Zerocash: Decentralized Anonymous Payments from Bitcoin

被引:1036
|
作者
Ben-Sasson, Eli [1 ]
Chiesa, Alessandro [2 ]
Garmant, Christina [3 ]
Green, Matthew [3 ]
Miers, Ian [3 ]
Tromer, Eran [4 ]
Virza, Madars [2 ]
机构
[1] Technion, Haifa, Israel
[2] MIT, Cambridge, MA 02139 USA
[3] Johns Hopkins Univ, Baltimore, MD 21218 USA
[4] Tel Aviv Univ, Tel Aviv, Israel
关键词
Bitcoin; decentralized electronic cash; zero knowledge;
D O I
10.1109/SP.2014.36
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Bitcoin is the first digital currency to see widespread adoption. While payments are conducted between pseudonyms, Bitcoin cannot offer strong privacy guarantees: payment transactions are recorded in a public decentralized ledger, from which much information can be deduced. Zerocoin (Miers et al., IEEE S&P 2013) tackles some of these privacy issues by unlinking transactions from the payment's origin. Yet, it still reveals payments' destinations and amounts, and is limited in functionality. In this paper, we construct a full-fledged ledger-based digital currency with strong privacy guarantees. Our results leverage recent advances in zero-knowledge Succinct Non-interactive ARguments of Knowledge (zk-SNARKs). First, we formulate and construct decentralized anonymous payment schemes (DAP schemes). A DAP scheme enables users to directly pay each other privately: the corresponding transaction hides the payment's origin, destination, and transferred amount. We provide formal definitions and proofs of the construction's security. Second, we build Zerocash, a practical instantiation of our DAP scheme construction. In Zerocash, transactions are less than 1 kB and take under 6 ms to verify orders of magnitude more efficient than the less-anonymous Zerocoin and competitive with plain Bitcoin.
引用
收藏
页码:459 / 474
页数:16
相关论文
共 50 条
  • [1] Decentralized Anonymous Crowdsourcing with Blockchain and Anonymous Payments
    Zhu, Hanwei
    Chau, Sid Chi-Kin
    2024 IEEE ANNUAL CONGRESS ON ARTIFICIAL INTELLIGENCE OF THING, AIOT 2024, 2024, : 239 - 245
  • [2] Secure and anonymous decentralized Bitcoin mixing
    Ziegeldorf, Jan Henrik
    Matzutt, Roman
    Henze, Martin
    Grossmann, Fred
    Wehrle, Klaus
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 80 : 448 - 466
  • [3] Accountable Privacy for Decentralized Anonymous Payments
    Garman, Christina
    Green, Matthew
    Miers, Ian
    FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, FC 2016, 2017, 9603 : 81 - 98
  • [4] Blockchain-enabled Decentralized Anonymous Crowdsourcing Based on Anonymous Payments
    Zhu, Hanwei
    Wang, Nan
    Chau, Sid Chi-Kin
    Khonji, Majid
    2023 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY, ICBC, 2023,
  • [5] On Offline Payments with Bitcoin
    Dmitrienko, Alexandra
    Noack, David
    Sadeghi, Ahmad-Reza
    Yung, Moti
    FINANCIAL CRYPTOGRAPHY AND DATA SECURITY: FC 2014 WORKSHOPS, BITCOIN AND WAHC 2014, 2014, 8438 : 159 - +
  • [6] Bitcoin and the Future of Digital Payments
    Luther, William J.
    INDEPENDENT REVIEW, 2016, 20 (03): : 397 - 404
  • [7] Is Bitcoin a Decentralized Currency?
    Gervais, Arthur
    Karame, Ghassan O.
    Capkun, Vedran
    Capkun, Srdjan
    IEEE SECURITY & PRIVACY, 2014, 12 (03) : 54 - 60
  • [8] Ransomware payments in the Bitcoin ecosystem
    Paquet-Clouston, Masarah
    Haslhofer, Bernhard
    Dupont, Benoit
    JOURNAL OF CYBERSECURITY, 2019, 5 (01): : 1 - 11
  • [9] Zerocoin: Anonymous Distributed E-Cash from Bitcoin
    Miers, Ian
    Garman, Christina
    Green, Matthew
    Rubin, Aviel D.
    2013 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP), 2013, : 397 - 411
  • [10] Estimation of Ransomware Payments in Bitcoin Ecosystem
    Raheem, Ali
    Raheem, Rand
    Chen, Thomas M.
    Alkhayyat, Ahmed
    19TH IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED PROCESSING WITH APPLICATIONS (ISPA/BDCLOUD/SOCIALCOM/SUSTAINCOM 2021), 2021, : 1667 - 1674