Blockchain technology is a crypto-based secure ledger for data storage and transfer through decentralized, trustless peer-to-peer systems. Despite its advantages, previous studies have shown that the technology is not completely secure against cyber attacks. Thus, it is crucial to perform domain specific risk analysis to measure how viable the attacks are on the system, their impact and consequently the risk exposure. Specifically, in this paper, we carry out an analysis in terms of quantifying the risk associated to an operational multi-layered Blockchain framework for Smart Mobility Data-markets (BSMD). We conduct an actor-based analysis to determine the impact of the attacks. The analysis identified five attack goals and five types of attackers that violate the security of the blockchain system. In the case study of the public permissioned BSMD, we highlight the highest risk factors according to their impact on the victims in terms of monetary, privacy, integrity and trust. Four attack goals represent a risk in terms of economic losses and one attack goal contains many threats that represent a risk that is either unacceptable or undesirable.
翻译:屏障链技术是一个基于加密的安全分类账,用于通过分散、无信任的同行对等系统储存和传输数据。尽管具有优势,但先前的研究显示,该技术并非完全安全,无法抵御网络攻击。因此,至关重要的是进行具体领域的风险分析,以衡量袭击对系统的可行性、其影响以及由此造成的风险。具体地说,在本文件中,我们分析如何量化智能流动数据市场(智能流动数据市场)运作多层链框架的相关风险。我们进行了基于行为者的分析,以确定袭击的影响。我们通过分析查明了5个攻击目标和5类攻击者,这5类攻击者侵犯了链系统的安全。在公共许可的BSMD的案例研究中,我们根据袭击对受害者在货币、隐私、完整性和信任方面的影响,强调了最高风险因素。4个攻击目标代表了经济损失风险,1个攻击目标包含许多威胁,这些威胁是不可接受或不可取的。