PDAC T10F Hacking Blockchain
PDAC T10F Hacking Blockchain
Hacking Blockchain
Konstantinos Karagiannis
Chief Technology Officer, Security Consulting
BT Americas
@konstanthacker
#RSAC
2
#RSAC
Bitcoin
3
#RSAC
4
#RSAC
5
#RSAC
6
#RSAC
Blockchain defense
7
#RSAC
Digital assets
Identity (black box)
Verifiable data
Smart contracts
8
#RSAC
10
#RSAC
11
#RSAC
12
#RSAC
13
#RSAC
14
#RSAC
15
#RSAC
Digital assets
Ownership
Identity
Black box interactions at risk
Verifiable data
Malicious transactions
Smart contracts
Code flaws, repudiation
16
#RSAC
August 2015: NSA publicly warned against using ECC, the type
of encryption in blockchain
18
#RSAC
19
#RSAC
20
#RSAC
21
#RSAC
22
#RSAC
Maintaining superposition
26
#RSAC
27
#RSAC
28
#RSAC
29
#RSAC
Post-quantum crypto
Code based
Hash based
Lattice based
Multivariate quadratic equations
One time pad
liboqs, open source C library
(https://openquantumsafe.org/
have fork for SSL as well)
30
#RSAC
31
#RSAC
32
#RSAC
33
#RSAC
@konstanthacker