Publication: Detecting smart contract vulnerabilities with Explainable AI
| dc.conference.date | MAY 21–23, 2026 | |
| dc.conference.location | Ankara | |
| dc.contributor.coauthor | Tahir, M. U. | |
| dc.contributor.coauthor | Khalid, U. | |
| dc.contributor.department | Department of Electrical and Electronics Engineering | |
| dc.contributor.department | Graduate School of Sciences and Engineering | |
| dc.contributor.department | KUIS AI (Koç University & İş Bank Artificial Intelligence Center) | |
| dc.contributor.kuauthor | Örsdemir, Alperen | |
| dc.contributor.kuauthor | Küpçü, Alptekin | |
| dc.contributor.schoolcollegeinstitute | GRADUATE SCHOOL OF SCIENCES AND ENGINEERING | |
| dc.contributor.schoolcollegeinstitute | College of Engineering | |
| dc.contributor.schoolcollegeinstitute | Research Center | |
| dc.date.accessioned | 2026-08-14T11:21:41Z | |
| dc.date.issued | 2026 | |
| dc.description.abstract | The rapid adoption of blockchain technologies has intensified the need for robust security mechanisms in Ethereum smart contracts (SC). Due to immutability, vulnerabilities cannot be patched after deployment, leading to significant financial losses. While traditional static and dynamic analysis tools are widely used, recent research has explored Machine Learning (ML) and Deep Learning (DL) techniques for automated vulnerability detection. However, many existing approaches focus on single-vulnerability detection or suffer from high false positive rates and limited interpretability. To address these challenges, this study proposes an interpretable DL framework for multi-vulnerability detection in SC. The proposed model employs a lightweight One-Dimensional Convolutional Neural Network (1D-CNN) integrated with Integrated Gradients from Explainable AI (XAI) to provide transparent model decisions. SC opcode sequences are transformed into RGB-encoded sequential representations, preserving execution order while enabling efficient feature extraction. This study adopts a multi-class classification setting to evaluate generalization across diverse vulnerability types. The framework is evaluated using the publicly available Messi-Q dataset, containing labeled samples across multiple vulnerability types. Experimental results demonstrate effective multi-class detection, with performance varying across vulnerability types due to dataset imbalance and structural similarities. The model maintains efficiency while providing interpretable insights for selected vulnerability classes. The model provides opcode-level attribution, revealing localized patterns for certain vulnerabilities and more distributed attention for others. These findings demonstrate the practicality of lightweight and interpretable DL methods for scalable SC security analysis. | |
| dc.description.harvestedfrom | Manual | |
| dc.description.indexedby | Scopus | |
| dc.description.publisherscope | International | |
| dc.description.readpublish | N/A | |
| dc.description.sponsoredbyTubitakEu | TÜBİTAK | |
| dc.description.sponsorship | Scientific and Technological Research Council of Türkiye (Grant: 123E462,124N941) | |
| dc.description.version | Published Version | |
| dc.identifier.ScopusPercentile | N/A | |
| dc.identifier.ScopusQuartile | N/A | |
| dc.identifier.WoSPercentile | N/A | |
| dc.identifier.WoSQuartile | N/A | |
| dc.identifier.doi | 10.1109/ichora69329.2026.11537218 | |
| dc.identifier.embargo | N/A | |
| dc.identifier.endpage | 6 | |
| dc.identifier.grantno | 123E462 | |
| dc.identifier.grantno | 124N941 | |
| dc.identifier.isbn | 9798331581503 | |
| dc.identifier.scopus | 2-s2.0-105042066678 | |
| dc.identifier.startpage | 1 | |
| dc.identifier.uri | http://doi.org/10.1109/ichora69329.2026.11537218 | |
| dc.identifier.uri | https://hdl.handle.net/20.500.14288/34384 | |
| dc.keywords | Blockchain | |
| dc.keywords | Ethereum | |
| dc.keywords | Smart contracts | |
| dc.keywords | Solidity | |
| dc.keywords | XAI | |
| dc.language | eng | |
| dc.publisher | IEEE | |
| dc.relation.affiliation | Koç University | |
| dc.relation.collection | Koç University Institutional Repository | |
| dc.relation.ispartof | 2026 8Th International Congress on Human-Computer Interaction, Optimization and Robotic Applications (Ichora) | |
| dc.relation.openaccess | N/A | |
| dc.rights | N/A | |
| dc.rights.uri | N/A | |
| dc.subject | Physical sciences | |
| dc.subject | Computer science | |
| dc.subject | Artificial intelligence | |
| dc.title | Detecting smart contract vulnerabilities with Explainable AI | |
| dc.type | Conference Proceeding | |
| dspace.entity.type | Publication | |
| relation.isOrgUnitOfPublication | 21598063-a7c5-420d-91ba-0cc9b2db0ea0 | |
| relation.isOrgUnitOfPublication | 3fc31c89-e803-4eb1-af6b-6258bc42c3d8 | |
| relation.isOrgUnitOfPublication | 77d67233-829b-4c3a-a28f-bd97ab5c12c7 | |
| relation.isOrgUnitOfPublication.latestForDiscovery | 21598063-a7c5-420d-91ba-0cc9b2db0ea0 | |
| relation.isParentOrgUnitOfPublication | 434c9663-2b11-4e66-9399-c863e2ebae43 | |
| relation.isParentOrgUnitOfPublication | 8e756b23-2d4a-4ce8-b1b3-62c794a8c164 | |
| relation.isParentOrgUnitOfPublication | d437580f-9309-4ecb-864a-4af58309d287 | |
| relation.isParentOrgUnitOfPublication.latestForDiscovery | 434c9663-2b11-4e66-9399-c863e2ebae43 |
