Augmenting MetaMask to Support TLS-endorsed Smart Contracts

Ulrich Gallersdörfer, Jonas Ebel, Florian Matthes

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

1 Scopus citations

Abstract

Users in blockchain systems are exposed to address replacement attacks due to the weak binding between websites and smart contracts, as they have no way to verify the authenticity of obtained addresses. Prior research introduced TLS-endorsed Smart Contracts (TeSC) that equip Smart Contracts with authentication information, proving the relation to the domain name of the respective website. For an efficient and user-friendly approach, this technology needs to be integrated with wallets. Based on the analysis of browser warnings regarding TLS-certificates, we augment MetaMask with the ability to detect TeSC and warn users if attack scenarios are detected. To evaluate our work, we conduct a study with 40 participants to show the effectiveness of TeSC to prevent address-replacement attacks and ensure the safe interaction of users and addresses.

Original languageEnglish
Title of host publicationData Privacy Management, Cryptocurrencies and Blockchain Technology - ESORICS 2021 International Workshops, DPM 2021 and CBT 2021, Revised Selected Papers
EditorsJoaquin Garcia-Alfaro, Jose Luis Muñoz-Tapia, Guillermo Navarro-Arribas, Miguel Soriano
PublisherSpringer Science and Business Media Deutschland GmbH
Pages227-244
Number of pages18
ISBN (Print)9783030939434
DOIs
StatePublished - 2022
Event16th International Workshop on Data Privacy Management, DPM 2021, and 5th International Workshop on Cryptocurrencies and Blockchain Technology, CBT 2021 held in conjunction with ESORICS 2021 - Virtual, Online
Duration: 8 Oct 20218 Oct 2021

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume13140 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference16th International Workshop on Data Privacy Management, DPM 2021, and 5th International Workshop on Cryptocurrencies and Blockchain Technology, CBT 2021 held in conjunction with ESORICS 2021
CityVirtual, Online
Period8/10/218/10/21

Keywords

  • DNS
  • Ethereum
  • MetaMask
  • PKI
  • TLS
  • TeSC
  • Wallet

Fingerprint

Dive into the research topics of 'Augmenting MetaMask to Support TLS-endorsed Smart Contracts'. Together they form a unique fingerprint.

Cite this