arXiv · 2312.06510
Trusting a Smart Contract Means Trusting Its Owners: Understanding Centralization Risk
Abstract
Smart contract access control mechanisms can introduce centralization into supposedly decentralized ecosystems. In our view, such centralization is an overlooked risk of smart contracts that underlies well-known smart contract security incidents. Critically, mitigating the known vulnerability of missing permission verification by implementing authorization patterns can in turn introduce centralization. To delineate the issue, we define centralization risk and describe smart contract source code patterns for Ethereum and Algorand that can introduce it to smart contracts. We explain under which circumstances the centralization can be exploited. Finally, we discuss implications of centralization risk for different smart contract stakeholders.
Explore related subjects
Keep this discovery
Metin Lamby, Valentin Zieglmeier, Christian Ziegler. 2023-12-11. Trusting a Smart Contract Means Trusting Its Owners: Understanding Centralization Risk. https://doi.org/10.1109/brains59668.2023.10316813
Cite the original work for its findings. Save a collection to share your selection of sources.