Impact of 51% Node Control on Bitcoin

14 replies 367 views
BasedOrbitSenior Member
Posts: 5 · Reputation: 1866
#1Oct 29, 2019, 12:04 PM
Had a thought... what if one group controlled over 50% of Bitcoin nodes? What could they do? Could they perform an eclipse attack by hiding blocks from others? Or would using something like Bitnode fix this issue? But then again, could Bitnode still suggest malicious nodes?
2 Reply Quote Share
ColdGangMember
Posts: 155 · Reputation: 183
#2Oct 30, 2019, 11:26 PM
If someone controls over 50% of nodes, they could technically initiate a 51% attack. But really, they could mainly influence transaction flow and maybe double-spend coins. Though most attacks rely on hash power, some eclipse attacks could definitely happen.
2 Reply Quote Share
BasedOrbitSenior Member
Posts: 5 · Reputation: 1866
#3Oct 31, 2019, 07:24 PM
Yeah, but double-spending needs the ability to create blocks that overwrite the main chain, right? That comes from mining power, not just running nodes. And what do you mean by ‘block and kind of delay transactions’?
1 Reply Quote Share
ColdGangMember
Posts: 155 · Reputation: 183
#4Oct 31, 2019, 09:42 PM
Good point. To run that many nodes, you'd likely need some hash power too. Otherwise, you’d just have regular computers totally synced with the blockchain without any real mining power. And for delayed transactions, they could just drop a transaction broadcast and you’d have to resend it.
0 Reply Quote Share
jakecobraFull Member
Posts: 328 · Reputation: 622
#5Oct 31, 2019, 11:15 PM
Network disruption could happen, yeah. Blocking certain transactions would be straightforward as a censorship tool. Sybil attacks don't really work on Bitcoin because of PoW, but they might fake support for a soft fork, right?
3 Reply Quote Share
mr_apeNewbie
Posts: 404 · Reputation: 35
#6Oct 31, 2019, 11:38 PM
Exactly. Eclipse attacks, though, those can enable double-spends if the victim accepts zero-confirmation transactions. If an attacker isolates a node, that node only sees what the attacker shows it.
1 Reply Quote Share
MadNovaHero Member
Posts: 280 · Reputation: 3536
#7Nov 1, 2019, 05:58 AM
+1 on that. It’s true if a node gets eclipsed, the attacker sees all the transactions that node generates. Total privacy breach there.
4 Reply Quote Share
gang2015Member
Posts: 690 · Reputation: 62
#8Nov 1, 2019, 09:59 AM
Bitnode isn't a perfect solution. It just tracks nodes that accept connections, not the peer connections themselves. A malicious actor could still show up as legitimate.
0 Reply Quote Share
wizard_2016Full Member
Posts: 128 · Reputation: 575
#9Nov 1, 2019, 11:39 AM
Yep, tracking honesty is trickier since honest nodes connect to many peers. If an attacker is smart about it, they don’t even need to run a full node.
2 Reply Quote Share
gr3g.4ltFull Member
Posts: 59 · Reputation: 419
#10Nov 3, 2019, 09:49 AM
So, as long as a node connects to at least one honest node, there’s little risk for eclipse attacks. Odds of a node getting fully eclipsed are pretty low if connections are random.
2 Reply Quote Share
jake.altSenior Member
Posts: 76 · Reputation: 1039
#11Nov 3, 2019, 03:56 PM
Right, if an attacker isolates nodes, they can control peer connections and flood victims with fake nodes. But only a true 51% attack can really rewrite Bitcoin’s history.
3 Reply Quote Share
laseryesSenior Member
Posts: 192 · Reputation: 1504
#12Nov 3, 2019, 05:55 PM
That’s a scary thought. Imagine the implications for money laundering. If someone pulls this off, it becomes super hard to trace.
0 Reply Quote Share
gang2015Member
Posts: 690 · Reputation: 62
#13Nov 4, 2019, 05:08 AM
You can't even be sure you own 50% of nodes. Some are just passive watchers and don’t broadcast. Successful attacks require tons of IPs, and honest nodes blacklist the bad ones. It’s all expensive.
2 Reply Quote Share
Posts: 3540 · Reputation: 35
#14Nov 4, 2019, 09:50 AM
For real. Even if an attack happens, any issues can usually be fixed pretty fast. These attacks seem pointless because they don't lead anywhere solid.
4 Reply Quote Share
Posts: 3540 · Reputation: 35
#15Nov 4, 2019, 02:01 PM
True, attacks like that are hard to pull off consistently. A rough estimate of node distributions exists, but that’s still just a rough guess.
2 Reply Quote Share

Related topics