The Sybil Attacks and Defenses: A Survey

The Sybil Attacks and Defenses: A Survey
复制标题

Sybil 攻击与防御:调查

DOI:
10.6029/smartcr.2013.06.009
复制
发表时间:
2013
期刊:
ArXiv
影响因子:
--
通讯作者:
Joongheon Kim
Joongheon Kim
中科院分区:
--
文献类型:
--
作者:
Aziz Mohaisen;Joongheon Kim

文献摘要

被引文献

相似文献

在本文中,我们仔细研究了Sybil攻击和防御它的进展,特别强调最近的工作。我们在研究文献中确定了三个主要的脉络,描述了抵御攻击的方法:使用可信认证,使用资源测试,以及使用社交网络。文献中的第一个脉络考虑使用可信认证来防御攻击,这是通过使用可以取代集中式认证实体的加密原语的集中式认证或分布式认证来完成的。文献中的第二种思路考虑通过测试资源来防御攻击,测试资源可以是IP测试、网络坐标或经常性成本(例如,通过要求客户解决难题)。文献中的第三个也是最后一个静脉是通过减轻攻击,将社交网络用作引导安全和随机游走理论的工具相结合,在某些假设下,这被证明是有效的防御攻击。我们对文献中三个静脉的不同方案进行了调查和分析,发现了一些不足之处,这些不足之处形成了几个值得研究的有趣方向和研究问题。
In this paper we take a close look at the Sybil attack and advances in defending against it, with particular emphasis on recent work. We identify three major veins in the research literature that describe ways to defend against the attack: using trusted certification, using resource testing, and using social networks. The first vein in the literature considers defending against the attack using trusted certification, which is done by either centralized certification or distributed certification using cryptographic primitives that can replace the centralized certification entity. The second vein in the literature considers defending against the attack by testing resources, which can be in the form of IP testing, network coordinates, or recurring cost (e.g., by requiring clients to solve puzzles). The third and last vein in the literature is by mitigating the attack, combining social networks used as bootstrap security and tools from random walk theory, which was shown to be effective in defending against the attack under certain assumptions. Our survey and analyses of the different schemes in the three veins in the literature show several shortcomings, which form several interesting directions and research questions worthy of investigation.