From Hodl to Heist: Analysis of Cyber Security Threats to Bitcoin Exchanges
Title | From Hodl to Heist: Analysis of Cyber Security Threats to Bitcoin Exchanges |
Publication Type | Conference Paper |
Year of Publication | 2020 |
Authors | Oosthoek, K., Doerr, C. |
Conference Name | 2020 IEEE International Conference on Blockchain and Cryptocurrency (ICBC) |
Date Published | May 2020 |
Publisher | IEEE |
ISBN Number | 978-1-7281-6680-3 |
Keywords | attacks, bitcoin, Bitcoin exchange platforms, Bitcoin market value, Computer crime, cryptocurrencies, cryptocurrency exchanges, cyber security, cyber security breaches, cyber security threats, cyber threat intelligence, Ecosystems, exchange breach, financial data processing, Human Behavior, market capitalization, monetary value, Organizations, pubcrawl, Scalability, security |
Abstract | Bitcoin is gaining traction as an alternative store of value. Its market capitalization transcends all other cryptocurrencies in the market. But its high monetary value also makes it an attractive target to cyber criminal actors. Hacking campaigns usually target the weakest points in an ecosystem. In Bitcoin, these are currently the exchange platforms. As each exchange breach potentially decreases Bitcoin's market value by billions, it is a threat not only to direct victims, but to everyone owning Bitcoin. Based on an extensive analysis of 36 breaches of Bitcoin exchanges, we show the attack patterns used to exploit Bitcoin exchange platforms using an industry standard for reporting intelligence on cyber security breaches. Based on this we are able to provide an overview of the most common attack vectors, showing that all except three hacks were possible due to relatively lax security. We also show that while the security regimen of Bitcoin exchanges is not on par with other financial service providers, the use of stolen credentials, which does not require any hacking, is decreasing. We also show that the amount of BTC taken during a breach is decreasing, as well as the exchanges that terminate after being breached. With exchanges being targeted by nation-state hacking groups, security needs to be a first concern. |
URL | https://ieeexplore.ieee.org/document/9169412 |
DOI | 10.1109/ICBC48266.2020.9169412 |
Citation Key | oosthoek_hodl_2020 |
- cyber threat intelligence
- security
- Scalability
- pubcrawl
- Organizations
- monetary value
- market capitalization
- Human behavior
- financial data processing
- exchange breach
- Ecosystems
- attacks
- cyber security threats
- cyber security breaches
- cyber security
- cryptocurrency exchanges
- cryptocurrencies
- Computer crime
- Bitcoin market value
- Bitcoin exchange platforms
- bitcoin