【Author】
Tang, Yujia; Xu, Chang; Zhang, Can; Wu, Yan; Zhu, Liehuang
【Source】CYBER SECURITY, CNCERT 2021
【Abstract】Tornado Cash, the most popular non-custodial coin mixer on Ethereum, is widely used to protect the privacy of addresses. However, some inappropriate transaction behaviors in Tornado Cash mixing mechanism lead to the risk of privacy leakage. More specifically, the malicious attackers can link multiple addresses of the same users according to the transaction data. Motivated by the above problem, this paper systematically analyzes the privacy issues of Tornado Cash for the first time. In this paper, we give the macroscopic analysis of Tornado Cash based on the on-chain data and formalize two types of transaction patterns. Focus on the presented transaction patterns, we propose three heuristic clustering rules to link the users' addresses, which reduce the size of users' anonymity set. Finally, we perform the experiment on real Tornado Cash transaction data to describe the effectiveness of the proposed clustering rules.
【Keywords】Ethereum; Tornado Cash; Address linkability; Heuristic cluster
评论