bitcoin anonymity - people | mit csail · 2017-11-07 · bitcoin anonymity mike fleder mike kester...

13
Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1

Upload: others

Post on 04-Jun-2020

5 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai

"Voodah"1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ

"darkskypoet"1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1

Page 2: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Goal & Results● Attacker Goal

○ Tie “real” name to transactions

● Results○ Linked forum user to Silk Road through 1

intermediaries■ bl4kjaguar ⇒ Friend ⇒ Silk Road ⇒ FBI

Page 3: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

1Agy5BVCxFHi34nJxPdAoGh4

XLAwbdP

1QGLRTU2KZ2bx9kJyNFGkZHyxt3VohCPCL

1LkYiL3RaouKXTUhGcE84XLc31JjnLc3

14hstJKLgss5UHMJqrVz8jP6zvxN6mkuWM

What is Bitcoin?

Page 4: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

What is Bitcoin?Forums“voodah”

14hstJKLgss5UHMJqrVz8jP6zvxN6mkuWM

Twitter“crash_override”

1Agy5BVCxFHi34nJxPdAoGh4XLAwbdP

1Agy5BVCxFHi34nJxPdAoGh4

XLAwbdP

1QGLRTU2KZ2bx9kJyNFGkZHyxt3VohCPCL

1LkYiL3RaouKXTUhGcE84XLc31JjnLc3

14hstJKLgss5UHMJqrVz8jP6zvxN6mkuWM

Page 5: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Security Description

● Transactions○ Public Ledger○ Complete history of a coin through ledger

● Software○ Most clients imperfect

Page 6: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

● Attacker Goal: Tie “real” name to transactions

● Leak 1: (“real” name, public key) revealed together○ Intentional: Forums, donations, social networks○ Unintentional: Inadvertent leaks

● Leak 2: (“real” name, some tx info) revealed together

“Alice, it’s Bob. I sent you ~$100 at ~noon yesterday”

Threat Model

Scraped fromhttps://bitcointalk.org/index.php?all=&topic=143194.0

{'address':set(['1BSmWFDn1bmmfrBZyW1hJHTwZ8apg9w99Y']), 'membername': [‘cyclops']}

Page 7: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Bitcoin key ⇒ “real” names

● Leak 1: Definitivelyvia Forums

● Leak 2: Statisticallyvia Eavesdropping

Graph Analysis User Activity Revealed

De-anonymization Pipeline

Page 8: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

“I sent you $100 ± $1, yesterday at noon ± 5 minutes”D

iffic

ulty

Page 9: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Graph Analysis Pipeline

Block Chain Parser “Entity” Graph

Web Scraping(Forums, Social media)

“Casimir1904”1BSmWFDn1bmmfrBZyW1hJHTwZ

8apg9w99Y

User ActivityRevealedTx Graph

Page 10: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Bitcoin “Entity” Graph

PageRank NodesTop 30 nodes 1st order edges

Page 11: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Bitcoin “Entity” Graph

CommunitiesUntraceableTransactions

Single Entity

Large Volume TransactionsEdge thickness indicates value

PageRank NodesTop 30 nodes 1st order edges

Typical Transaction Graph for a day

Page 12: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Annotated “Entity” GraphSilk Road ArrestFBI seized coins sent to a single known public key - Oct 25 2013

Revealed User Bitcointalk.org Forum user

PageRank NodesTop 30 nodes 1st order edges

Annotated Nodes40 scraped annotations

Page 13: Bitcoin Anonymity - People | MIT CSAIL · 2017-11-07 · Bitcoin Anonymity Mike Fleder Mike Kester Sudeep Pillai "Voodah" 1G6EQwiAfTVyTpK4j3XZ65CvonjDGrPsQ "darkskypoet" 1QEZohXPbh4ywbzPJATjMBDnSjJsZrZtQ1File

Annotated “Entity” GraphSilk Road ArrestFBI seized coins sent to a single known public key - Oct 25 2013

Revealed User Bitcointalk.org Forum user

PageRank NodesTop 30 nodes 1st order edges

Annotated Nodes40 scraped annotationsThanks!