SlideShare ist ein Scribd-Unternehmen logo
1 von 24
Downloaden Sie, um offline zu lesen
Blockchain Workspace www.blockchainworkspace.com !1
Veiligheid in blockchain gebruik
@henkvancann
@henkvancann and @bcworkspace
IIA	congres	8	juni	2018
Korte	omschrijving	van	de	presentatie	(3-5	bullets)	
•Blockchain	fundamentals	voor	Auditors	->	dit	leidt	tot	onwijzigbaarheid	
•Waarom	vertrouwen	verplaatsen?	->	geeft	daar	als	auditor	zelf	maar	antwoord	op	(iets	met	mensen?)	
•Hoe	zelf	zin	en	onzin	van	de	technologie	scheiden	->	hier	en	nu	het	begin,	eindeloos	leerproces	ter	grootte	van	het	leren	over	en	
werken	met	Internet.	
NOOIT	MEER	VERGETEN:	Fundamentele	kennis	is	jouw	pad	naar	professionalisering	
Begin	met	leren:	http://wiki.2value.nl/BCWS/meetup/study_more
Twitter: @henkvancann www.blockchainworkspace.com
@henkvancann
Waarom
CRYPTOGRAFIE
The Crypto Anarchist Manifesto
Timothy C. May <tcmay@netcom.com>
“A specter is haunting the modern world, the specter of crypto anarchy.”
What is de echte behoefte aan deze kennis. Welke reële functie vervult het in ons dagelijks leven?
Blockchain Workspace www.blockchainworkspace.com !3
Vandaag	niet…
• HOE	de	techniek	van	publieke	blockchains	in	detail	werkt	
• WAAROM	blockchains	het	werkende	leven	fundamenteel	gaan	
beïnvloeden	
• Op	WELKE	manier	zijn	blockchains	verstorend
Verlies	ik	mijn	baan,	mijn	vrijheid,	centrale	positie,	mogelijkheid	om	te	rommelen	met	data?	Nee,	nee,	ja,	ja.
Blockchain Workspace www.blockchainworkspace.com !4
.
Tip: Begrijp de werking van de technologie die u gebruikt
Fundamental	knowledge	is	your	way	to	freedom	:)
Blockchain Workspace www.blockchainworkspace.com !5
Tip: Begrijp de werking van de technologie die u gebruikt
…zodat	je	veilig	kennis	kunt	maken	en	kennis	opdoen
Blockchain Workspace www.blockchainworkspace.com !6
Stel jezelf de vraag:

Zijn de digitale sleutels
goed opgeslagen?
@henkvancann and @bcworkspace
Blockchain Workspace www.blockchainworkspace.com !7
Blockchain - bewijzen zonder
vertrouwen
Voorbeeld	SHA-256	HASH:	
ca978112ca1bbdcafac231b39a23dc4da786eff8147c4e72b9807785afee48bb
Beroemde	HASH:	
000000000019d6689c085ae165831e934ff763ae46a2a6c172b3f1b60a8ce26f
+ =
Herhaal	de	essentie	van	publieke	blockchains	(DATA	+	FUNC):	
DATA	
Hashing	{sleutel/vingerafdruk}	
Tijdstempels	and	consensus	{stempelen}	
Verificatie	{check}	
000000000019d6689c085ae165831e934ff763ae46a2a6c172b3f1b60a8ce26f	Genesis	block	#0	(Jan	3,	2009,	10	leading	zeros)	
Expert	vraag:	Wat	is	het	toevallige	gedeelte	van	de	blockchain	ontdekking?	->	Antwoord:	Het	(later	gewijzigd	‘op_return’)	data	field	of	a	
transaction.	
FUNC	:	smart	contracts	->	lex	cryptographia	
“Lex	Cryptographia	is	a	plan	for	addressing	trust	and	recourse	problems	in	online	commerce	in	a	way	that	does	not	depend	on	
unreliable,	inaccessible,	non-existent,	or	contradictory	government	law	systems.	By	combining	the	concepts	of	insurance,	surety,	smart	
contracts,	and	third	party	arbitration	where	necessary,	it	is	possible	to	greatly	reduce	the	risk	of	non-performance.”
Blockchain Workspace www.blockchainworkspace.com
Wat staat er OP de blockchain?!
POINTERSINHOUD SCRIPTS	/	PROGRAMMA	CODE
NEE JA JA
Picture	of	CODE:	https://www.coindesk.com/information/ethereum-smart-contracts-work/	
CODE	spread	out	over	many	computers,	transparent,	open	source,	immutable,	etc.	
SCRIPTS	as	(optional)	parts	of	the	protocol
Blockchain Workspace www.blockchainworkspace.com
Ketting van hashes: evident dat ermee is geknoeid!
Hashpointer -> hash die wijst naar data en het tegelijkertijd valideert!
Log N validatie tijden
Elke 10 minuten een block met transacties.
Geen circulaire ketens toegestaan of mogelijk -> blockchain, chain of blocks
Blockchain Workspace www.blockchainworkspace.com !10
Inbreuk op veilig gevoel of Fraude
MENSEN	zijn	de	bepalende	factor
Blockchain Workspace www.blockchainworkspace.com !11
"If	you	control	your	keys,	it's	
your	bitcoin.	If	you	don't	control	
the	keys,	it's	NOT	your	bitcoin."
Andreas	Antonopoulos,	2015
Blockchain Workspace www.blockchainworkspace.com !12
"Why	you	have	to	carefully	
manage	your	keys.	And	why	you	
won’t"
Henk	van	Cann	2018	:)
Een	leerproces,	is	niet	iets	wat	je	even	een	keer	’s	avonds	doet.
Blockchain Workspace www.blockchainworkspace.com !13
Hoe	zien	cryptografische	sleutels	er	nu	uit?
• Sterke	wachtwoorden	
• Seeds	12	woorden,	24	woorden,	25	woorden	
• Hexadecimale	strings	
• QR	codes
2kWqP2AKQqVaiv]Pykk;
(we	focus	on	control	and	private	keys)	
Strong	passwords	first	:	generated	from	and	stored	in	a	Password	Manager.
Blockchain Workspace www.blockchainworkspace.com !14
Een bitcoin, dat ben ik!
Kennis	is	controle,	controle	geeft	een	veiliger	gevoel
Blockchain Workspace www.blockchainworkspace.com !15
Doen:

