On the Security Risks of the Blockchain

被引:49
作者
Zamani, Efpraxia [1 ]
He, Ying [1 ]
Phillips, Matthew [1 ]
机构
[1] De Montfort Univ, Gateway House, Leicester LE1 9BH, Leics, England
关键词
Security; standards; blockchain; root cause analysis; security recommendations; BITCOIN; INFORMATION; TECHNOLOGY;
D O I
10.1080/08874417.2018.1538709
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The adoption of blockchain technology is taking place at a fast pace. Security features inherent in blockchain make it resistant to attack, but they do not make it immune, and blockchain security risks do exists. This paper details the associated risks and concerns of the blockchain. We explore relevant standards and regulations related to blockchain and survey and analyze 38 blockchain incidents to determine the root cause to provide a view of the most frequent vulnerabilities exploited. The paper reviews six of these 38 incidents in greater detail. The selection is made by choosing incidents with the most frequent root cause. In the review of the incidents, the paper details what happened and why and aims to address what could have been done to mitigate the attack. The paper concludes with a recommendation on a framework to reduce cyber security risks when using blockchain technologies.
引用
收藏
页码:495 / 506
页数:12
相关论文
共 102 条
  • [1] 360TS, 2018, 360 DISC EP BLOCKCH
  • [2] Accenture, 2016, ED UN BLOCKCH WHY DI
  • [3] Adamowski J., 2013, POLISH BITCOIN EXCHA
  • [4] Allison D., 2015, ATLANTA BUSINESS CHR
  • [5] Altcoin News, 2018, ALTCOIN NEWS 0115
  • [6] Amsler DB, 2016, AUTOMATED INTERNET T
  • [7] [Anonymous], 2017, RISKS PRIV BLOCKCH M
  • [8] [Anonymous], 1999, Gramm-leach-bliley act, public law 106-102
  • [9] [Anonymous], 2018, BBC
  • [10] A Survey of Attacks on Ethereum Smart Contracts (SoK)
    Atzei, Nicola
    Bartoletti, Massimo
    Cimoli, Tiziana
    [J]. PRINCIPLES OF SECURITY AND TRUST (POST 2017), 2017, 10204 : 164 - 186