arrow
Return

A robust eclipse attack detection framework for Ethereum networks

delete2025-12-19
delete0
delete
OA
AI
Z
Zubaida Rehman *
I
Iqbal Gondal
H
Hai Dong
M
Mengmeng Ge
M
Mark Gregory
I
Ikram ul Haq
DOI:10.1016/j.jnca.2025.104416delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Eclipse attacks, which isolate victim nodes by monopolizing their peer connections, remain a critical threat to Ethereum’s consensus mechanism. To address this, we present a principled framework for detecting Eclipse attacks in Ethereum peer-to-peer networks, grounded in a formal adversarial model. Existing defenses are either ad-hoc or lack provable guarantees, leaving open questions about their reliability under adaptive adversaries. Our work aims to bridge this gap by formally defining eclipse attack detection as a security property. We specify soundness, completeness, and robustness theorems under bounded adversarial drift, and derive formal guarantees within false positive and false negative bounds, resilience to adversarial manipulation, and multi-node compositional reliability. We then instantiate a lightweight detection framework that maps packet-level traffic features to predictions using ensemble classifiers (Random Forest, XGBoost). The system was validated using a controlled Ethereum testbed and extended with CTGAN-generated synthetic traces to emulate networks of up to 100 nodes. Empirical evaluation shows that our framework achieves up to 96% F1-score with sub-second inference latency, well within Ethereum’s 12-second Proof-of-Stake validator time slots. These findings demonstrate that lightweight statistical features, when coupled with formal analysis, enable accurate, efficient, and scalable detection of network-level partitioning attacks. Our work establishes a deployable and theoretically grounded defense foundation for securing modern blockchain systems against eclipse adversaries.
Keywords:
Ethereum
Eclipse attack
Blockchain security
Peer-to-peer networks
Machine learning
Anomaly detection
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

Journal of Network and Computer Applications cover
Journal of Network and Computer Applications
IF:
8
Papers:
3.6K
Citations:
1.1W

Organization

M
Monash University
Scholars:
5.4W
Papers: 5.4W
Citations: 79
R
RMIT University
Scholars:
2.8K
Papers: 1.6K
Citations: 2.6W