ECOOP 2026
Mon 29 June - Fri 3 July 2026 Brussels, Belgium
Fri 3 Jul 2026 14:00 - 14:22 at I.2.03 - Security & Smart Contracts Chair(s): Alejandro Russo

The decentralized and unregulated nature of cryptocurrencies, combined with their monetary value, has made them a vehicle for various illicit activities. One such activity is cryptojacking, an attack that uses stolen computing resources to mine cryptocurrencies without consent for profit. In-browser cryptojacking malware exploits high-performance web technologies such as WebAssembly to mine cryptocurrencies directly within the browser without file downloads. Although existing methods for cryptomining detection report high accuracy and low overhead, they are often susceptible to various forms of obfuscation, and due to the limited variety of cryptomining scripts in the wild, standard code obfuscation methods present a natural and appealing solution to avoid detection. To address these limitations, we propose using instruction-level data-flow graphs to detect cryptomining behavior. Data-flow graphs offer detailed structural insights into a program’s computations, making them suitable for characterizing proof-of-work algorithms, but they can be difficult to analyze due to their large size and susceptibility to noise and fragmentation under obfuscation. We present two techniques to simplify and compare data-flow graphs: (1) a graph simplification algorithm to reduce the computational burden of processing large and granular data-flow graphs while preserving local substructures; and (2) a subgraph similarity measure, the n-fragment inclusion score, based on fragment inclusion that is robust against noise and obfuscation. Using data-flow graphs as computation fingerprints, our detection framework PoT (Proof-of-Theft) was able to achieve high detection accuracy against standard obfuscations, outperforming existing detection methods.

Fri 3 Jul

Displayed time zone: Brussels, Copenhagen, Madrid, Paris change

14:00 - 15:30
Security & Smart ContractsTechnical Papers at I.2.03
Chair(s): Alejandro Russo Chalmers University of Technology; University of Gothenburg
14:00
22m
Talk
Proof-of-Theft: Dynamic Graph-based Fingerprinting of In-browser Cryptomining
Technical Papers
Tanapoom Sermchaiwong The Hong Kong University of Science and Technology, Jiasi Shen The Hong Kong University of Science and Technology
14:22
22m
Talk
Automatic Code and Test Generation of Smart Contracts from Coordination Models
Technical Papers
Elvis Konjoh Selabi Gran Sasso Science Institute and University of Camerino, Maurizio Murgia Gran Sasso Science Institute, António Ravara Nova University of Lisbon, Emilio Tuosto Gran Sasso Science Institute, L'Aquila, Italy
14:45
22m
Talk
Typing Fallback Functions: A Semantic Approach to Type Safe Smart Contracts
Technical Papers
Stian Lybech Reykjavik University, Daniele Gorla Department of Computer Science, Sapienza University of Rome, Luca Aceto Reykjavik University
15:07
22m
Talk
Efficient Symbolic Execution of Software under Fault Attacks
Technical Papers
Yuzhou Fang University of Southern California, Chenyu Zhou University of Southern California, Jingbo Wang Purdue University, Chao Wang University of Southern California