Paper 2026/773

Practical Attacks on Session Messenger and Oxen Blockchain

Tingfeng Yu, Australian National University
Thomas Haines, Australian National University
Abstract

Session is a decentralised secure (anonymous) messenger that combines onion routing with the Oxen Proof-of-Stake blockchain to provide metadata-private communication. Our study presents the first comprehensive analysis of Session's messaging protocol and its integration with the Oxen blockchain. In analysing Session and the underlying Oxen blockchain, we uncovered seven vulnerabilities. Most notably we discovered flaws in the Oxen consensus protocol which could allow network takeover in a realistic setting, thereby undermining the integrity guarantees on which Session's anonymity layer depends. We also discovered serious vulnerabilities in Version 1 of Session's group chat protocol. We conducted extensive simulations to analyse the impact of these vulnerabilities and provide recommendations to reinforce both the Oxen protocol and the Session client to mitigate these attacks.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Published elsewhere. EuroS&P
Keywords
SessionOxenProof-of-StakeBlockchainAnonymityOnion RoutingSecure Messengers
Contact author(s)
Tingfeng Yu @ anu edu au
thomas haines @ anu edu au
History
2026-04-22: approved
2026-04-20: received
See all versions
Short URL
https://ia.cr/2026/773
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/773,
      author = {Tingfeng Yu and Thomas Haines},
      title = {Practical Attacks on Session Messenger and Oxen Blockchain},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/773},
      year = {2026},
      url = {https://eprint.iacr.org/2026/773}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.