Caichang Tu

dblp:327/9154 · DBLP profile ↗
← Back
2ranked-venue papers
0as first author
2since 2021 · last 2026
0009-0000-5358-1943ORCID · reported

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 1 · 1 since 2021Software engineering, systems software and programming languages · 1 · 1 since 2021

Expertise — from the expertise taxonomy: the topics of the expert's papers under the CCF categories. A weight counts papers with recency: 1 for a paper about the topic, 0.3 when the topic is its context, halved every five years.

Network and information security
2 papers
Blockchain and cryptocurrency security · 100%
Software engineering, system software, and programming languages
2 papers
Program analysis · 100%

Topics — the 5 heaviest of 5, each with the papers that count most for it

TopicWeightPapersLastEvidence papers
Blockchain and cryptocurrency security › smart contract security
vulnerability detection
1.012026
WACANA: A Concolic Analyzer for Detecting On-chain Data Vulnerabilities in WASM Smart Contracts · ACM Trans. Softw. Eng. Methodol. 2026
Blockchain and cryptocurrency security
smart contract security
0.712023
Automated Inference on Financial Security of Ethereum Smart Contracts · USENIX Security Symposium 2023
Program analysis
smart contract analysis
0.712023
Automated Inference on Financial Security of Ethereum Smart Contracts · USENIX Security Symposium 2023
Program analysis
static analysis
0.712023
Automated Inference on Financial Security of Ethereum Smart Contracts · USENIX Security Symposium 2023
Program analysis › symbolic execution
dynamic symbolic execution
0.312026
WACANA: A Concolic Analyzer for Detecting On-chain Data Vulnerabilities in WASM Smart Contracts · ACM Trans. Softw. Eng. Methodol. 2026

Methods — techniques the papers use, named apart from their topics

symbolic execution · 2.0concrete execution · 2.0concolic execution · 2.0automated inference · 1.3
YearPublicationVenuePosition
2026 WACANA: A Concolic Analyzer for Detecting On-chain Data Vulnerabilities in WASM Smart Contracts
abstract
WebAssembly (WASM) has emerged as a crucial technology in smart contract development for several blockchain platforms. Unfortunately, since their introduction, WASM smart contracts have been subject to several security incidents caused by contract vulnerabilities, resulting in substantial economic losses. However, existing tools for detecting WASM contract vulnerabilities have accuracy limitations, one of the main reasons being the coarse-grained emulation of the on-chain data APIs. In this article, we introduce WACANA, an analyzer for WASM contracts that accurately detects vulnerabilities through fine-grained emulation of on-chain data APIs. WACANA precisely simulates both the structure of on-chain data tables and their corresponding API functions, and integrates concrete and symbolic execution within a coverage-guided loop to balance accuracy and efficiency. Evaluations on a vulnerability dataset of 2,012 contracts show WACANA outperforming state-of-the-art tools in accuracy. Further validation on 5,602 real-world contracts confirms WACANA’s practical effectiveness.
Wansen Wang 0001, Caichang Tu, Zhaoyi Meng, Wenchao Huang 0001, Yan Xiong 0001
ACM Trans. Softw. Eng. Methodol.2
2023 Automated Inference on Financial Security of Ethereum Smart Contracts
Wansen Wang 0001, Wenchao Huang 0001, Zhaoyi Meng, Yan Xiong 0001, Fuyou Miao 0001, Xianjin Fang, Caichang Tu, Renjie Ji
USENIX Security Symposium7