Assessing the Threat of Blockchain-based Botnets

被引:11
|
作者
Boeck, Leon [1 ]
Alexopoulos, Nikolaos [1 ]
Saracoglu, Emine [1 ]
Muehlhaeuser, Max [1 ]
Vasilomanolakis, Emmanouil [2 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
[2] Aalborg Univ, Aalborg, Denmark
关键词
D O I
10.1109/ecrime47957.2019.9037600
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Time and time again the security community has faced novel threats that were previously never analyzed, sometimes with catastrophic results. To avoid this, proactive analysis of envisioned threats is of great importance. One such threat is blockchain-based botnets. Bitcoin, and blockchain-based decentralized cryptocurrencies in general, promise a fair and more transparent financial system. They do so by implementing an open and censorship-resistant atomic broadcast protocol that enables the maintenance of a global transaction ledger, known as a blockchain. In this paper, we consider how this broadcast protocol may be used for malicious behavior as a botnet command and control (C2) channel. Botmasters have been known to misuse broadcasting platforms, like social media, as C2 channels. However, these platforms lack the integral censorship-resistant property of decentralized cryptocurrencies. In this paper, we provide a comprehensive systematization of knowledge study on using blockchains as botnet C2 channels, generating a number of important insights. We set off by providing a critical analysis of the state of the art of blockchain-based botnets, along with an abstract model of such a system. We then examine the inherent limitations of the design, in an attempt to challenge the feasibility of such a botnet. With such limitations in mind, we move forward with an experimental analysis of the detectability of such botnets and discuss potential countermeasures. Contrary to previous work that proposed such botnets, we provide a broad overview of the associated risk and view the problem in relation to other existing botnet C2 channels. We conclude that despite its limitations, the blockchain, as a backup mechanism, practically renders attempts to suppress the control channel of a botnet futile. Thus, more focus should be put on detecting and disinfecting machines at the network edge (router) or even per-bot level.
引用
收藏
页码:15 / 25
页数:11
相关论文
共 50 条
  • [21] A Blockchain-based Tracking System
    Chauhan, Ajayvikram
    Savner, Gaurav
    Venkatesh, Prajwal
    Patil, Vishwanath
    Wu, Wencen
    2020 14TH IEEE INTERNATIONAL CONFERENCE ON SERVICE-ORIENTED SYSTEM ENGINEERING (SOSE 2020), 2020, : 111 - 115
  • [22] Blockchain-based IoT: An Overview
    Raza, Muhammad Raheel
    Varol, Asaf
    Hussain, Walayat
    9TH INTERNATIONAL SYMPOSIUM ON DIGITAL FORENSICS AND SECURITY (ISDFS'21), 2021,
  • [23] Blockchain-based Proof of Location
    Amoretti, Michele
    Brambilla, Giacomo
    Medioli, Francesco
    Zanichelli, Francesco
    2018 IEEE 18TH INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY COMPANION (QRS-C), 2018, : 146 - 153
  • [24] Trust in blockchain-based systems
    Becker, Moritz
    Bodo, Balazs
    INTERNET POLICY REVIEW, 2021, 10 (02):
  • [25] On Availability for Blockchain-Based Systems
    Weber, Ingo
    Gramoli, Vincent
    Ponomarev, Alex
    Staples, Mark
    Holz, Ralph
    An Binh Tran
    Rimba, Paul
    2017 IEEE 36TH INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS), 2017, : 64 - 73
  • [26] A blockchain-based storage intelligent
    Jerbi, Wassim
    Cheikhrouhou, Omar
    Guermazi, Abderrahmen
    Hamam, Habib
    Trabelsi, Hafedh
    2022 INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING, IWCMC, 2022, : 635 - 640
  • [27] Blockchain-based multimedia security
    Zhang, Yushu
    Li, Ming
    Guo, Shangwei
    Meng, Weizhi
    Li, Hongxiang
    MULTIMEDIA TOOLS AND APPLICATIONS, 2021, 80 (20) : 30581 - 30581
  • [28] Blockchain-Based Crowdfunding Application
    Patil, Viren
    Gupta, Vasvi
    Sarode, Rohini
    PROCEEDINGS OF THE 2021 FIFTH INTERNATIONAL CONFERENCE ON I-SMAC (IOT IN SOCIAL, MOBILE, ANALYTICS AND CLOUD) (I-SMAC 2021), 2021, : 1546 - 1553
  • [29] Blockchain-Based Election Infrastructures
    Cooley, Rafer
    Wolf, Shaya
    Borowczak, Mike
    2018 IEEE INTERNATIONAL SMART CITIES CONFERENCE (ISC2), 2018,
  • [30] Blockchain-Based Distributed Marketplace
    Kabi, Oliver R.
    Franqueira, Virginia N. L.
    BUSINESS INFORMATION SYSTEMS WORKSHOPS (BIS 2018), 2019, 339 : 197 - 210