Malicious node operator controlling (n - t) + 1
of the signers set can hold network to ransom
#1144
Labels
(n - t) + 1
of the signers set can hold network to ransom
#1144
Since
entropy-tss
is run in a TDX enclave, node operators are unable to read keyshares or modify the the behaviour ofentropy-tss
, which mitigates many possible attacks from malicious node operators.However, they can stop the virtual machine process of the TDX guest from running. If they control more than
n - t
members of the current signer set, and stop all their nodes from running, it will be impossible for the network to sign messages or do a reshare. At this point the entropy network can only continue with cooperation from the node operator.Of course they can be slashed for this, but it may be the case that their combined stake is sufficiently smaller than the network's total value to make a ransom attack worthwhile.
The text was updated successfully, but these errors were encountered: