首页 > 最新文献

Blockchain-Research and Applications最新文献

英文 中文
Eth2Vec: Learning contract-wide code representations for vulnerability detection on Ethereum smart contracts Eth2Vec:学习以太坊智能合约漏洞检测的合约范围代码表示
IF 5.6 3区 计算机科学 Pub Date : 2022-12-01 DOI: 10.1016/j.bcra.2022.100101
Nami Ashizawa , Naoto Yanai , Jason Paul Cruz , Shingo Okamura

Ethereum smart contracts are computer programs that are deployed and executed on the Ethereum blockchain to enforce agreements among untrusting parties. Being the most prominent platform that supports smart contracts, Ethereum has been targeted by many attacks and plagued by security incidents. Consequently, many smart contract vulnerabilities have been discovered in the past decade. To detect and prevent such vulnerabilities, different security analysis tools, including static and dynamic analysis tools, have been created, but their performance decreases drastically when codes to be analyzed are constantly being rewritten. In this paper, we propose Eth2Vec, a machine-learning-based static analysis tool that detects smart contract vulnerabilities. Eth2Vec maintains its robustness against code rewrites; i.e., it can detect vulnerabilities even in rewritten codes. Other machine-learning-based static analysis tools require features, which analysts create manually, as inputs. In contrast, Eth2Vec uses a neural network for language processing to automatically learn the features of vulnerable contracts. In doing so, Eth2Vec can detect vulnerabilities in smart contracts by comparing the similarities between the codes of a target contract and those of the learned contracts. We performed experiments with existing open databases, such as Etherscan, and Eth2Vec was able to outperform a recent model based on support vector machine in terms of well-known metrics, i.e., precision, recall, and F1-score.

以太坊智能合约是在以太坊区块链上部署和执行的计算机程序,用于在互不信任的各方之间执行协议。作为支持智能合约的最突出的平台,以太坊一直是许多攻击的目标,并受到安全事件的困扰。因此,在过去十年中发现了许多智能合约漏洞。为了检测和防止此类漏洞,已经创建了不同的安全分析工具,包括静态和动态分析工具,但是当要分析的代码不断被重写时,它们的性能会急剧下降。在本文中,我们提出了Eth2Vec,这是一种基于机器学习的静态分析工具,可以检测智能合约漏洞。Eth2Vec对代码重写保持健壮性;也就是说,它甚至可以在重写的代码中检测到漏洞。其他基于机器学习的静态分析工具需要分析人员手动创建的功能作为输入。相比之下,Eth2Vec使用神经网络进行语言处理,自动学习脆弱合约的特征。通过这样做,Eth2Vec可以通过比较目标合约代码与学习合约代码之间的相似性来检测智能合约中的漏洞。我们对现有的开放数据库(如Etherscan)进行了实验,Eth2Vec能够在众所周知的指标(即精度,召回率和f1分数)方面优于基于支持向量机的最新模型。
{"title":"Eth2Vec: Learning contract-wide code representations for vulnerability detection on Ethereum smart contracts","authors":"Nami Ashizawa ,&nbsp;Naoto Yanai ,&nbsp;Jason Paul Cruz ,&nbsp;Shingo Okamura","doi":"10.1016/j.bcra.2022.100101","DOIUrl":"https://doi.org/10.1016/j.bcra.2022.100101","url":null,"abstract":"<div><p>Ethereum smart contracts are computer programs that are deployed and executed on the Ethereum blockchain to enforce agreements among untrusting parties. Being the most prominent platform that supports smart contracts, Ethereum has been targeted by many attacks and plagued by security incidents. Consequently, many smart contract vulnerabilities have been discovered in the past decade. To detect and prevent such vulnerabilities, different security analysis tools, including static and dynamic analysis tools, have been created, but their performance decreases drastically when codes to be analyzed are constantly being rewritten. In this paper, we propose Eth2Vec, a machine-learning-based static analysis tool that detects smart contract vulnerabilities. Eth2Vec maintains its robustness against code rewrites; i.e., it can detect vulnerabilities even in rewritten codes. Other machine-learning-based static analysis tools require features, which analysts create manually, as inputs. In contrast, Eth2Vec uses a neural network for language processing to automatically learn the features of vulnerable contracts. In doing so, Eth2Vec can detect vulnerabilities in smart contracts by comparing the similarities between the codes of a target contract and those of the learned contracts. We performed experiments with existing open databases, such as Etherscan, and Eth2Vec was able to outperform a recent model based on support vector machine in terms of well-known metrics, i.e., precision, recall, and F1-score.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000422/pdfft?md5=c155d37a333d4b006542a4a3e93bd67c&pid=1-s2.0-S2096720922000422-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"136552961","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
A blockchain-based multisignature approach for supply chain governance: A use case from the Australian beef industry 基于区块链的供应链治理多重签名方法:来自澳大利亚牛肉行业的用例
IF 5.6 3区 计算机科学 Pub Date : 2022-12-01 DOI: 10.1016/j.bcra.2022.100091
Shoufeng Cao , Marcus Foth , Warwick Powell , Thomas Miller , Ming Li

This paper designed and implemented a blockchain-based multisignature approach to digitally transform supply chain governance in multi-tier food supply chains, particularly in a geographically dispersed beef supply chain. An exploratory case study was utilised to demonstrate the design, implementation, and evaluation of a blockchain-based multisignature approach that was deployed on the Smart Trade Networks (STN) Proof of Authority (PoA) blockchain system for data collection and validation in a beef supply chain context. The multisignature approach was implemented with a use case to track a shipment of 92 cattle and meat products through key events from farm to food service. The use-case deployment records approximately 6000 data points registered on the STN PoA blockchain system. The real-case deployment illustrates the capability of the blockchain-based multisignature approach to digitally improve beef supply chain governance by enabling whole-of-chain transparency and trustworthy information sharing and supports supply chain professionals to have a better understanding of how to unlock blockchain potential for supply chain transformation.

本文设计并实现了一种基于区块链的多重签名方法,以数字化方式改造多层食品供应链中的供应链治理,特别是在地理上分散的牛肉供应链中。利用一个探索性案例研究来演示基于区块链的多重签名方法的设计、实施和评估,该方法部署在智能贸易网络(STN)授权证明(PoA)区块链系统上,用于牛肉供应链环境中的数据收集和验证。多重签名方法通过一个用例实现,该用例通过从农场到食品服务的关键事件跟踪92头牛和肉制品的运输。用例部署记录了在STN PoA区块链系统上注册的大约6000个数据点。实际案例部署说明了基于区块链的多重签名方法的能力,通过实现全链透明度和可信赖的信息共享,以数字方式改善牛肉供应链治理,并支持供应链专业人员更好地了解如何释放区块链在供应链转型中的潜力。
{"title":"A blockchain-based multisignature approach for supply chain governance: A use case from the Australian beef industry","authors":"Shoufeng Cao ,&nbsp;Marcus Foth ,&nbsp;Warwick Powell ,&nbsp;Thomas Miller ,&nbsp;Ming Li","doi":"10.1016/j.bcra.2022.100091","DOIUrl":"10.1016/j.bcra.2022.100091","url":null,"abstract":"<div><p>This paper designed and implemented a blockchain-based multisignature approach to digitally transform supply chain governance in multi-tier food supply chains, particularly in a geographically dispersed beef supply chain. An exploratory case study was utilised to demonstrate the design, implementation, and evaluation of a blockchain-based multisignature approach that was deployed on the Smart Trade Networks (STN) Proof of Authority (PoA) blockchain system for data collection and validation in a beef supply chain context. The multisignature approach was implemented with a use case to track a shipment of 92 cattle and meat products through key events from farm to food service. The use-case deployment records approximately 6000 data points registered on the STN PoA blockchain system. The real-case deployment illustrates the capability of the blockchain-based multisignature approach to digitally improve beef supply chain governance by enabling whole-of-chain transparency and trustworthy information sharing and supports supply chain professionals to have a better understanding of how to unlock blockchain potential for supply chain transformation.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S209672092200032X/pdfft?md5=ca8355b38b1b14c69cd9d3e501f1099f&pid=1-s2.0-S209672092200032X-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"45900414","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 16
URJA: A sustainable energy distribution and trade model for smart grids URJA:智能电网的可持续能源分配和交易模式
IF 5.6 3区 计算机科学 Pub Date : 2022-12-01 DOI: 10.1016/j.bcra.2022.100090
Anjana Prabhakar , Tricha Anjali

Energy has always been one of the fundamental elements in the growth of human society. It is crucial that we improve our energy management due to the ever-growing imbalance in demand-supply. The new wave in the energy sector is characterized by the three D's of decarbonization, decentralization, and digitalization. For a sustainable life, it is necessary that energy is tapped from alternative sources that are renewable to leave a minimal carbon footprint. To integrate different sources with the main power grid, we require two-way communication among them. This makes it indispensable that consumers are empowered to protect their privacy and make them the sole owners of their data. A good access control scheme would ensure security of data, and an efficient trading platform would ensure judicious use of the resources. Here, we propose a framework URJA with an access control scheme and an energy trading platform based on blockchain for a smart grid. The locally available renewable sources of energy are connected to the grid such that demand-supply is managed effectively without loss of efficiency and privacy. A customized consensus scheme based on trust ensures a quick operation in real-time.

能源一直是人类社会发展的基本要素之一。由于日益严重的供需不平衡,我们必须改善能源管理。能源领域的新浪潮以脱碳、去中心化和数字化这三个“3d”为特征。为了可持续的生活,有必要从可再生的替代能源中挖掘能源,以留下最小的碳足迹。为了将不同的电源与主电网整合,我们需要它们之间的双向通信。因此,消费者必须有权保护自己的隐私,并成为自己数据的唯一所有者。一个好的访问控制方案可以确保数据的安全,一个高效的交易平台可以确保资源的合理使用。在此,我们提出了一个框架URJA,具有访问控制方案和基于区块链的智能电网能源交易平台。当地可用的可再生能源被连接到电网,这样就可以有效地管理供需,而不会损失效率和隐私。基于信任的自定义共识方案保证了快速实时的操作。
{"title":"URJA: A sustainable energy distribution and trade model for smart grids","authors":"Anjana Prabhakar ,&nbsp;Tricha Anjali","doi":"10.1016/j.bcra.2022.100090","DOIUrl":"10.1016/j.bcra.2022.100090","url":null,"abstract":"<div><p>Energy has always been one of the fundamental elements in the growth of human society. It is crucial that we improve our energy management due to the ever-growing imbalance in demand-supply. The new wave in the energy sector is characterized by the three D's of decarbonization, decentralization, and digitalization. For a sustainable life, it is necessary that energy is tapped from alternative sources that are renewable to leave a minimal carbon footprint. To integrate different sources with the main power grid, we require two-way communication among them. This makes it indispensable that consumers are empowered to protect their privacy and make them the sole owners of their data. A good access control scheme would ensure security of data, and an efficient trading platform would ensure judicious use of the resources. Here, we propose a framework URJA with an access control scheme and an energy trading platform based on blockchain for a smart grid. The locally available renewable sources of energy are connected to the grid such that demand-supply is managed effectively without loss of efficiency and privacy. A customized consensus scheme based on trust ensures a quick operation in real-time.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000318/pdfft?md5=f93fff7d32b2f201e9985069ca332052&pid=1-s2.0-S2096720922000318-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"46443290","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 2
Blockchain state channels with compact states through the use of RSA accumulators 区块链状态通道通过使用RSA累加器实现紧凑状态
IF 5.6 3区 计算机科学 Pub Date : 2022-11-01 DOI: 10.1016/j.bcra.2022.100114
Lydia Negka, Angeliki Katsika, G. Spathoulas, V. Plagianakos
{"title":"Blockchain state channels with compact states through the use of RSA accumulators","authors":"Lydia Negka, Angeliki Katsika, G. Spathoulas, V. Plagianakos","doi":"10.1016/j.bcra.2022.100114","DOIUrl":"https://doi.org/10.1016/j.bcra.2022.100114","url":null,"abstract":"","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"54133303","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 1
Integrating big data and blockchain to manage energy smart grids—TOTEM framework 整合大数据和区块链管理能源智能电网——totem框架
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100081
Dhanya Therese Jose, Jørgen Holme, Antorweep Chakravorty, Chunming Rong

The demand for electricity is increasing exponentially day by day, especially with the arrival of electric vehicles. In the smart community neighborhood project, electricity should be produced at the household or community level and sold or bought according to the demands. Since the actors can produce, sell, and buy according to the demands, thus the name prosumers. ICT solutions can contribute to this in several ways, such as machine learning for analyzing the household data for customer demand and peak hours for the usage of electricity, blockchain as a trustworthy platform for selling or buying, data hub, and ensuring data security and privacy of prosumers. TOTEM: Token for controlled computation is a framework that allows users to analyze the data without moving the data from the data owner's environment. It also ensures the data security and privacy of the data. Here, in this article, we will show the importance of the TOTEM architecture in the EnergiX project and how the extended version of TOTEM can be efficiently merged with the demands of the current and similar projects.

随着电动汽车的出现,人们对电力的需求与日俱增。在智慧社区邻里项目中,电力应在家庭或社区层面生产,并根据需求出售或购买。由于演员可以根据需求生产、销售和购买,因此称为产消者。ICT解决方案可以通过多种方式为此做出贡献,例如用于分析客户需求和用电高峰时间的家庭数据的机器学习,作为销售或购买的可靠平台的区块链,数据中心,以及确保数据安全和产消者的隐私。TOTEM:用于控制计算的令牌是一个框架,允许用户在不从数据所有者的环境中移动数据的情况下分析数据。保证了数据的安全性和隐私性。在本文中,我们将展示TOTEM体系结构在EnergiX项目中的重要性,以及TOTEM的扩展版本如何有效地与当前和类似项目的需求合并。
{"title":"Integrating big data and blockchain to manage energy smart grids—TOTEM framework","authors":"Dhanya Therese Jose,&nbsp;Jørgen Holme,&nbsp;Antorweep Chakravorty,&nbsp;Chunming Rong","doi":"10.1016/j.bcra.2022.100081","DOIUrl":"10.1016/j.bcra.2022.100081","url":null,"abstract":"<div><p>The demand for electricity is increasing exponentially day by day, especially with the arrival of electric vehicles. In the smart community neighborhood project, electricity should be produced at the household or community level and sold or bought according to the demands. Since the actors can produce, sell, and buy according to the demands, thus the name prosumers. ICT solutions can contribute to this in several ways, such as machine learning for analyzing the household data for customer demand and peak hours for the usage of electricity, blockchain as a trustworthy platform for selling or buying, data hub, and ensuring data security and privacy of prosumers. TOTEM: Token for controlled computation is a framework that allows users to analyze the data without moving the data from the data owner's environment. It also ensures the data security and privacy of the data. Here, in this article, we will show the importance of the TOTEM architecture in the EnergiX project and how the extended version of TOTEM can be efficiently merged with the demands of the current and similar projects.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000227/pdfft?md5=f3c2ab09a2947fe02472ae2772fd0b00&pid=1-s2.0-S2096720922000227-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"47091865","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 4
AudiWFlow: Confidential, collusion-resistant auditing of distributed workflows AudiWFlow:分布式工作流的保密、防合谋审计
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100073
Xiaohu Zhou , Antonio Nehme , Vitor Jesus , Yonghao Wang , Mark Josephs , Khaled Mahbub , Ali Abdallah

We discuss the problem of accountability when multiple parties cooperate towards an end result, such as multiple companies in a supply chain or departments of a government service under different authorities. In cases where a fully trusted central point does not exist, it is difficult to obtain a trusted audit trail of a workflow when each individual participant is unaccountable to all others. We propose AudiWFlow, an auditing architecture that makes participants accountable for their contributions in a distributed workflow. Our scheme provides confidentiality in most cases, collusion detection, and availability of evidence after the workflow terminates. AudiWFlow is based on verifiable secret sharing and real-time peer-to-peer verification of records; it further supports multiple levels of assurance to meet a desired trade-off between the availability of evidence and the overhead resulting from the auditing approach. We propose and evaluate two implementation approaches for AudiWFlow. The first one is fully distributed except for a central auxiliary point that, nevertheless, needs only a low level of trust. The second one is based on smart contracts running on a public blockchain, which is able to remove the need for any central point but requires integration with a blockchain.

我们讨论了当多方为了最终结果而合作时的问责问题,例如供应链中的多个公司或不同权限下的政府服务部门。在不存在完全可信的中心点的情况下,当每个单独的参与者对所有其他人都不负责时,很难获得工作流的可信审计跟踪。我们提出AudiWFlow,这是一个审计架构,它使参与者对他们在分布式工作流中的贡献负责。我们的方案在大多数情况下提供了保密性,共谋检测,以及在工作流终止后的证据可用性。AudiWFlow基于可验证的秘密共享和记录的实时点对点验证;它进一步支持多级保证,以满足证据可用性和审计方法产生的开销之间的折衷。我们提出并评估了AudiWFlow的两种实现方法。第一个是完全分布的,除了一个中心辅助点,然而,它只需要低水平的信任。第二种是基于运行在公共区块链上的智能合约,它能够消除对任何中心点的需求,但需要与区块链集成。
{"title":"AudiWFlow: Confidential, collusion-resistant auditing of distributed workflows","authors":"Xiaohu Zhou ,&nbsp;Antonio Nehme ,&nbsp;Vitor Jesus ,&nbsp;Yonghao Wang ,&nbsp;Mark Josephs ,&nbsp;Khaled Mahbub ,&nbsp;Ali Abdallah","doi":"10.1016/j.bcra.2022.100073","DOIUrl":"10.1016/j.bcra.2022.100073","url":null,"abstract":"<div><p>We discuss the problem of accountability when multiple parties cooperate towards an end result, such as multiple companies in a supply chain or departments of a government service under different authorities. In cases where a fully trusted central point does not exist, it is difficult to obtain a trusted audit trail of a workflow when each individual participant is unaccountable to all others. We propose AudiWFlow, an auditing architecture that makes participants accountable for their contributions in a distributed workflow. Our scheme provides confidentiality in most cases, collusion detection, and availability of evidence after the workflow terminates. AudiWFlow is based on verifiable secret sharing and real-time peer-to-peer verification of records; it further supports multiple levels of assurance to meet a desired trade-off between the availability of evidence and the overhead resulting from the auditing approach. We propose and evaluate two implementation approaches for AudiWFlow. The first one is fully distributed except for a central auxiliary point that, nevertheless, needs only a low level of trust. The second one is based on smart contracts running on a public blockchain, which is able to remove the need for any central point but requires integration with a blockchain.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000148/pdfft?md5=acaeec002917db3fdf93808b9740c4f6&pid=1-s2.0-S2096720922000148-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"46418558","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 1
Blockchain for decentralised rural development and governance 区块链用于去中心化农村发展和治理
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100086
Ian Merrell

Rural areas are steadily being marginalised in a global economy where ‘core/periphery’ models of development are dominant. To overcome this, rural areas have experimented with decentralised governance. However, this process is fraught with political, fiscal, and institutional difficulties. These often revolve around transparency and accountability issues and low participation rates. Blockchain technology could act as a social innovation to overcome issues in decentralised governance, and rural areas could even prove to be a fertile environment for future innovation. In this conceptual paper, the potential of blockchain technology is theoretically positioned in regional development discourses. After exploring how blockchain could be applied to rural governance and the barriers it needs to overcome to reach mass adoption, a new distributed model of governance is suggested.

