din Bucureşti. IEEE, 2025, pp. 1-6. ISBN 979-8-3315-5714-0, eISBN 979-8-331-55713-3, ISSN 2068-1038, eISSN 2247-5443. en_US
dc.identifier.isbn 979-8-3315-5714-0
dc.identifier.isbn 979-8-331-55713-3
dc.identifier.issn 2068-1038
dc.identifier.issn 2247-5443
dc.identifier.uri https://doi.org/10.1109/RoEduNet68395.2025.11208388
dc.identifier.uri https://repository.utm.md/handle/5014/35305
dc.description Acces full text: https://doi.org/10.1109/RoEduNet68395.2025.11208388 en_US
dc.description.abstract Smart contracts power a vast array of blockchain applications, securing billions of dollars on decentralized finance, but their immutable nature turns every vulnerability into a permanent exploitable liability. Although automated security tools can efficiently detect many issues, their high false positive rates and lack of trust still require manual audits, which are costly and introduce deployment delays. In this paper, we present an end to end AI augmented auditing framework that leverages a multi-agent pipeline for comprehensive vulnerability detection and automated exploit generation. First, we review existing approaches such as static analysis, fuzzing, symbolic execution, formal verification, and machine learning methods, highlighting their strengths, limitations, and real world deployment experience. Building on this survey, we introduce a multi agent architecture composed of a Distributor Agent, an Attack Planner Agent, an Exploit Generator Agent, and an Audit Report Generator Agent. The pipeline ingests smart contract source code, documen-tation, and test suites to outline stepwise attack strategies and synthesize ready to compile Solidity exploit code. Exploits are compiled and validated in a containerized environment, enabling automated verification of attack effectiveness. We outline a validation strategy for future work, more specifically, applying the pipeline to capture the flag challenges and online bug bounty platforms, and we describe plans for prompt fine tuning, retrieval augmented generation, and formal verification integration to further enhance detection accuracy and exploit reliability. Our proposed framework promises a more comprehensive, scalable, and cost effective approach to smart contract security verification. en_US
dc.language.iso en en_US
dc.publisher IEEE (Institute of Electrical and Electronics Engineers) en_US
dc.rights Attribution-NonCommercial-NoDerivs 3.0 United States *
dc.rights.uri http://creativecommons.org/licenses/by-nc-nd/3.0/us/ *
dc.subject smart contracts en_US
dc.subject auditing en_US
dc.subject exploit generation en_US
dc.subject ai agents en_US
dc.title A multi - agent framework for auditing Smart contracts en_US
dc.type Article en_US


Files in this item

The following license files are associated with this item:

This item appears in the following Collection(s)

Show simple item record

Attribution-NonCommercial-NoDerivs 3.0 United States Except where otherwise noted, this item's license is described as Attribution-NonCommercial-NoDerivs 3.0 United States

Search DSpace


Browse

My Account