Noteer je gevoel van veiligheid
Noteer je gevoel van Onveiligheid
KENNIS opdoen. Google is your friend! + 18 oktober a.s.!
@henkvancann and @bcworkspace
Mensen	zijn	het	probleem	(jijzelf	onbewust/per	ongeluk	en	anderen	per	ongeluk	en	bewust),	niet	de	techniek.	Blockchain	zijn	dus	veilig	
in	de	techniek,	onveilig	in	het	gebruik.
Blockchain Workspace www.blockchainworkspace.com !16
Welke aspecten bij gevoel van “veiligheid”
•Complexiteit,	moeilijk	binnen	te	
komen	
•Geld,	het	kost	meer	dan	het	oplevert	
•Tijd,	je	bent	te	lang	bezig	
•Zichtbaarheid,	de	actie	loopt	in	het	
oog	
•Volwassenheid,	hoe	“oud”	is	de	
technologie
Waarom	is	dit	wezenlijk?	->	
Het	gaat	altijd	over	‘mij’	omdat:	
Technisch	netwerk	is	heel	solide,	fouten	en	fraude/stelen	door	mensen	+	Onbewust	fouten	door	jezelf.	->	Kennis	opdoen:	hoe	kun	je	op	
alle	fronten	voorsprong	krijgen?
Blockchain Workspace www.blockchainworkspace.com !17
“Quantum Computers: Informatie die vandaag niet gevaarlijk is, kan in de nabije toekomst wel zijn.” 

