イーサリアムの類似アドレス詐欺の資金の流れ
The Anatomy of Address Poisoning on Ethereum: Funding Mechanisms, Scam Signatures, and Laundering via Tornado Cash
この論文をやさしく読む
ひとことで言うと
似たアドレスを履歴に混ぜて送金先を誤らせる詐欺について、資金調達と資金移動の手口を調べた。
何に役立つ?
APT詐欺に関係するアドレスのまとまりを分析し、資金の流れを理解するのに役立つ。
この研究の面白いところ
検出そのものより、五種類の運用上の特徴とTornado Cashを介した資金の流れに注目した。
どこまで分かった?
要旨には調査件数や資金洗浄の割合などの結果数値は示されていない。
v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。
アブストラクトの日本語訳
アドレス・ポイズニング転送(APT)は、被害者が以前に使った正当なアドレスに似た詐欺用アドレスで転送を発生させ、アドレス帳の履歴を汚染するブロックチェーンのフィッシング詐欺である。仕組みは単純だが、近年の被害は数百万ドルに及び、研究上も注目されている。本研究は検出にとどまらず、APTで十分調べられていない三点、詐欺資金の調達方法、詐欺を特徴付けるシグネチャ、公開サービスを使った被害金の資金洗浄を調べる。特に、APTの運用の主要な特徴を捉える五つのシグネチャ群を提案し、アドレスをまとめて分析する際に使えるとする。また、APTへの資金供給と被害金の資金洗浄にTornado Cashがどう使われるかを初めて調査する。
v1の要旨から自動生成。本文の精読・人による確認は未実施。
- 初稿
- 2026-09-20(UTC)
- 最新改訂
- 2026-09-20 · v1
- 査読・掲載
- 査読状況未確認
更新履歴
- v1 2026-09-20 この版を読む
取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。
原文の要旨
Address-Poisoning Transfer (APT) is a prevalent blockchain phishing scam in which a scammer poisons a victim's address book by generating a transfer with a phishing address that looks similar to a benign address that the victim has previously interacted with. Although simple, APT phishing attacks have cost users millions of dollars in recent years, which has captured the attention of the research community (Ye et al. WWW'24, Guan-Li CCS'24, Chen et al. NDSS'25, Tsuchiya et al. USENIX'25). In this work, we go beyond detection and investigate three important and underexplored aspects of APT: scam funding mechanisms, scam signatures, and scam proceeds laundering via public services. In particular, we propose five families of scam signatures that capture key aspects of APT operations, which are useful for address clustering. We also conduct the first investigation into usage of Tornado Cash for funding APTs and laundering scam proceeds.
arXiv ID: 2609.23405 / 要約の誤りについて