CS Forum: Ghassan Karame

2016-03-07 15:30:00 2016-03-07 17:00:00 Europe/Helsinki CS Forum: Ghassan Karame Topic: Tampering with the Delivery of Blocks and Transactions in Bitcoin http://old.cs.aalto.fi/en/midcom-permalink-1e5ca63ec53a4d8ca6311e5b397f93a9703bf73bf73 Otakaari 2, 02150, Espoo

Topic: Tampering with the Delivery of Blocks and Transactions in Bitcoin

07.03.2016 / 15:30 - 17:00

Ghassan.jpg 

  Speaker: Ghassan Karame

  Host: Prof. N.Asokan

  Time: 15:30-17:00 (coffee from 15:15)

  Venue: T2 in CS Building

 

 

Tampering with the Delivery of Blocks and Transactions in Bitcoin

Abstract

Given the increasing adoption of Bitcoin, the number of transactions and the block sizes within the system are only expected to increase. To sustain its correct operation in spite of its ever-increasing use, Bitcoin implements a number of necessary optimizations and scalability measures. These measures limit the amount of information broadcast in the system to the minimum necessary. In this paper, we show that current scalability measures adopted by Bitcoin come at odds with the security of the system. More specifically, we show that an adversary can exploit these measures in order to effectively delay the propagation of transactions and blocks to specific nodes—without causing a network partitioning in the system. We show that this allows the adversary to easily mount Denial-of-Service attacks, considerably increase its mining advantage in the network, and double-spend transactions in spite of the current countermeasures adopted by Bitcoin. Based on our results, we propose a number of countermeasures in order to enhance the security of Bitcoin without deteriorating its scalability.

Bio

Ghassan is a Senior Researcher in the Security Group of NEC Research Laboratories in Germany. Before joining NEC Labs, he was working as a postdoctoral researcher in the Institute of Information Security of ETH Zurich, Switzerland. Ghassan holds a Master of Science degree in Information Networking from Carnegie Mellon University (CMU) and a PhD in Computer Science from ETH Zurich. Ghassan is interested in all aspects of security and privacy with a focus on cloud security, SDN/network security, and Bitcoin security.