Dusting Attacks - Reading Assignment

yes you can attack both, what i meant and understood was that samurai has an option to mark dust funds to be “ignored” and not included in further transactions.

midva se tud tko razumeva ane? :slight_smile:

Ja se, sam mi raje v DM piši, da ne bodo drugi zmedeni :grin:

1 Like
  1. To send small ammounts of coins to an address to identify who it belongs to.
  2. By being blackmailed or extorted, or malware attacks.
  3. They work for both
  4. Do not spend feature to notify users of dusting attacks so they don’t use the suspicious coins in TXs.
1 Like
  1. The goal of a dusting attack is to de-anonymize the privacy of a user or firm by sending small amounts of cryptocurrency.
  2. Phishing attacks or Cyber Extortion threats
  3. No because the dusted funds sent to your wallet will be trackable only if you move them.
  4. Identify suspicious founds with “do not spend” label.
1 Like
  1. The goal of a dusting attack is to deanonymize cryptocurrency users.

  2. If the dusting attack is successful, the victim can be subject to phishing scams or cyber-extortion threats.

  3. Dusting attacks work for both type-1 and type-2 wallets, but only if the dust is spent. If the dust is included in a transaction, an analysis of input and output addresses is performed to link the addresses to the user.

  4. Samourai Wallet implemented a real-time alert for dust tracking as well as a “Do Not Spend” feature, which allows users to mark suspicious funds so that they are not included in future transactions.

1 Like
  1. The goal is to de-anonymize / identify the users behind specific cryptocurrency wallets.

  2. If successful, victims are subject of elaborate phishing attempts, or cyber-extortion threats.

  3. They work only if the person receiving the tiny payments then sends them on, they could potentially work with both types .

  4. They added a do not spend feature to mark coins received rom unknown sources. This prevented the user from then sending them anywhere.

1 Like
  1. What is the goal of a dusting attack?
    The goal is to eventually link the dusted addresses and wallets to their respective companies or individuals.

  2. If a dusting attack is successful, how is the victim at risk?
    Could be attacked through elaborated phishing attacks or cyber-extortion threats.

  3. Do dusting attacks work for type-1 HD wallets, type-2, or both?
    It works for both types.

  4. What features did Samourai Wallet add to protect against dusting attacks?
    Implemented a real-time alert for dust tracking as well as a “Do Not Spend” feature that lets users mark suspicious funds, so these are not included in future transactions.

1 Like
  1. What is the goal of a dusting attack?

It is basically a way to identify the identity behind an address by sending tiny amount of BTC which could then be tracked.

  1. If a dusting attack is successful, how is the victim at risk?

Her anonymity is exposed without her knowing. As a consequences this implies many other identity related attacks such as phishing.

  1. Do dusting attacks work for type-1 HD wallets, type-2, or both?

Both.

  1. What features did Samourai Wallet add to protect against dusting attacks?

Since a DA works when a « dusty » UTXO is « merged » in a transaction, if we tag these UTXO as non spendable the DA won’t work.

1 Like
  1. The goal of dusting attacks is to destroy the privacy of Bitcoin and other cryptocurrencies.
  2. By sending small amounts of crypto to multiple addresses and analyze the wallet addresses, hackers try to determine the identity of a user or organization. If the identity is successful revealed, hackers can initiate a phishing attack or cyber extortion threats.
    3.Both types of wallets hypothetically can be susceptible to dusting attacks.
    4.Samouri Wallet implemented real time tracking for dusting attacks and add a " Do Not Spend" feature as to exclude suspicious funds from future transactions.
1 Like
  1. small amounts of cryptocurrency is sent to a victims wallet by the malicious party. The attacker then attempts to track the activity of those coins when used by the victim.

  2. If the attackers are able to identify the person or organization that owns the affected wallet, the can attempt to extort or use phishing attacks.

  3. Yes. They may work against anyone who actually sends the dust to another address.

  4. implemented a real time alert for dust tracking as well as a do not spend feature when dust is identified.