在“核心/边缘”发展模式占主导地位的全球经济中,农村地区正逐渐被边缘化。为了克服这个问题,农村地区已经开始尝试分散化管理。然而,这一进程充满了政治、财政和制度上的困难。这些问题往往围绕着透明度和问责制问题以及低参与率。区块链技术可以作为一种社会创新来克服分散治理中的问题,农村地区甚至可以被证明是未来创新的肥沃环境。在这篇概念性论文中,区块链技术的潜力在理论上定位于区域发展话语。在探讨了区块链如何应用于农村治理以及它需要克服的障碍以实现大规模采用后,提出了一种新的分布式治理模式。
{"title":"Blockchain for decentralised rural development and governance","authors":"Ian Merrell","doi":"10.1016/j.bcra.2022.100086","DOIUrl":"10.1016/j.bcra.2022.100086","url":null,"abstract":"<div><p>Rural areas are steadily being marginalised in a global economy where ‘core/periphery’ models of development are dominant. To overcome this, rural areas have experimented with decentralised governance. However, this process is fraught with political, fiscal, and institutional difficulties. These often revolve around transparency and accountability issues and low participation rates. Blockchain technology could act as a social innovation to overcome issues in decentralised governance, and rural areas could even prove to be a fertile environment for future innovation. In this conceptual paper, the potential of blockchain technology is theoretically positioned in regional development discourses. After exploring how blockchain could be applied to rural governance and the barriers it needs to overcome to reach mass adoption, a new distributed model of governance is suggested.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000276/pdfft?md5=a6488c516b8d2790b99641f3998fc99f&pid=1-s2.0-S2096720922000276-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"46091407","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 11
The “Bitcoin Generator” Scam “比特币生成器”骗局
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100084
Emad Badawi , Guy-Vincent Jourdan , Iosif-Viorel Onut

The “Bitcoin Generator Scam” (BGS) is a cyberattack in which scammers promise to provide victims with free cryptocurrencies in exchange for a small mining fee. In this paper, we present a data-driven system to detect, track, and analyze the BGS. It works as follows: we first formulate search queries related to BGS and use search engines to find potential instances of the scam. We then use a crawler to access these pages and a classifier to differentiate actual scam instances from benign pages. Last, we automatically monitor the BGS instances to extract the cryptocurrency addresses used in the scam. A unique feature of our system is that it proactively searches for and detects the scam pages. Thus, we can find addresses that have not yet received any transactions.

Our data collection project spanned 16 months, from November 2019 to February 2021. We uncovered more than 8,000 cryptocurrency addresses directly associated with the scam, hosted on over 1,000 domains. Overall, these addresses have received around 8.7 million USD, with an average of 49.24 USD per transaction.

Over 70% of the active addresses that we are capturing are detected before they receive any transactions, that is, before anyone is victimized. We also present some post-processing analysis of the dataset that we have captured to aggregate attacks that can be reasonably confidently linked to the same attacker or group.

Our system is one of the first academic feeds to the APWG eCrime Exchange database. It has been actively and automatically feeding the database since November 2020.

“比特币生成器骗局”(BGS)是一种网络攻击,骗子承诺为受害者提供免费的加密货币,以换取少量的挖矿费。在本文中,我们提出了一个数据驱动的系统来检测、跟踪和分析BGS。它的工作原理如下:我们首先制定与BGS相关的搜索查询,并使用搜索引擎找到潜在的骗局实例。然后,我们使用爬虫来访问这些页面,并使用分类器来区分实际的诈骗实例和良性页面。最后,我们自动监控BGS实例以提取骗局中使用的加密货币地址。我们系统的一个独特功能是它主动搜索和检测诈骗页面。因此,我们可以找到尚未收到任何交易的地址。我们的数据收集项目历时16个月,从2019年11月到2021年2月。我们发现了超过8000个与骗局直接相关的加密货币地址,托管在1000多个域名上。总的来说,这些地址收到了大约870万美元,平均每笔交易49.24美元。我们捕获的超过70%的活动地址在他们收到任何交易之前就被检测到,也就是说,在任何人成为受害者之前。我们还对捕获的数据集进行了一些后处理分析,以汇总可以合理自信地与同一攻击者或组相关联的攻击。我们的系统是APWG电子犯罪交换数据库的首批学术提要之一。自2020年11月以来,它一直在主动自动地向数据库提供数据。
{"title":"The “Bitcoin Generator” Scam","authors":"Emad Badawi ,&nbsp;Guy-Vincent Jourdan ,&nbsp;Iosif-Viorel Onut","doi":"10.1016/j.bcra.2022.100084","DOIUrl":"10.1016/j.bcra.2022.100084","url":null,"abstract":"<div><p>The “Bitcoin Generator Scam” (BGS) is a cyberattack in which scammers promise to provide victims with free cryptocurrencies in exchange for a small mining fee. In this paper, we present a data-driven system to detect, track, and analyze the BGS. It works as follows: we first formulate search queries related to BGS and use search engines to find potential instances of the scam. We then use a crawler to access these pages and a classifier to differentiate actual scam instances from benign pages. Last, we automatically monitor the BGS instances to extract the cryptocurrency addresses used in the scam. A unique feature of our system is that it proactively searches for and detects the scam pages. Thus, we can find addresses that have not yet received any transactions.</p><p>Our data collection project spanned 16 months, from November 2019 to February 2021. We uncovered more than 8,000 cryptocurrency addresses directly associated with the scam, hosted on over 1,000 domains. Overall, these addresses have received around 8.7 million USD, with an average of 49.24 USD per transaction.</p><p>Over 70% of the active addresses that we are capturing are detected <strong>before</strong> they receive any transactions, that is, before anyone is victimized. We also present some post-processing analysis of the dataset that we have captured to aggregate attacks that can be reasonably confidently linked to the same attacker or group.</p><p>Our system is one of the first academic feeds to the APWG eCrime Exchange database. It has been actively and automatically feeding the database since November 2020.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000252/pdfft?md5=a7df82eff09935b151de207690c2950d&pid=1-s2.0-S2096720922000252-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"45335163","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 2
Blockchain-based Internet of Musical Things 基于区块链的音乐物联网
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100083
Luca Turchet , Chan Nam Ngo

Blockchain technology is impacting several industries, including the creative industries and those operating in the Internet of Things (IoT). Lately, researchers' attention has been devoted to the application of blockchain in the recorded music industry. However, thus far, no research has investigated the use of such technology in the Internet of Musical Things (IoMusT). The IoMusT is a new area emerging in industry and academy as an extension of the IoT to the musical domain. The IoMusT itself, as the IoT, is a distributed network of musical things, which are objects augmented with information and communication technologies serving a musical purpose. The IoMusT vision requires, above all, IoT features such as decentralization, seamless authentication, transparency, data integrity and privacy, and self-maintenance, as well as the musical domain features such as efficient handling of copyrights and speed of royalties payment. Such features can be brought by blockchain. In this paper, we investigate the integration of blockchain technology with the IoMusT, and we name such synthesis “Blockchain-based IoMusT”. We present a vision for this new paradigm in terms of the novel opportunities that are enabled, and we propose a set of application scenarios enabled by technological integration. Finally, we outline the open research directions in this promising area.

区块链技术正在影响多个行业,包括创意产业和在物联网(IoT)中运营的行业。最近,研究人员将注意力集中在区块链在唱片行业的应用上。然而,到目前为止,还没有研究调查过这种技术在音乐物联网(IoMusT)中的应用。IoMusT是工业和学术界新兴的一个新领域,是物联网向音乐领域的延伸。IoMusT本身,作为物联网,是一个音乐事物的分布式网络,它是用信息和通信技术增强的对象,服务于音乐目的。IoMusT的愿景首先需要物联网功能,如去中心化、无缝认证、透明度、数据完整性和隐私性、自我维护,以及音乐领域的功能,如有效处理版权和快速支付版税。区块链可以带来这些功能。在本文中,我们研究了区块链技术与IoMusT的集成,我们将这种合成命名为“基于区块链的IoMusT”。我们从实现的新机会的角度提出了这种新范式的愿景,并提出了一组通过技术集成实现的应用场景。最后,对该领域的开放研究方向进行了展望。
{"title":"Blockchain-based Internet of Musical Things","authors":"Luca Turchet ,&nbsp;Chan Nam Ngo","doi":"10.1016/j.bcra.2022.100083","DOIUrl":"10.1016/j.bcra.2022.100083","url":null,"abstract":"<div><p>Blockchain technology is impacting several industries, including the creative industries and those operating in the Internet of Things (IoT). Lately, researchers' attention has been devoted to the application of blockchain in the recorded music industry. However, thus far, no research has investigated the use of such technology in the Internet of Musical Things (IoMusT). The IoMusT is a new area emerging in industry and academy as an extension of the IoT to the musical domain. The IoMusT itself, as the IoT, is a distributed network of musical things, which are objects augmented with information and communication technologies serving a musical purpose. The IoMusT vision requires, above all, IoT features such as decentralization, seamless authentication, transparency, data integrity and privacy, and self-maintenance, as well as the musical domain features such as efficient handling of copyrights and speed of royalties payment. Such features can be brought by blockchain. In this paper, we investigate the integration of blockchain technology with the IoMusT, and we name such synthesis “Blockchain-based IoMusT”. We present a vision for this new paradigm in terms of the novel opportunities that are enabled, and we propose a set of application scenarios enabled by technological integration. Finally, we outline the open research directions in this promising area.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000240/pdfft?md5=9581aaf127cd91b7dc702ac944e76db1&pid=1-s2.0-S2096720922000240-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"45810067","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 8
A scalable blockchain-based scheme for traffic-related data sharing in VANETs 一个可扩展的基于区块链的方案,用于在VANETs中共享交通相关数据
IF 5.6 3区 计算机科学 Pub Date : 2022-09-01 DOI: 10.1016/j.bcra.2022.100087
El-hacen Diallo , Omar Dib , Khaldoun Al Agha

Recent advances in wireless technology and embedded systems enable vehicles to share relevant traffic-related data to improve the transportation Quality-of-Service (QoS). However, due to the ubiquitousness of cyber-attacks, it is challenging to ensure the integrity of the data collected from cars. This paper proposes a novel architecture for road traffic events management in Vehicular Ad hoc NETworks (VANETs) relying on a permissioned blockchain. It also introduces the concept of micro-transactions to minimize communication and storage overhead. Through simulations, a rigorous performance evaluation of the proposed approach was conducted, and the micro-transactions effectiveness was assessed. In addition, a comparison with close works in the literature was performed. The proposed scheme ensures road traffic records integrity and traceability, and simulation results on the considered scenarios showed good performance.

无线技术和嵌入式系统的最新进展使车辆能够共享相关的交通相关数据,以提高运输服务质量(QoS)。然而,由于网络攻击无处不在,确保从汽车收集的数据的完整性是一项挑战。本文提出了一种基于许可区块链的车辆自组织网络(VANETs)道路交通事件管理的新架构。它还引入了微事务的概念,以最小化通信和存储开销。通过仿真,对该方法进行了严格的性能评估,并对微交易的有效性进行了评估。此外,还与相关文献进行了比较。该方案保证了道路交通记录的完整性和可追溯性,在考虑的场景下的仿真结果显示了良好的性能。
{"title":"A scalable blockchain-based scheme for traffic-related data sharing in VANETs","authors":"El-hacen Diallo ,&nbsp;Omar Dib ,&nbsp;Khaldoun Al Agha","doi":"10.1016/j.bcra.2022.100087","DOIUrl":"10.1016/j.bcra.2022.100087","url":null,"abstract":"<div><p>Recent advances in wireless technology and embedded systems enable vehicles to share relevant traffic-related data to improve the transportation Quality-of-Service (QoS). However, due to the ubiquitousness of cyber-attacks, it is challenging to ensure the integrity of the data collected from cars. This paper proposes a novel architecture for road traffic events management in Vehicular Ad hoc NETworks (VANETs) relying on a permissioned blockchain. It also introduces the concept of micro-transactions to minimize communication and storage overhead. Through simulations, a rigorous performance evaluation of the proposed approach was conducted, and the micro-transactions effectiveness was assessed. In addition, a comparison with close works in the literature was performed. The proposed scheme ensures road traffic records integrity and traceability, and simulation results on the considered scenarios showed good performance.</p></div>","PeriodicalId":53141,"journal":{"name":"Blockchain-Research and Applications","volume":null,"pages":null},"PeriodicalIF":5.6,"publicationDate":"2022-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2096720922000288/pdfft?md5=023819ec8e7f6360b5f7209e003975eb&pid=1-s2.0-S2096720922000288-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"42755092","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 12
期刊
Blockchain-Research and Applications
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1