Title | A Security Reference Architecture for Blockchains |
Publication Type | Conference Paper |
Year of Publication | 2019 |
Authors | Homoliak, Ivan, Venugopalan, Sarad, Hum, Qingze, Szalachowski, Pawel |
Conference Name | 2019 IEEE International Conference on Blockchain (Blockchain) |
Date Published | jul |
Keywords | blockchain, blockchain security, consensus protocol, cryptography, IEC standards, ISO standards, ISO/IEC 15408, layered systems, operational security issues, Peer-to-peer computing, pubcrawl, reference architecture, Resiliency, risk management, Routing, Scalability, security countermeasures, security of data, security reference architecture, security vulnerabilities, surveys and tutorials, threat-risk assessment |
Abstract | Due to their specific features, blockchains have become popular in recent years. Blockchains are layered systems where security is a critical factor for their success. The main focus of this work is to systematize knowledge about security and privacy issues of blockchains. To this end, we propose a security reference architecture based on models that demonstrate the stacked hierarchy of various threats as well as threat-risk assessment using ISO/IEC 15408. In contrast to the previous surveys [23], [88], [11], we focus on the categorization of security vulnerabilities based on their origins and using the proposed architecture we present existing prevention and mitigation techniques. The scope of our work mainly covers aspects related to the nature of blockchains, while we mention operational security issues and countermeasures only tangentially. |
DOI | 10.1109/Blockchain.2019.00060 |
Citation Key | homoliak_security_2019 |