ブロック検証前に採掘する方式の安全性の限界
Security Limits of Mining Before Validation in Nakamoto Consensus
この論文をやさしく読む
ひとことで言うと
新しいブロックの検証を待たずに次の採掘を始める方式が、どの条件で安全性を失うかを理論的に調べた研究。
何に役立つ?
ブロックチェーンの採掘手順を設計・評価するとき、検証時間と攻撃者の採掘能力の関係を判断するための理論的な基準になる。
この研究の面白いところ
安全性が保たれる採掘能力の閾値を示す一方、検証時間内に攻撃者が平均1個超のブロックを作れると、無効な枝を利用して固定深度の確認済みブロックを最終的に除去できる攻撃を構成した。
どこまで分かった?
結果は、ネットワーク遅延と検証時間に所定の上限があるモデルでの理論解析である。実際のネットワークで攻撃を実行した測定結果は要旨に記載されていない。
v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。
アブストラクトの日本語訳
検証前の採掘では、採掘者は新たに受け取ったブロックの妥当性確認が終わる前に、そのブロックの先へチェーンを伸ばせる。次のブロック報酬を得る競争で先行できる一方、後で一つのブロックを無効と判定すると、その上に積まれた正直な採掘者の作業も失われる。検証を瞬時に終わるものとして扱う解析では、この影響は見落とされる。 本研究は、ネットワーク遅延に上限があり、検証時間の上限が処理負荷に依存しない中本コンセンサスのモデルで、その危険を定量化する。攻撃者の採掘能力がある明示的な閾値を下回れば、正直な採掘者が完全に検証したチェーンは成長し続け、任意の固定した観測期間において、高い確率で安定した履歴について合意することを示す。 一方、正直な採掘者を繰り返し無効な枝へ誘導する攻撃も構成する。許された検証時間中に攻撃者が平均して1個を超えるブロックを生成する場合、この攻撃は、当初の確認深度を任意の固定値にしても、最終的に標的ブロックを除去できる。通常の非公開採掘と組み合わせると、各正直な採掘者の採掘能力が無視できるほど小さい完全分散の領域で、漸近的に一致する境界が得られる。この結果は、検証前の採掘の安全性が、ネットワーク遅延だけでなく検証の遅さによっても制限されることを示している。
v1の要旨から自動生成。本文の精読・人による確認は未実施。
- 初稿
- 2026-09-24(UTC)
- 最新改訂
- 2026-09-24 · v1
- 査読・掲載
- 査読状況未確認
更新履歴
- v1 2026-09-24 この版を読む
取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。
原文の要旨
Mining before validation allows miners to extend a newly received block before completing its validity checks, giving them a head start in the race for the next block reward. This head start, however, comes with a security risk: rejecting one invalid block also discards the honest work built on it, an effect missed when validation is treated as instantaneous. We quantify this risk in a model of Nakamoto consensus with bounded network delay and a validation-time bound independent of processing load. We establish an explicit threshold on adversarial mining power below which honest miners' fully validated chains continue to grow and agree on a stable history with high probability over any fixed observation period. We also construct an attack that repeatedly draws honest mining onto invalid branches. When the adversary produces more than one block on average during the allowed validation time, the attack can eventually remove a target block at any fixed initial confirmation depth. Combined with ordinary private mining, this attack yields a matching asymptotic bound in the fully decentralized regime, where each honest miner has negligible mining power. The results show how validation latency limits the security of mining before validation, beyond the constraint imposed by network delay.
arXiv ID: 2609.29222 / 要約の誤りについて