作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2023, Vol. 49 ›› Issue (8): 1-12. doi: 10.19678/j.issn.1000-3428.0065926

• 热点与综述 • 上一篇    下一篇

区块链数据形成与隐私威胁

王群1,2, 李馥娟1,3, 倪雪莉1,2, 夏玲玲1,2, 梁广俊1,2   

  1. 1. 江苏警官学院 计算机信息与网络安全系, 南京 210031
    2. 江苏省电子数据取证分析工程研究中心, 南京 210031
    3. 计算机软件新技术国家重点实验室(南京大学), 南京 210093
  • 收稿日期:2022-10-08 出版日期:2023-08-15 发布日期:2023-08-16
  • 作者简介:

    王群(1971—),男,教授、博士,主研方向为网络空间安全、区块链技术

    李馥娟,教授

    倪雪莉,讲师、硕士

    夏玲玲,副教授、博士

    梁广俊,讲师、博士

  • 基金资助:
    国家自然科学基金(61802155); 江苏省高校自然科学研究重大项目(20KJA520004); 江苏省社会科学基金(21MLD012); 计算机软件新技术国家重点实验室(南京大学)开放课题项目(KFKT2022B23); 江苏省市场监督管理局科技计划项目(KJ21125027)

Data Formation and Privacy Threat of Blockchain

Qun WANG1,2, Fujuan LI1,3, Xueli NI1,2, Lingling XIA1,2, Guangjun LIANG1,2   

  1. 1. Department of Computer Information and Cybersecurity, Jiangsu Police Institute, Nanjing 210031, China
    2. Jiangsu Electronic Data Forensics and Analysis Engineering Research Center, Nanjing 210031, China
    3. State Key Laboratory for Novel Software Technology at Nanjing University, Nanjing 210093, China
  • Received:2022-10-08 Online:2023-08-15 Published:2023-08-16

摘要:

区块链借助于密码学、共识算法、激励机制、点对点网络、分布式账本、智能合约等关键技术,在没有第三方权威机构参与的互不信任网络环境中,实现了对事务记录的分布式一致性、不可篡改性、可溯源性等功能特性,构成了一种崭新的可信、安全、可编程的网络生态。与此同时,支撑区块链自身功能实现的相关技术及机制也带来了隐私安全问题。将隐私作为个人数据的一个子集进行研究,从而将区块链数据划分为事务数据和区块数据等2种类型,并通过对区块链数据的解构以及对所得信息的关联,分析隐藏在数据中的隐私信息。从数据传输方式和数据结构方面介绍区块链数据构成;在分析区块链数据特点的基础上,综合对隐私的理解、度量、泄露途径等因素,给出区块链隐私的定义,并从身份隐私、数据隐私、网络隐私等方面进行分析;通过对网络安全、密码学安全、跨链操作、共识算法等方面带来的隐私泄露风险的分析,指出区块链隐私威胁存在的挑战和未来研究方向。

关键词: 区块链, 隐私威胁, 身份隐私, 数据隐私, 网络隐私

Abstract:

The blockchain technology utilizes cryptography, consensus algorithms, incentive mechanism, Peer-to-Peer(P2P) network, distributed ledgers, smart contracts, and other key technologies.This enabled its application in a network environment without third-party authority and mutual distrust to realize distributed consistency, irreversibility, traceability, and other function characteristics for transaction records, and has constituted a new trusted, safe, and programmable network ecology.Simultaneously, the technologies and mechanisms underpinning blockchain realization have raised privacy concerns. Privacy is studied as a subset of personal data; thus, the blockchain data are divided into transaction data and block data. The blockchain data is deconstructed, the obtained information is associated to analyze the privacy information hidden in the data.To elaborate, the blockchain data structure is introduced from the perspective of the blockchain data transmission mode and data structure. Based on the analysis of the characteristics of blockchain data and by integrating factors such as understanding, measurement, and the privacy disclosure approach, a definition of blockchain privacy is provided. Blockchain privacy is analyzed in terms of identity, data, and network privacy. The challenges and research directions of blockchain privacy threats are highlighted by focusing on the analysis of privacy leakage risks brought about by network security, cryptographic security, cross-chain operations, and consensus algorithms.

Key words: blockchain, privacy threat, identity privacy, data privacy, network privacy