UCL Discovery
UCL home » Library Services » Electronic resources » UCL Discovery

The Bitcoin Brain Drain: Examining the Use and Abuse of Bitcoin Brain Wallets

Vasek, Marie; Bonneau, Joseph; Castellucci, Ryan; Keith, Cameron; Moore, Tyler; (2017) The Bitcoin Brain Drain: Examining the Use and Abuse of Bitcoin Brain Wallets. In: Grossklags, Jens and Preneel, Bart, (eds.) Financial Cryptography and Data Security. (pp. pp. 609-618). Springer: Berlin, Heidelberg, Germany. Green open access

[thumbnail of vasekfc16.pdf]
Preview
Text
vasekfc16.pdf - Accepted Version

Download (248kB) | Preview

Abstract

In the cryptocurrency Bitcoin, users can deterministically derive the private keys used for transmitting money from a password. Such “brain wallets” are appealing because they free users from storing their private keys on untrusted computers. Unfortunately, they also enable attackers to conduct unlimited offline password guessing. In this paper, we report on the first large-scale measurement of the use of brain wallets in Bitcoin. Using a wide range of word lists, we evaluated around 300 billion passwords. Surprisingly, after excluding activities by researchers, we identified just 884 brain wallets worth around $100K in use from September 2011 to August 2015. We find that all but 21 wallets were drained, usually within 24 h but often within minutes. We find that around a dozen “drainers” are competing to liquidate brain wallets as soon as they are funded. We find no evidence that users of brain wallets loaded with more bitcoin select stronger passwords, but we do find that brain wallets with weaker passwords are cracked more quickly.

Type: Proceedings paper
Title: The Bitcoin Brain Drain: Examining the Use and Abuse of Bitcoin Brain Wallets
Event: International Conference on Financial Cryptography and Data Security
ISBN-13: 978-3-662-54969-8
Open access status: An open access version is available from UCL Discovery
DOI: 10.1007/978-3-662-54970-4_36
Publisher version: https://doi.org/10.1007/978-3-662-54970-4_36
Language: English
Additional information: This version is the author accepted manuscript. For information on re-use, please refer to the publisher’s terms and conditions.
Keywords: Bitcoin; Brain wallets; Passwords; Cybercrime measurement
UCL classification: UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science > Dept of Computer Science
UCL > Provost and Vice Provost Offices > UCL BEAMS
UCL
URI: https://discovery.ucl.ac.uk/id/eprint/10154816
Downloads since deposit
24Downloads
Download activity - last month
Download activity - last 12 months
Downloads by country - last 12 months

Archive Staff Only

View Item View Item