• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Web3 Attack Matrix: An Adversary Behavior Framework
 
  • Details
  • Full
Options
2025
Conference Paper
Title

Web3 Attack Matrix: An Adversary Behavior Framework

Abstract
Users face increased risks in Web3's public and decentralized systems as adversaries can directly steal digital assets and tokens. Additionally, Web3 systems' transparent transaction information and smart contract source codes offer adversaries ideal conditions for planning and executing attacks. As of 2024, over US$ 30 billion has been lost across more than 1,000 documented hacks and scams in Web3, demonstrating the urgent need for understanding adversary behaviors. We address this need by developing the Web3 Attack Matrix, a comprehensive knowledge base that systematically categorizes attack vectors and adversary tactics specific to Web3, based on the MITRE ATT&CK cyber security framework. The Web3 Attack Matrix’s empirical evaluation by Web3 security experts enables the development of professional standards, processes, and countermeasures, bridging the gap between Web3 academic researchers, practitioners, and users. The Web3 Attack Matrix is extendable to accommodate future Web3 security developments and potential new threats.
Author(s)
Hanneke, Björn
Goethe-Universität Frankfurt am Main
Horch, Andrea
Fraunhofer-Institut für Arbeitswirtschaft und Organisation IAO  
Savaliya, Sirish Kalubhai
Univ. Stuttgart, Institut für Arbeitswissenschaft und Technologiemanagement -IAT-  
Ruff, Christopher  
Fraunhofer-Institut für Arbeitswirtschaft und Organisation IAO  
Schunck, Christian Heinrich
Fraunhofer-Institut für Arbeitswirtschaft und Organisation IAO  
Mainwork
European Conference on Information Systems, ECIS 2025. Proceedings  
Conference
European Conference on Information Systems 2025  
Link
Link
Language
English
Fraunhofer-Institut für Arbeitswirtschaft und Organisation IAO  
Keyword(s)
  • Web3 Security

  • Attack Matrix

  • Threat Assessments

  • MITRE ATT&CK

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024