Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Friday, 12 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Blockchain or Bulls**t

by The Gurus
February 12, 2016
in This Week's Gurus
Share on FacebookShare on Twitter

When the UK government published its report “Distributed Ledger Technology: beyond block chain” this attracted some sceptical comments on various internet forums.  Is Blockchain the answer to many problems or is it just another over-hyped technology looking for problems?
Well there are plenty of problems around trust in information that need to be solved and the report provides plenty of examples.  Some of these examples refer to existing solutions and these provide some confidence that there is value in the technology.  Others are more futuristic with a focus on ongoing research and development.
The wave of interest in this technology stems from a special case – that of bitcoins.  Bitcoins are almost synonymous with criminal activities and the dark web but the fact that they have apparently survived in this hostile environment is a tribute to robustness of Blockchain technology.  The ideas underpinning bitcoins technology are not new but what sets them apart is their combination.
The key ideas are basically – the use of Hash functions combined with Public and Private Keys to create a verifiable log of transactions combined with Proof of Work to establish trust.  Taken together these have been used to create a distributed ledger of bitcoin transactions that provides pseudo anonymity for the participants and which does not depend upon a trusted third party.  For bitcoin the trust is in the technology.
This trust is established by a competition – where many servers compete to solve a computationally difficult problem in order to win a prize.  The first server to solve this problem wins 25 bitcoins.  Once the problem has been solved it is very easy for the rest of the bitcoin community to check that there has been no cheating (for example trying to spend the same bitcoin more than once).
This competition creates an economic balance – it is more cost effective to work to win the prize than it is to cheat.  But this comes with a cost – solving these puzzles uses massive amounts of computer power (and hence energy).   It has been estimated that the total energy consumption is around 1 Gigawatt.  It is also very slow with a maximum transaction rate of around 7 per second (which is several orders of magnitude less than that regularly achieved by payment card processing for example).
It is also not completely bulletproof – in 2014 the Ghash mining pool managed to achieve what everybody had said was impossible – to gain more than 50% of the network hashing.  In the end Ghash and the bitcoin community came to an agreement.
As well as bitcoin elements of this technology have been successfully applied to solve other problems. One example being establishing trust in digital documents.
Digital document signing is not new; however significant work is involved where trust is established based on PKI certificates issued by Certificate Authorities.  The problem is obtaining and keeping the evidence needed to prove at any point in the future that a document is the one that was originally submitted.  This means keeping records of certificates, certificate revocations, timestamps and verification of CA policies and this process does not scale.
An alternative approach has been deployed in Estonia since 2007 and is used by individuals and organizations to file tax returns and other important documentation.  This exploits what is called a Keyless Signatures Infrastructure (KSI).
The originator of a document sends a Hash of the document to a Signing Service and in return receives a signature token.  This token is a proof that the data existed at the given time and that the request was received through a given access point.  The service then guarantees that this Time Stamped Digest will be retained, and can be verified on request by anyone at any time in the future.
The benefits of this to Estonian citizens include:

  • Each citizen has the ability to verify the integrity of their records at government databases at will, independently of the government or any other third party.
  • It is impossible for privileged insiders to perform illegal acts inside the government networks, and erase the log evidence pointing to their actions without it being immediately evident.
  • Since it is based solely on hash-function cryptography, it is not vulnerable to attacks utilizing quantum computing.

Going beyond Blockchain, as applied to Bitcoin, is Ethereum which is the brainchild of software developer Vitalik Buterin and is a hot project amongst the cryptocurrency community.  The proponents of Ethereum believe that this system can be used to develop what are described as “smart contracts”.  These are programs that define and implement set of transactions in a predefined agreed way.  Because it is programmable there is no inherent limitation on the complexity of the algorithm.  The agreement, once made, is then autonomously executed in way that is as trustworthy as the code.
Blockchain builds upon existing proven technology.  It can be deployed at some cost as a public distributed ledger where there are a small number of updates relative to the number of enquiries.  There is a lot of work to do to make the public distributed ledgers a practical and scalable proposition.   However, there are opportunities for permissioned community distributed ledgers where there is an existing element of trust among the community.
The difficulty with any new technology is to distinguish the hype from the real value generating applications.  KuppingerCole has created research into this subject:

  • Advisory Note: Demystifying the Blockchain – 71555 – KuppingerCole
  • Advisory Note: Blockchain Impact on the Financial Industry – 71601 – KuppingerCole

To find out more on this subject attend the Blockchain event in Paris on March 9th: How Blockchain Will Influence Your Business – KuppingerCole

ShareTweet
Previous Post

Fraudsters Tap Kohl’s Cash for Cold Cash

Next Post

CryptoWall 3.0 Bags Small Cybercrime Ring Over $300K

Recent News

Nagomi Control Brings CTEM Into Action

2 in 5 Organisations Experienced Cyber Incidents Tied to Suppliers in Past Year

June 12, 2026
Certes Research Warns Legacy Systems Are Biggest Barrier to Quantum Security Readiness

KnowBe4 Expands Gamified Training Library With Launch of “Spot the Vish” Game

June 12, 2026
Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

June 12, 2026
artificial-intelligence

The More Confident Organizations Are in Their AI Security, the More Likely They’ve Been Breached, New Research Finds

June 11, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol