Bitcoin
$42,527.60-3.60%
Ethereum
$2,945.98-5.83%
XRP
$0.932685-3.81%
Cardano
$2.16-3.74%
Polkadot
$28.01-5.97%
Stellar
$0.268067-4.00%
Dogecoin
$0.201225-2.89%
Chainlink
$23.38-6.03%
Uniswap
$22.76-9.60%
Polygon
$1.10-3.88%
Algorand
$1.69-6.37%
Cosmos
$36.97-6.57%
Litecoin
$147.11-3.75%
Bitcoin Cash
$492.42-3.63%
Wrapped Bitcoin
$42,505.81-3.61%
The Graph
$0.665191-3.64%
Filecoin
$58.35+0.41%
Tron
$0.086676-3.44%
Ethereum Classic
$45.98-3.76%
Tezos
$6.17-4.99%
Aave
$274.27-8.71%
Monero
$240.10-1.20%
NEO
$37.81-4.44%
EOS
$3.87-3.75%
IOTA
$1.14-5.44%
BitTorrent
$0.003125-3.51%
Bitcoin SV
$128.65-1.16%
Maker
$2,374.20-0.53%
Waves
$23.14-4.04%
Dash
$156.76-4.62%
Decentraland
$0.672868-4.85%
Decred
$108.63-5.32%
ICON
$1.50-7.85%
OmiseGO
$9.49+3.25%
NEM
$0.142373-5.06%
Zcash
$105.96-4.99%
Paxos Standard
$1.00-0.03%
Yearn Finance
$29,640.12-3.55%
NuCypher
$0.267211-5.77%
Ren
$1.02-8.87%
Qtum
$9.29-5.63%
Bitcoin Gold
$49.74-5.48%
Basic Attention Token
$0.611000-5.99%
0x
$0.854997-6.33%
Fetch.ai
$0.741475-9.37%
Kava.io
$5.50-5.19%
Bancor
$3.42-4.79%
Band Protocol
$7.14-6.40%
Siacoin
$0.014582-4.06%
Nano
$4.28-4.91%
Loopring
$0.369083-2.56%
Numeraire
$40.61-2.66%
Storj
$1.03-5.07%
Civic
$0.414415-4.74%
Lisk
$2.71-5.15%
PAX Gold
$1,757.07-0.44%
Orchid
$0.311279-3.68%
Enzyme
$139.55-5.93%
Augur
$20.50-2.86%
Aragon
$4.43-6.68%
district0x
$0.145645-6.38%
Kyber Network
$1.40-5.59%
SingularDTV
$0.001225+1.72%
Tether
$1.00-0.02%
USD Coin
$1.00+0.00%
Dai
$0.999909-0.04%
Breaking news: Ethereum Developer Virgil Griffith Pleads Guilty to Conspiracy Charge in North Korea Sanctions Case

Zcash Privacy Weakened by Certain Behaviors, Researchers Say

Patterns in usage have allowed four researchers to link many supposedly private zcash transactions to mining pools and founders. Zcash has responded.

May 9, 2018 at 9:00 p.m. UTC
Updated Sep 13, 2021 at 7:55 a.m. UTC

Researchers have identified patterns in certain kinds of zcash transactions that weaken their anonymity, according to a paper published Tuesday.

George Kappos, Haaroon Yousaf, Mary Maller and Sarah Meiklejohn found that when coins move from "unshielded" to "shielded" and back to "unshielded" addresses, they lose much of the anonymity that zcash users expect. The University College London team wrote that their "relatively simple heuristics … reduce the size of the overall anonymity set by 69.1 percent."

Zcash, one of the most prominent and well-regarded privacy coins, offers two kinds of addresses: "t-addresses" are transparent or unshielded, meaning that their balances and transactions are publicly visible on the blockchain; "z-addresses" are shielded, meaning that their balances and transactions are invisible.

Transactions from one unshielded address to another are completely public, if pseudonymous, as in bitcoin. Transactions from one shielded address to another are almost completely invisible, showing only the timestamps and fees associated with mining.

Transactions between different types of addresses introduce complications, however, making it possible to glean some information about the z-addresses involved, according to the paper.

Part of the reason is behavioral, the authors explain. "Our heuristics would have been significantly less effective if the founders interacting with the pool behaved in a less regular fashion," they write. "In particular, by always withdrawing the same amount in the same time intervals, it became possible to distinguish founders withdrawing funds from other users."

The reason for these transactions – and similar ones performed by miners – is that zcash coins are required to pass through the "shielded pool" of z-addresses before they can be used for another transaction.

The researchers wrote that they alerted the founders to this problem before publishing their research, which they add has already led to a change in behavior.

In a response, Zcash founder Zooko Wilcox and marketing director Josh Swihart congratulated the research team, saying they "invite other scientists to join with us in investigating these questions that are important to the future of human society."

Regarding the actual privacy concern, the post said:

"It is valuable to understand how much privacy is lost when using shielded addresses as a pass-through mechanism, but using it in that way is not recommended. Instead, store your Zcash in a shielded address."

Further, Wilcox and Swihart said that planned upgrades to the zcash protocol - specifically the Sapling hard fork - would lessen the risks to anonymity identified in the paper.

Currently, only a minority of transactions are shielded, and far fewer are fully shielded, with z-addresses on both sides. According to the Zchain block explorer, 85 percent of transactions over the past month are fully public, and just 0.6 percent are fully shielded.

Fence image via Shutterstock

DISCLOSURE

The leader in news and information on cryptocurrency, digital assets and the future of money, CoinDesk is a media outlet that strives for the highest journalistic standards and abides by a strict set of editorial policies. CoinDesk is an independent operating subsidiary of Digital Currency Group, which invests in cryptocurrencies and blockchain startups.

Loading...