arXiv · 2508.08064
On the Operational Resilience of CBDC: Threats and Prospects of Formal Validation for Offline Payments
Abstract
Information and communication technologies are by now employed in most human activities, including economics and finance. Modern computers have reached an extraordinary power in terms of information processing, storage, retrieval, and transmission. However, several results of theoretical computer science imply the impossibility of certifying software quality in general. With the exception of safety-critical systems, this has primarily concerned information processed by confined systems, with limited socio-economic consequences. In the emerging era of technologies for exchanging tokenized assets and digital money over the Internet, such as in particular central bank digital currency (CBDC), even a minor bug could trigger a financial collapse. Although the aforementioned impossibility results cannot be overcome in an absolute sense, there exist formal methods that can provide correctness assertions for software system models under suitable conditions. We advocate their use to validate the operational resilience of software infrastructures for CBDC by framing the offline payment problem, organizing its threat landscape, and outlining a formal methods methodology, illustrated by a minimal proof of concept, that we argue should underpin CBDC design and deployment.
Explore related subjects
Keep this discovery
Marco Bernardo, Federico Calandra, Andrea Esposito, Francesco Fabris. 2025-08-11. On the Operational Resilience of CBDC: Threats and Prospects of Formal Validation for Offline Payments. https://arxiv.org/abs/2508.08064
Cite the original work for its findings. Save a collection to share your selection of sources.