The Blockchain Imitation Game

03/31/2023
by   Kaihua Qin, et al.
0

The use of blockchains for automated and adversarial trading has become commonplace. However, due to the transparent nature of blockchains, an adversary is able to observe any pending, not-yet-mined transactions, along with their execution logic. This transparency further enables a new type of adversary, which copies and front-runs profitable pending transactions in real-time, yielding significant financial gains. Shedding light on such "copy-paste" malpractice, this paper introduces the Blockchain Imitation Game and proposes a generalized imitation attack methodology called Ape. Leveraging dynamic program analysis techniques, Ape supports the automatic synthesis of adversarial smart contracts. Over a timeframe of one year (1st of August, 2021 to 31st of July, 2022), Ape could have yielded 148.96M USD in profit on Ethereum, and 42.70M USD on BNB Smart Chain (BSC). Not only as a malicious attack, we further show the potential of transaction and contract imitation as a defensive strategy. Within one year, we find that Ape could have successfully imitated 13 and 22 known Decentralized Finance (DeFi) attacks on Ethereum and BSC, respectively. Our findings suggest that blockchain validators can imitate attacks in real-time to prevent intrusions in DeFi.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
01/20/2023

TxT: Real-time Transaction Encapsulation for Ethereum Smart Contracts

Ethereum is a permissionless blockchain ecosystem that supports executio...
research
03/04/2021

BLOCKEYE: Hunting For DeFi Attacks on Blockchain

Decentralized finance, i.e., DeFi, has become the most popular type of a...
research
09/29/2020

High-Frequency Trading on Decentralized On-Chain Exchanges

Decentralized exchanges (DEXs) allow parties to participate in financial...
research
08/01/2023

Game Theoretic Modelling of a Ransom and Extortion Attack on Ethereum Validators

Consensus algorithms facilitate agreement on and resolution of blockchai...
research
06/22/2020

MAD-HTLC: Because HTLC is Crazy-Cheap to Attack

Smart Contracts and transactions allow users to implement elaborate cons...
research
04/02/2022

FIRST: FrontrunnIng Resilient Smart ConTracts

Owing to the meteoric rise in the usage of cryptocurrencies, there has b...
research
02/13/2019

SoK: Transparent Dishonesty: front-running attacks on Blockchain

We consider front-running to be a course of action where an entity benef...

Please sign up or login with your details

Forgot password? Click here to reset