MAD-HTLC: Because HTLC is Crazy-Cheap to Attack
Itay Tsabary, Matan Yechieli, Alex Manuskin, Ittay Eyal
摘要
Smart Contracts and transactions allow users to implement elaborate constructions on cryptocurrency blockchains like Bitcoin and Ethereum. Many of these constructions, including operational payment channels and atomic swaps, use a building block called Hashed Time-Locked Contract (HTLC).In this work, we distill from HTLC a specification (HTLC-Spec), and present an implementation called Mutual-Assured-Destruction Hashed Time-Locked Contract (MAD-HTLC). MAD-HTLC employs a novel approach of utilizing the existing blockchain operators, called miners, as part of the design. If a user misbehaves, MAD-HTLC incentivizes the miners to confiscate all her funds. We prove MAD-HTLC’s security using the UC framework and game-theoretic analysis. We demonstrate MAD-HTLC’s efficacy and analyze its overhead by instantiating it on Bitcoin’s and Ethereum’s operational blockchains.Notably, current miner software makes only little effort to optimize revenue, since the advantage is relatively small. However, as the demand grows and other revenue components shrink, miners are more motivated to fully optimize their fund intake. By patching the standard Bitcoin client, we demonstrate such optimization is easy to implement, making the miners natural enforcers of MAD-HTLC.Finally, we extend previous results regarding HTLC vulnerability to bribery attacks. An attacker can incentivize miners to prefer her transactions by offering high transaction fees. We demonstrate this attack can be easily implemented by patching the Bitcoin client, and use game-theoretic tools to qualitatively tighten the known cost bound of such bribery attacks in presence of rational miners. We identify bribe opportunities occurring on the Bitcoin and Ethereum main networks where a few dollars bribe could yield tens of thousands of dollars in reward (e.g., 25K).
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper16
- SoK: Security and Privacy of Blockchain InteroperabilityAndré Augusto, Rafael Belchior, Miguel Correia, André Vasconcelos 等S&P 2024 · 被引用 90 次
- DETER: Denial of Ethereum Txpool sERvicesKai Li, Yibo Wang, Yuzhe TangCCS 2021 · 被引用 26 次
- zkCross: A Novel Architecture for Cross-Chain Privacy-Preserving AuditingYihao Guo, Minghui Xu, Xiuzhen Cheng, Dongxiao Yu 等USENIX Security 2024 · 被引用 23 次
- Uncle Maker: (Time)Stamping Out The Competition in EthereumAviv Yaish, Gilad Stern, Aviv ZoharCCS 2023 · 被引用 19 次
- Riggs: Decentralized Sealed-Bid AuctionsNirvan Tyagi, Arasu Arun, Cody Freitag, Riad S. Wahby 等CCS 2023 · 被引用 15 次
它引用的顶会 Paper15
- Making Smart Contracts SmarterLoi Luu, Duc-Hiep Chu, Hrishi Olickel, Prateek Saxena 等CCS 2016 · 被引用 2,306 次
- Flash Boys 2.0: Frontrunning in Decentralized Exchanges, Miner Extractable Value, and Consensus InstabilityPhilip Daian, Steven Goldfeder, Tyler Kell, Yunqi Li 等S&P 2020 · 被引用 607 次
- On the Instability of Bitcoin Without the Block RewardMiles Carlsten, Harry A. Kalodner, S. Matthew Weinberg, Arvind NarayananCCS 2016 · 被引用 387 次
- Anonymous Multi-Hop Locks for Blockchain Scalability and InteroperabilityGiulio Malavolta, Pedro Moreno-Sanchez, Clara Schneidewind, Aniket Kate 等NDSS 2019 · 被引用 305 次
- Bolt: Anonymous Payment Channels for Decentralized CurrenciesMatthew Green, Ian MiersCCS 2017 · 被引用 281 次
相关 Paper
- He-HTLC: Revisiting Incentives in HTLCSarisht Wadhwa, Jannis Stoeter, Fan Zhang, Kartik NayakNDSS 2023
- Mad-Dag: Protecting Blockchain Consensus From MEVRoi Bar Zur, Ittay Eyal, Aviv TamarS&P 2026 · 被引用 3 次
- Securing Lightning Channels against Rational MinersLukas Aumayr, Zeta Avarikioti, Matteo Maffei, Subhra MazumdarCCS 2024 · 被引用 4 次
- Resilient Alerting Protocols for BlockchainsMarwa Mouallem, Lorenz Breidenbach, Ittay Eyal, Ari JuelsCCS 2026
- SmartPool: Practical Decentralized Pooled MiningLoi Luu, Yaron Velner, Jason Teutsch, Prateek SaxenaUSENIX Security 2017 · 被引用 144 次