1 Like
  1. Dusting Attacks goals is to identify and link wallets with users… basically de-anonymize a user
  2. because then his data would be known and exposed as his/hers
  3. deterministic wallet is not protected for dusting attacks, once the dust is used is traceable.
  4. not using the “dust” on any Tx
1 Like
  1. Retrieving someones identity

  2. By getting blackmailed for example

  3. Could work for both

  4. They made the dust tx unspendable

1 Like
  1. To determine owners of addresses
  2. The victim can be extorted or targeted in phishing attacks
  3. If the funds are used it can affect both types of wallets.
  4. They automatically report suspicious transactions to their users then can advise them not to move those funds
1 Like
  1. What is the goal of a dusting attack? — sending small amounts of coins to wallets to track transactional activities and perform a combined analysis of different addresses to deanonymize the person
  2. If a dusting attack is successful, how is the victim at risk? — the wallet’s respective companies and identities are exposed and this knowledge can be used for phishing or cyber extortion threats
  3. Do dusting attacks work for type-1 HD wallets, type-2, or both? Yes but less easily, depends on on the traceability of the dust
  4. What features did Samourai Wallet add to protect against dusting attacks? — by implementing a real time alert for dust tracking and a “do not spend” feature to mark suspicious funds and not used these in future transactions. Since dusting attacks rely on analysis of multiple addresses and transactions, deanonymizing wallets cannot be done without actual transactions of the dust.
1 Like
  • What is the goal of a dusting attack?

To deanonymize wallet owners.

  • If a dusting attack is successful, how is the victim at risk?

The attackers might use the obtained information to target their phishing attempts more precisely.

  • Do dusting attacks work for type-1 HD wallets, type-2, or both?

The best way to protect against a DustAttack is to leave the DustTransactions unspent!

  • What features did Samourai Wallet add to protect against dusting attacks?

The Samourai Wallet let’s you mark UTXOs as “Do not spend!”. This prevents the Wallet from using these Dusty UTXOs in transactions.

2 Likes

What is the goal of a dusting attack?

The goal of a dusting attack is to link the dusted wallets to a specific individual or business.

If a dusting attack is successful, how is the victim at risk?
Do dusting attacks work for type-1 HD wallets, type-2, or both?

The victim is at risk of phising attacks or cyber extortion threats if the dusting attack is successful.

Dusting attacks work on both type of wallets, if a user spends that dust, they are at higher risk of being targeted.

What features did Samourai Wallet add to protect against dusting attacks?

Samourai wallet added a “Do Not Spend” feature that allows you to mark suspicious funds so they arent included in future transactions. Also if you don’t spend/move the dust to a different wallet then the attackers wont be able to make the connections they need to “deanonymize” the wallets.

1 Like
  1. To deanonymize the person or company behind each wallet.

  2. If successful, the attackers may use this knowledge against their targets, either through elaborated phishing attacks or cyber-extortion threats

  3. Both. Because when the dust coins are sent again, they can be tracked and linked to the receiver of the dust coins.

  4. The Samourai Wallet team implemented a real-time alert for dust tracking as well as a “Do Not Spend” feature that lets users mark suspicious funds, so these are not included in future transactions.

1 Like

Dusting Attacks - Reading Assignment

  1. What is the goal of a dusting attack? 2. If a dusting attack is successful, how is the victim at risk?

A. The goal of the attacker is to analyze blockchain transactions and deanonomize users. If successful, then to link dusted wallets to the deanonomized user, perpetrate cyber extortion threats, phish those users, or there may be no harm. Government research agencies, companies, research labs with various for profit and not for profit incentives may be attackers.

  1. Do dusting attacks work for type-1 HD wallets, type-2, or both?

A. Yes, both.

  1. What features did Samourai Wallet add to protect against dusting attacks?

A. "The Samourai Wallet team implemented a real-time alert for dust tracking as well as a “Do Not Spend” feature that lets users mark suspicious funds, so these are not included in future transactions.” - Binance Academy Anon Author

1 Like

1. What is the goal of a dusting attack?
The goal of a dusting attack is to seed wallets with different UTXO’s whick can be tracked in an attempt to determine which wallets are controlled by the same person and deanonymize them.
2. If a dusting attack is successful, how is the victim at risk?
The information could be used to target high net worth individuals, or launch customized phishing attacks against them.
3. Do dusting attacks work for type-1 HD wallets, type-2, or both?
Both.
4. What features did Samourai Wallet add to protect against dusting attacks?
The wallet identified suspicious transactions, and allowed the owner to exclude those utxo’s from being spent.

1 Like
  1. What is the goal of a dusting attack? To determine which wallet addresses belong to the same crypto-wallet.

  2. If a dusting attack is successful, how is the victim at risk? The victim is at risk to phishing attacks or cyber-extortion.

  3. Do dusting attacks work for type-1 HD wallets, type-2, or both? Yes, but only if he recipient moves the dust.

  4. What features did Samourai Wallet add to protect against dusting attacks? A real-time alert for dust tracking, along with a “do not spend feature” feature that allows for suspicious funds to be identified.

1 Like