學術產出-Periodical Articles

Article View/Open

Publication Export

Google ScholarTM

政大圖書館

Citation Infomation

題名 Secure hierarchical Bitcoin wallet scheme against privilege escalation attacks
作者 曾一凡
Tseng, Yi-Fan
Fan, Chun-I
Su, Hui-Po
Hsu, Ruei-Hau
Kikuchi, Hiroaki
貢獻者 資科系
關鍵詞 Bitcoin ; HD wallets ; BIP032 ; Privilege escalation attacks ; Schnorr signature ; Trapdoor hash function
日期 2019-11
上傳時間 2-Sep-2020 09:15:16 (UTC+8)
摘要 As the rising popularity of Bitcoin, people tend to use Bitcoin wallets to manage the keys for spending or receiving funds. Instead of generating randomly pairs of keys, which may need higher space complexity for key management, hierarchical deterministic (HD) wallets derive all the keys from a single seed, which is sufficient to recover all the keys, to reduce the complexity of key management. In an HD wallet, it allows users to generate child public keys from the parent public keys without knowing any of the corresponding private keys. This feature allows a permitted auditor to derive all the public keys for auditing. However, this feature makes HD wallets suffered from so-called privilege escalation attacks, where the leakage of any child private key along with its parent public key will expose the other child private keys. To confront with this security flaw, we propose a novel HD wallet scheme that gives out a signature with trapdoor hash functions instead of directly giving private keys for signing. Since it conceals private keys from any child nodes, it can prevent from privilege escalation attacks. Nevertheless, the proposed scheme also provides unlinkability between two public keys to achieve anonymity of user identities and high scalability to the derivations of huge amount of keys. Thus, the proposed scheme achieves user anonymity, public key derivation, and high scalability.
關聯 International Journal of Information Security, 19, 245–255
資料類型 article
DOI https://doi.org/10.1007/s10207-019-00476-5
dc.contributor 資科系
dc.creator (作者) 曾一凡
dc.creator (作者) Tseng, Yi-Fan
dc.creator (作者) Fan, Chun-I
dc.creator (作者) Su, Hui-Po
dc.creator (作者) Hsu, Ruei-Hau
dc.creator (作者) Kikuchi, Hiroaki
dc.date (日期) 2019-11
dc.date.accessioned 2-Sep-2020 09:15:16 (UTC+8)-
dc.date.available 2-Sep-2020 09:15:16 (UTC+8)-
dc.date.issued (上傳時間) 2-Sep-2020 09:15:16 (UTC+8)-
dc.identifier.uri (URI) http://nccur.lib.nccu.edu.tw/handle/140.119/131409-
dc.description.abstract (摘要) As the rising popularity of Bitcoin, people tend to use Bitcoin wallets to manage the keys for spending or receiving funds. Instead of generating randomly pairs of keys, which may need higher space complexity for key management, hierarchical deterministic (HD) wallets derive all the keys from a single seed, which is sufficient to recover all the keys, to reduce the complexity of key management. In an HD wallet, it allows users to generate child public keys from the parent public keys without knowing any of the corresponding private keys. This feature allows a permitted auditor to derive all the public keys for auditing. However, this feature makes HD wallets suffered from so-called privilege escalation attacks, where the leakage of any child private key along with its parent public key will expose the other child private keys. To confront with this security flaw, we propose a novel HD wallet scheme that gives out a signature with trapdoor hash functions instead of directly giving private keys for signing. Since it conceals private keys from any child nodes, it can prevent from privilege escalation attacks. Nevertheless, the proposed scheme also provides unlinkability between two public keys to achieve anonymity of user identities and high scalability to the derivations of huge amount of keys. Thus, the proposed scheme achieves user anonymity, public key derivation, and high scalability.
dc.format.extent 682488 bytes-
dc.format.mimetype application/pdf-
dc.relation (關聯) International Journal of Information Security, 19, 245–255
dc.subject (關鍵詞) Bitcoin ; HD wallets ; BIP032 ; Privilege escalation attacks ; Schnorr signature ; Trapdoor hash function
dc.title (題名) Secure hierarchical Bitcoin wallet scheme against privilege escalation attacks
dc.type (資料類型) article
dc.identifier.doi (DOI) 10.1007/s10207-019-00476-5
dc.doi.uri (DOI) https://doi.org/10.1007/s10207-019-00476-5