On the Security and Privacy of Hyperledger Fabric:Challenges and Open Issues

09/08/2021
by   Sotirios Brotsis, et al.
0

In the last few years, a countless number of permissioned blockchain solutions have been proposed, with each one to claim that it revolutionizes the way of the transaction processing along with the security and privacy preserving mechanisms that it provides. Hyperledger Fabric is one of the most popular permissioned blockchain architectures that has made a significant impact on the market. However, there are only few papers of finding architectural risks regarding the security and the privacy preserving mechanisms of Hyperledger Fabric. This paper separates the attack surface of the blockchain platform into four components, namely, consensus, chaincode, network and privacy preserving mechanisms, in all of which an attacker (from inside or outside the network) can exploit the platform's design and gain access to or misuse the network. In addition, we highlight the appropriate counter-measures that can be taken in each component to address the corresponding risks and provide a significantly secure and enhanced privacy preserving Fabric network. We hope that by bringing this paper into light, we can aid developers to avoid security flaws and implementations that can be exploited by attackers but also to motivate further research to harden the platform's security and the client's privacy.

READ FULL TEXT

page 1

page 2

page 3

page 4

page 5

page 6

page 7

page 8

research
09/21/2020

SPChain: Blockchain-based Medical Data Sharing and Privacy-preserving eHealth System

The development of eHealth systems has brought great convenience to peop...
research
07/24/2023

Web3.0 Security: Privacy Enhancing and Anonym Auditing in Blockchain-based Structures

The advent of Web 3.0, underpinned by blockchain technologies, promises ...
research
06/15/2022

SPENDER: A Platform for Secure and Privacy-Preserving Decentralized P2P E-Commerce

The blockchain technology empowers secure, trustless, and privacy-preser...
research
03/30/2023

Not Yet Another Digital ID: Privacy-preserving Humanitarian Aid Distribution

Humanitarian aid-distribution programs help bring physical goods (e.g., ...
research
03/29/2023

The Need for Inherently Privacy-Preserving Vision in Trustworthy Autonomous Systems

Vision is a popular and effective sensor for robotics from which we can ...
research
10/20/2021

Privacy in Open Search: A Review of Challenges and Solutions

Privacy is of worldwide concern regarding activities and processes that ...
research
07/30/2018

A Flexible Network Approach to Privacy of Blockchain Transactions

For preserving privacy, blockchains can be equipped with dedicated mecha...

Please sign up or login with your details

Forgot password? Click here to reset