Multi-Certificate Attacks against Proof-of-Elapsed-Time and Their Countermeasures
Huibo Wang, Guoxing Chen, Yinqian Zhang, Zhiqiang Lin
Abstract
—Proof-of-Elapsed-Time (P O ET) is a blockchain consensus protocol in which each participating node is required to wait for the passage of a specified time duration before it can participate in the block leader election in each round. It relies on trusted execution environments, such as Intel SGX, to ensure its security, and has been implemented in Hyperledger Sawtooth and used in many real-world settings. This paper examines the security issues including fairness guarantees of the Sawtooth’s P O ET design and implementation, and discovers a new category of security attacks against P O ET, dubbed Multi-Certificate Attacks, which allows a malicious node to unfairly create multiple Certificate s in each round of block leader election and select the one that maximizes her probability of winning. We have systematically analyzed the root causes of these attacks and assisted the Sawtooth community to fix several vulnerabilities in the latest version of P O ET. To further mitigate the identified threats, we propose a new design of P O ET in this paper, which we call P O ETA, that can be used to address the remaining vulnerabilities we have discovered. We have implemented P O ETA and evaluated its security and performance.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext b9fb6bf7-791f-44cc-b296-a51d8b936b82Builds on7
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin et al.USENIX Security 2018 · 1,175 citations
- RIDL: Rogue In-Flight Data LoadStephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo et al.S&P 2019 · 408 citations
- LVI: Hijacking Transient Execution through Microarchitectural Load Value InjectionJo Van Bulck, Daniel Moghimi, Michael Schwarz, Moritz Lipp et al.S&P 2020 · 275 citations
- ROTE: Rollback Protection for Trusted ExecutionSinisa Matetic, Mansoor Ahmed, Kari Kostiainen, Aritra Dhar et al.USENIX Security 2017 · 249 citations
- CacheOut: Leaking Data on Intel CPUs via Cache EvictionsStephan van Schaik, Marina Minkin, Andrew Kwong, Daniel Genkin et al.S&P 2021 · 158 citations
Related papers
- Exploiting PoH Time Semantics in Solana via Re-Anchoring and ForkingQuanbi Feng, Pinshen Xu, Jianyu Niu, Cong Wang et al.USENIX Security 2026
- REM: Resource-Efficient Mining for BlockchainsFan Zhang, Ittay Eyal, Robert Escriva, Ari Juels et al.USENIX Security 2017 · 124 citations
- Time-manipulation Attack: Breaking Fairness against Proof of Authority AuraXinrui Zhang, Rujia Li, Qin Wang, Qi Wang et al.WWW 2023 · 9 citations
- Lay Down the Common Metrics: Evaluating Proof-of-Work Consensus Protocols' SecurityRen Zhang, Bart PreneelS&P 2019 · 113 citations
- SCRAPS: Scalable Collective Remote Attestation for Pub-Sub IoT Networks with Untrusted Proxy VerifierLukas Petzi, Ala Eddine Ben Yahya, Alexandra Dmitrienko, Gene Tsudik et al.USENIX Security 2022
