Cryptology ePrint Archive: Report 2017/974

Obscuro: A Bitcoin Mixer using Trusted Execution Environments

Muoi Tran and Loi Luu and Min Suk Kang and Iddo Bentov and Prateek Saxena

Abstract: Bitcoin provides only pseudo-anonymous transactions, which can be exploited to link payers and payees – defeating the goal of anonymous payments. To thwart such attacks, several Bitcoin mixers have been proposed, with the objective of providing unlinkability between payers and payees. However, existing Bitcoin mixers can be regarded as either insecure or inefficient. We present Obscuro, a highly efficient and secure Bitcoin mixer that utilizes trusted execution environments (TEEs). With the TEE’s confidentiality and integrity guarantees for code and data, our mixer design ensures the correct mixing operations and the protection of sensitive data (i.e., private keys and mixing logs), ruling out coin theft and address linking attacks by a malicious service provider. Yet, the TEE-based implementation does not prevent the manipulation of inputs (e.g., deposit submissions, blockchain feeds) to the mixer, hence Obscuro is designed to overcome such limitations: it (1) offers an indirect deposit mechanism to prevent a malicious service provider from rejecting benign user deposits; and (2) scrutinizes blockchain feeds to prevent deposits from being mixed more than once (thus degrading anonymity) while being eclipsed from the main blockchain branch. In addition, Obscuro provides several unique anonymity features (e.g., minimum mixing set size guarantee, resistant to dropping user deposits) that are not available in existing centralized and decentralized mixers. Our prototype of Obscuro is built using Intel SGX and we demonstrate its effectiveness in Bitcoin Testnet. Our implementation mixes 1000 inputs in just 6.49 seconds, which vastly outperforms all of the existing decentralized mixers.

Category / Keywords: Bitcoin, Anonymity, Mixer, Trusted Execution Environments, Intel SGX

Date: received 4 Oct 2017, last revised 24 Apr 2018

Contact author: muoitran at comp nus edu sg

Available format(s): PDF | BibTeX Citation

Note: Make a clarification in the discussion section.

Version: 20180424:145419 (All versions of this report)

Short URL: ia.cr/2017/974


[ Cryptology ePrint archive ]