区块链作业3.3: 安全计算

Notsecure.

IfP2 and P3 form a malicious coalition, they can get the complete thereconstruction without letting P1 learn the information and without payingpenalty.  Here’s how it works:

[if !supportLists]1.    [endif]After all three made their deposit. P1 claims q by revealing T1.

[if !supportLists]2.    [endif]Now, the coalition of P2 and P3 get all of T1, T2 and T3 toreconstruction.

[if !supportLists]3.    [endif]Then, P3 reveal T1^T3 to claim q. So that the coalition get the q backfrom P1 (P3 can give the q to P2 for his loss) and P1 cannot reconstructionbecause lacking T2.


Howdid I get this answer:

Inthe paper of “How to Use Bitcoin to Design Fair Protocols” mentioned this kindof malicious coalition attack to the naïve 3-party reconstruction approach.It’s very similar.

Anotherway to think is that there are only two goals for attackers: one is get moneywithout learning information, the other is get information without payingpenalty. And there are only few combinations of adversaries: one maliciousparty among P1, P2 and P3, or two malicious parties’ coalition. We can considereach possibility to find the attack method.

最后编辑于
©著作权归作者所有,转载或内容合作请联系作者
【社区内容提示】社区部分内容疑似由AI辅助生成,浏览时请结合常识与多方信息审慎甄别。
平台声明:文章内容(如有图片或视频亦包括在内)由作者上传并发布,文章内容仅代表作者本人观点,简书系信息发布平台,仅提供信息存储服务。

相关阅读更多精彩内容

  • rljs by sennchi Timeline of History Part One The Cognitiv...
    sennchi阅读 7,900评论 0 10
  • Lua 5.1 参考手册 by Roberto Ierusalimschy, Luiz Henrique de F...
    苏黎九歌阅读 14,276评论 0 38
  • 小区附近的公园里有一片游乐区域,里面安装了许多的游乐设施,很受孩子们的欢迎。尤其是最近刚刚进行了一次重装,又新引进...
    忆海忘川阅读 353评论 0 0
  • 第一个盒子完成后,获得了朋友的鼓励与鞭策,非常开心。因陋就简,推出了002号改良版盒子——《奥斯丁文集》。 一句 ...
    鹅湖子阅读 412评论 2 3
  • 我们不要买贵重的家具, IKEA的学生家具就很好了。 我们不要请工人帮我们装, 都自己动手吧。 要花力气的交给你,...
    你阿瑶a阅读 255评论 0 0

友情链接更多精彩内容