Attacking and Defending Blockchains: From Horror Stories to Secure Wallets

Presented at Black Hat Europe 2018, Dec. 5, 2018, 2 p.m. (50 minutes)

This talk will review some of the most spectacular security failures in blockchain systems, and will help you mitigate your risks. We will notably review some of the most dramatic Ethereum smart contract issues, discuss objectively the case of Iota's custom crypto, describe how we could have stolen $millions worth of tokens (but didn't), and present examples of bugs that we found in popular Bitcoin software utilities. In the second part of the talk, we'll review the different types of wallets and their pros and cons, and we'll discuss the risks and benefits of hardware-based wallets for individuals, organizations, and trading platforms. The speaker has an extensive experience auditing blockchain systems for leading cryptocurrencies, and now helps secure a cryptocurrency exchange platform.


Presenters:

  • Jean-Philippe Aumasson - VP Technology, Kudelski Security
    Jean-Philippe (JP) Aumasson is a world-renowned expert in cryptography, part-time VP Technology at Kudelski Security, co-founder of Teserakt.io (IoT security), and lead security advisor of Taurus Group (digital asset exchange) . JP holds a PhD from EPFL (2009) and has worked for 8 years in applied cryptography, security architecture, and cybersecurity within the Kudelski Group. JP wrote the acclaimed books Serious Cryptography (No Starch Press, 2017) and has designed widely used algorithms such as BLAKE2 and SipHash. He has performed numerous security assessments for leading blockchain and cryptocurrency organizations. He has spoken at conferences such Black Hat, DEFCON, RSAC, CCC, and Infiltrate, about applied cryptography, quantum computing, and platform security.

Links:

Similar Presentations: