Skip to main content
QUICK REVIEW

[논문 리뷰] Flood & Loot: A Systemic Attack On The Lightning Network

Jona Harris, Aviv Zohar|arXiv (Cornell University)|2020. 06. 15.
Blockchain Technology Applications and Security참고 문헌 23인용 수 14
한 줄 요약

이 논문은 라이트닝 네트워크에 대한 체계적 위협인 Flood & Loot 공격을 제시한다. 이 공격은 수수료 추정 메커니즘과 채널 종료 시점의 취약점을 악용하여 블록체인에 저수수료 거래를 폭주시켜 공격자가 피해자의 종료 시도를 지연시켜 자금을 훔칠 수 있도록 한다. 이 공격은 매우 낮은 비용으로 성공할 수 있으며, 단지 85개의 채널을 대상으로 함으로써 도난을 보장할 수 있고, 수수료 동적 변화를 조작함으로써 성공 가능성을 높일 수 있다.

ABSTRACT

The Lightning Network promises to alleviate Bitcoin's known scalability problems. The operation of such second layer approaches relies on the ability of participants to turn to the blockchain to claim funds at any time, which is assumed to happen rarely. One of the risks that was identified early on is that of a wide systemic attack on the protocol, in which an attacker triggers the closure of many Lightning channels at once. The resulting high volume of transactions in the blockchain will not allow for the proper settlement of all debts, and attackers may get away with stealing some funds. This paper explores the details of such an attack and evaluates its cost and overall impact on Bitcoin and the Lightning Network. Specifically, we show that an attacker is able to simultaneously cause victim nodes to overload the Bitcoin blockchain with requests and to steal funds that were locked in channels. We go on to examine the interaction of Lightning nodes with the fee estimation mechanism and show that the attacker can continuously lower the fee of transactions that will later be used by the victim in its attempts to recover funds - eventually reaching a state in which only low fractions of the block are available for lightning transactions. Our attack is made easier even further as the Lightning protocol allows the attacker to increase the fee offered by his own transactions. We continue to empirically show that the vast majority of nodes agree to channel opening requests from unknown sources and are therefore susceptible to this attack. We highlight differences between various implementations of the Lightning Network protocol and review the susceptibility of each one to the attack. Finally, we propose mitigation strategies to lower the systemic attack risk of the network.

연구 동기 및 목표

  • 라이트닝 네트워크에 대한 새로운 체계적 공격 벡터를 분석하는 것 — 블록체인 혼잡도와 자금 훔침을 동시에 조합한 공격.
  • 수수료 추정 메커니즘과 구현 구체적 행동 양식이 공격 성공에 어떻게 기여하는지 평가하는 것.
  • 다양한 라이트닝 구현체 간의 채널 종료 시점과 수수료 관리의 취약점을 규명하는 것.
  • 체계적 위험을 줄이되 프로토콜의 본질적 한계를 인정하는 보완 전략을 제안하는 것.

제안 방법

  • 공격자는 피해자 노드와 채널을 확립하고, 저수수료 기간 동안 낮은 온체인 수수료율을 설정한다.
  • 공격자는 피해자 채널을 통해 다단계 지불을 유도하여 종료 거래의 수를 늘린다.
  • 공격자는 블록체인 혼잡도가 극대화되는 시점과 겹치도록 공격 시점을 조절하여 피해자의 종료 거래를 최대한 지연시킨다.
  • 공격자는 고수수료 거래를 사용하여 피해자의 저수수료 종료 시도를 대체함으로써 자신의 거래가 우선 처리되도록 보장한다.
  • 공격자는 피해자가 채널을 종료하기 전에 사용 가능한 전체 타임아웃 윈도우를 다 쓰지 않는다는 사실을 악용한다.
  • 공격자는 자신의 거래 수수료율을 올릴 수 있는 능력을 지님으로써 피해자와는 달리 수수료를 조정할 수 있다.

실험 결과

연구 질문

  • RQ1공격자는 어떻게 동시에 블록체인 혼잡도를 유도하면서도 라이트닝 네트워크 참가자들로부터 자금을 훔칠 수 있는가?
  • RQ2수수료 추정 메커니즘이 공격의 가능성을 어떻게 촉진하거나 증폭시키는가?
  • RQ3왜 일부 라이트닝 구현체는 다른 구현체보다 이 공격에 더 취약한가?
  • RQ4최소한의 초깃금과 채널 수로 공격를 얼마나 넓게 수행할 수 있는가?
  • RQ5어떤 기본적인 프로토콜 설계 선택이 이 공격의 체계적 위험을 가능하게 하거나 악화시키는가?

주요 결과

  • 공격은 최소 85개의 대상 채널만으로도 성공할 수 있으며, 블록체인 혼잡도와 시점 제약 조건으로 인해 자금 훔침이 보장된다.
  • 공격자가 수수료 역학을 조작함으로써 피해자의 종료 거래가 블록에서 배제되어 지연된다.
  • 공격자는 자신의 종료 거래 수수료를 올릴 수 있어, 메모리풀에서 피해자의 거래를 대체할 수 있다.
  • LND 및 기타 구현체는 너무 늦게 채널 종료를 시작한다 (예: 타임아웃 10블록 전에만 시작함), 이로 인해 취약성이 증가한다.
  • 공격은 피해자가 수수료를 사전에 설정하고 이후에 조정할 수 없지만, 공격자는 조정할 수 있다는 점에서 악화된다.
  • 실증적 증거는 대부분의 노드가 알려지지 않은 피어로부터의 채널 오픈을 수락한다는 점을 보여주며, 이는 공격 표면을 넓힌다.

더 나은 연구,지금 바로 시작하세요

논문 읽기부터 검토까지, 연구 시간을 획기적으로 줄여보세요.

카드 등록 없음 · 무료 플랜 제공

이 리뷰는 AI가 만들고, 인간 에디터가 검토했습니다.