テーマ:ブログ 先進ブロックチェーンサイバーセキュリティ:金融サービス業のための技術と政策の考察(19) Theft of Keys. For all systems, the theft of passwords or other access devices through various forms of attack is a common and recurring problem. Blockchains are no different. The majority of attacks related to blockchains have been designed to steal cryptographic keys, not necessarily attack the blockchain itself. This experience underscores the importance of enterprise key management to reduce the risk of stolen or compromised keys.鍵の窃盗。 すべてのシステムにとって、攻撃の種々の形を介してパスワードあるいは他のアクセス装置の盗みはよくあることで、再発している問題です。 ブロックチェーンには違いがありません。 ブロックチェーンと関係がある攻撃の大多数は暗号化キーを盗んで、必ずしもブロックチェーン自身を襲わないよう設計されています。 この経験は盗まれたか、あるいは損なわれた鍵のリスクを減らすために企業鍵管理の重要性を強調します。 Attacks on process. Blockchain also introduces different attack vectors that malicious actors may seek to exploit. For example, advanced attackers will look to influence decision-making processes around the blockchain in order to add new parts to the chain, change rules or policies, or manipulate a managing entity in such a way that is not transparent or is fraudulent. Attackers will also seek to create new fraud through mechanisms that will need to be created to adjudicate and remediate fraud. Ultimately, an integrity control system will be needed to ensure that those ihttps://blog.with2.net/link/?665413n control of decision-making in relation to the chain are acting as fiduciaries of the chain, rather than as self-interested owners of the chain.プロセスに対する攻撃。 ブロックチェーンが同じく悪意があるアクターが利用しようと努めるかもしれない異なった攻撃ベクトルを紹介します。 例えば、先進的な攻撃者がチェーンに新しい部分を加えるか、規則あるいは政策を変えるか、あるいは透明ではないか、あるいは詐欺のこのような方法で管理実体を操るためにブロックチェーンの周りに意志決定過程に影響を与えることを期待するでしょう。 攻撃者が同じく審査員を務めて、そして詐欺を矯正するために作られる必要があるであろうメカニズムを通して新しい詐欺を作ろうと努めるでしょう。 究極的には、完全性制御システムがチェーンに関して意志決定のコントロールができる人たちが、チェーンの利己的な所有者としてよりむしろ、チェーンの受託者の役を務めていることを保証するために必要とされるでしょう。