arXiv論文メモ
新着一覧
cs.CR / cs.DC · 査読状況未確認

DAG型合意プロトコルへの取引順序操作攻撃を体系化

Competition, Collusion, and Corruption: The Spectrum of MEV Attacks on DAG-Based BFT Consensus Protocols

Iliya Mirzaei, Heer Patel, Chenyuan Wu, Mohammad Javad Amiri

この論文をやさしく読む

ひとことで言うと

DAG型の合意形成で、取引順序の操作による利益獲得の問題を共通の分類軸で整理し、複数プロトコルを比較します。

何に役立つ?

合意の安全性・進行性と、公平な取引順序が別の問題であることを理解し、設計を比較する防御側の評価枠組みになります。

この研究の面白いところ

攻撃者、プロトコル、対象、配置という四群の軸を分け、可能な範囲で一軸ずつ変える実験を行います。六つの実用プロトコルで設計由来の違いを調べます。

どこまで分かった?

評価した全プロトコルに少なくとも一部の順序操作への弱さを報告しますが、すべての攻撃が成功するわけではありません。どの設計条件かに依存する結果です。

v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。

アブストラクトの日本語訳

ビザンチン障害耐性(BFT)プロトコルは、ノードが悪意を持って故障しても安全性と活性を保証する。しかし、提案者が割り当てる取引の順序が、クライアントが送信した順序からずれるような、敵対的な取引順序の操作は防がない。この裁量を利益獲得に利用することは最大抽出可能価値(MEV)として知られている。DAG型BFTプロトコルでは、各ラウンドで単一の指定提案者を経由させる代わりに、すべてのレプリカが同時にブロックを提案するため、この問題が強まる。 DAG型BFTへのMEV攻撃が増えるにつれ、全体像を把握しにくくなっている。攻撃は異なるプロトコルと異なる指標の下で個別に報告されるため、二つの攻撃が本質的に異なるのか、単に説明の仕方が異なるだけなのかが明確ではない。本論文は、攻撃者、プロトコル、標的、展開環境という四つの分類に沿ってDAG型BFTへのMEV攻撃空間を示し、この不足を埋める。各分類について、攻撃の影響を決める次元を特定する。攻撃空間の各点は、各次元の値を一つずつ固定することで、互いに異なる潜在的なMEV攻撃を表し、特定のDAG型BFTプロトコル上で具体化できる。 実運用されている六つのDAG型BFTプロトコルを対象に、プロトコルが許す範囲で一つの次元だけを分離した一連の実験を行い、MEV攻撃の成功率に与える影響を実測する。評価したすべてのプロトコルが、この空間内の少なくとも一部のMEV攻撃に脆弱であり、どの攻撃が成功するかは、攻撃者の労力よりも、主としてプロトコル自体の設計によって決まることが実験から分かった。

v1の要旨から自動生成。本文の精読・人による確認は未実施。

初稿
2026-09-17(UTC)
最新改訂
2026-09-17 · v1
査読・掲載
査読状況未確認
arXivで読むPDF

更新履歴

取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。

原文の要旨

Byzantine Fault-Tolerant (BFT) protocols guarantee safety and liveness despite the malicious failure of nodes. However, they do not prevent adversarial manipulation of transaction order, where the order a proposer assigns diverges from the order in which clients submitted their transactions. Exploiting this discretion for profit is known as maximal extractable value (MEV), and it is intensified in DAG-based BFT protocols, where every replica proposes blocks concurrently rather than routing transactions through a single designated proposer each round. The proliferation of MEV attacks on DAG-based BFT protocols has made the resulting landscape difficult to navigate: attacks are reported individually, on different protocols, and under different metrics, making it unclear whether two attacks differ fundamentally or merely in how they are described. This paper closes that gap by presenting an attack space for MEV on DAG-based BFT protocols, organized around four families: the adversary, the protocol, the target, and the deployment. For each family, we identify the dimensions that shape an attack's impact. Each point in the attack space fixes one value per dimension, thereby representing a distinct, potential MEV attack, which can then be instantiated on a specific DAG-based BFT protocol. We perform a set of experiments, each isolating a single dimension where the protocol permits it, to empirically measure its effect on the success rate of MEV attacks against six production DAG-based BFT protocols. Our experimental evaluation reveals that every protocol we evaluate is vulnerable to at least a subset of the MEV attacks in this space, and that which attacks succeed is mostly dictated by the protocol's own design rather than by attacker effort.

著者のコメント

26 pages, 8 figures, 4 tables

arXiv ID: 2609.20069 / 要約の誤りについて