This paper presents secure mempool designs under asymmetric DoS attacks. We formulate safety definitions under two abstract DoSes, namely eviction- and locking-based attacks. We propose a safe transaction admission framework for securing mempools, named saferAd, that achieves both eviction- and locking-safety. The proven security stems from an upper bound of the attack damage under locking DoSes and a lower bound of the attack cost under eviction DoSes. The evaluation by replaying real transaction traces shows saferAd incurs negligible latency or insignificant change of validator revenue.
翻译:本文提出了在非对称拒绝服务攻击下的安全矿池设计。我们针对两种抽象DoS攻击形式——基于驱逐的攻击和基于锁定的攻击——制定了安全定义。我们提出了一种名为saferAd的安全交易接纳框架,用于保护矿池安全,该框架同时实现了驱逐安全性和锁定安全性。其可证明的安全性源自于锁定DoS攻击下攻击损害的上界以及驱逐DoS攻击下攻击成本的下界。通过重放真实交易轨迹的评估表明,saferAd仅带来可忽略的延迟或验证者收益的微小变化。