Empirical Analysis of Denial-of-Service Attacks in the Bitcoin Ecosystem

被引:126
作者
Vasek, Marie [1 ]
Thornton, Micah [1 ]
Moore, Tyler [1 ]
机构
[1] So Methodist Univ, Dept Comp Sci & Engn, Dallas, TX 75275 USA
来源
FINANCIAL CRYPTOGRAPHY AND DATA SECURITY: FC 2014 WORKSHOPS, BITCOIN AND WAHC 2014 | 2014年 / 8438卷
关键词
D O I
10.1007/978-3-662-44774-1_5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We present an empirical investigation into the prevalence and impact of distributed denial-of-service (DDoS) attacks on operators in the Bitcoin economy. To that end, we gather and analyze posts mentioning "DDoS" on the popular Bitcoin forum bitcointalk.org. Starting from around 3 000 different posts made between May 2011 and October 2013, we document 142 unique DDoS attacks on 40 Bitcoin services. We find that 7% of all known operators have been attacked, but that currency exchanges, mining pools, gambling operators, eWallets, and financial services are much more likely to be attacked than other services. Not coincidentally, we find currency exchanges and mining pools are much more likely to have DDoS protection such as CloudFlare, Incapsula, or Amazon Cloud. We show that those services that have been attacked are more than three times as likely to buy anti-DDoS services than operators who have not been attacked. We find that big mining pools (those with historical hashrate shares of at least 5%) are much more likely to be DDoSed than small pools. We investigate Mt. Gox as a case study for DDoS attacks on currency exchanges and find a disproportionate amount of DDoS reports made during the large spike in trading volume and exchange rates in spring 2013. We conclude by outlining future opportunities for researching DDoS attacks on Bitcoin.
引用
收藏
页码:57 / 71
页数:15
相关论文
共 23 条
[1]  
Amazon Web Services, ANN AM EC2 PUBL IP R
[2]  
[Anonymous], 2016, Communications of the ACM, DOI [10.1145/2504730.2504747, DOI 10.1145/2504730.2504747, DOI 10.1145/2896384, 10.1145/2896384]
[3]  
Barber S., 2012, FINANCIAL CRYPTOGRAP, P399, DOI DOI 10.1007/978-3-642-32946-3_29
[4]  
Bitcoin.it wiki, TRAD
[5]  
Bitcoin Wiki, CAT POOL OP
[6]   ACHIEVING ELECTRONIC PRIVACY [J].
CHAUM, D .
SCIENTIFIC AMERICAN, 1992, 267 (02) :96-101
[7]  
Christin N., 2013, Proceedings of the 22nd International Conference on World Wide Web, WWW'13, P213, DOI DOI 10.1145/2488388.2488408
[8]  
CloudFlare, CLOUDFL IP RANG
[9]  
Eyal I., 2014, LECT NOTES IN PRESS
[10]  
Gallu Joshua, 2013, BLOOMBERG