Tanja Lange - @hyperelliptic
Photo: Henk van Cann, SURFnet security & privacy 2018
Bron	citaat:	FD	artikel	
Speech	op	SURFnet	-	slides,	CC	by	
SA	Tanja	Lange.
Blockchain Workspace www.blockchainworkspace.com !18
1.shared db,
2.multiple writers,
3.mistrust,
4.disintermediation,
5.interdependent transactions,
6.set rules,
7.validators,
8.asset backing
Eight conditions to avoid pointless blockchain applications -
Nov 2015 article :
1st out of 8 conditions to avoid pointless blockchain projects: Blockchains are a technology for shared databases, do you need one?!
2nd out of 8 conditions to avoid pointless blockchain projects: there needs to be more than one entity which is generating the transactions that modify the database. Do you know who these writers are?
3rd out of 8 conditions to avoid pointless blockchain projects: there also needs to be some degree of mistrust between those entities; it can also exist within a single large organization, for example between departments or the operations in different countries.
4th out of 8 conditions to avoid pointless blockchain projects: disintermediation, is there any good reason to take away (the service of) a middleman?!
5th out of 8 conditions to avoid pointless blockchain projects: Blockchains truly shine where there is some interaction between the transactions created by these writers. Interdependencies wanted!
6th out of 8 conditions to avoid pointless blockchain projects: This isn’t really a condition, but rather an inevitable consequence of the first 5 points: the database must contain embedded rules restricting the transactions performed.
7th out of 8 conditions to avoid pointless blockchain projects: a blockchain’s job is to be the authoritative final transaction log, on whose contents all validators provably agree, do you know them and trust them?
8th out of 8 conditions to avoid pointless blockchain projects: Is there anyone standing behind the assets represented on the blockchain? If the database says that I own 10 units of something, who will allow me to claim those 10 units in the real world?
Blockchain Workspace www.blockchainworkspace.com !19
Pamela	Morgan	quotes
• ‘my	failure	to	implement	good	security	wasn’t	totally	my	fault;	it	was	a	
combination	of	misunderstanding	the	risks,	overestimating	the	effort	it	takes	
to	implement’	
• ‘I	had	heard	about	people	getting	hacked.	But	it	was	always	other	people’	
• ‘the	risk	wasn’t	real	enough	for	me	to	do	anything	about	it’	
• ‘the	real	danger	is	that	when	your	credentials	are	stolen	your	life	can	be	
disrupted	in	a	major	way’	
• ‘Maybe	you’re	like	I	used	to	be:	simply	unsure	of	what	to	do — so	you	do	
nothing’	
• LINK	TO	ARTICLE
Blockchain Workspace www.blockchainworkspace.com !20
Pamela	Morgan	quotes
• ‘Basic	good	security	practices	are	now	part	of	my	routine	without	even	
noticing.	Like	putting	on	a	seatbelt	after	getting	into	a	vehicle,	it’s	just	
something	I	do.’	
• LINK	TO	ARTICLE
Blockchain Workspace www.blockchainworkspace.com !21
Famous bugs in contracts for Ethereum
From:	https://applicature.com/blog/history-of-ethereum-security-vulnerabilities-hacks-and-their-fixes#comment-719
•DAO,	June	17	2016	
•KING	OF	THE	ETHER	THRONE,	RUBIXI,	GOVERNMENTAL	SMART	
CONTRACTS	
•HACKERGOLD	BUG,	Jan	4	2017	
•BITHUMB,	June	29	2017	
•CLASSIC	ETHER	WALLET,	June	30	2017	
•AUGUR	REP	TOKEN,	July	13	2017	-	whole	REP	economy	at	risk	
•COINDASH,	July	17	2017	-	34,5K	ETH	stolen	
•PARITY,	July	19	2017	-	over	150,000	ETH	stolen	
•SATHOSHI	PIE	-	July	23	2017,	$	7M	stolen	
•VERITASEUM	-	July	23	2017	$8.5M	stolen
https://applicature.com/blog/history-of-ethereum-security-vulnerabilities-hacks-and-their-fixes#comment-719
Blockchain Workspace www.blockchainworkspace.com
Dank je wel!
@henkvancann
@henkvancann
Blockchain Workspace www.blockchainworkspace.com !23
License
This	work	is	licensed	under	a	Creative	Commons	Attribution-Share	Alike	4.0	license
https://creativecommons.org/licenses/by-sa/4.0/
Blockchain Workspace www.blockchainworkspace.com !24
Fundamentele kennis is jouw
pad naar professionalisering
@henkvancann and @bcworkspace

Weitere ähnliche Inhalte

Ähnlich wie Iia congres juni 8 2018 v1.1

Iceic2019 final presented
Iceic2019 final presentedIceic2019 final presented
Iceic2019 final presented
Heung-No Lee
 
Blockchain Fundamentals - Top Rated for Beginners
Blockchain Fundamentals - Top Rated for Beginners Blockchain Fundamentals - Top Rated for Beginners
Blockchain Fundamentals - Top Rated for Beginners
101 Blockchains
 

Ähnlich wie Iia congres juni 8 2018 v1.1 (20)

Blockchain for Impact Amy Neumann October 2019
Blockchain for Impact Amy Neumann October 2019Blockchain for Impact Amy Neumann October 2019
Blockchain for Impact Amy Neumann October 2019
 
How Blockchain Is Impacting Business Right Now - Amy Neumann Power Hour CLE A...
How Blockchain Is Impacting Business Right Now - Amy Neumann Power Hour CLE A...How Blockchain Is Impacting Business Right Now - Amy Neumann Power Hour CLE A...
How Blockchain Is Impacting Business Right Now - Amy Neumann Power Hour CLE A...
 
Blockchain and Artificial Intelligence for Nonprofits and Impact Amy Neumann ...
Blockchain and Artificial Intelligence for Nonprofits and Impact Amy Neumann ...Blockchain and Artificial Intelligence for Nonprofits and Impact Amy Neumann ...
Blockchain and Artificial Intelligence for Nonprofits and Impact Amy Neumann ...
 
The Idea Behind Blockchain Technology
The Idea Behind Blockchain TechnologyThe Idea Behind Blockchain Technology
The Idea Behind Blockchain Technology
 
Consequences of Misusing Blockchain Technology.
Consequences of Misusing Blockchain Technology.Consequences of Misusing Blockchain Technology.
Consequences of Misusing Blockchain Technology.
 
Blockchain startup
Blockchain startupBlockchain startup
Blockchain startup
 
Is blockchain in a war with other technologies
Is blockchain in a war with other technologies Is blockchain in a war with other technologies
Is blockchain in a war with other technologies
 
Iceic2019 final presented
Iceic2019 final presentedIceic2019 final presented
Iceic2019 final presented
 
Ovum blockchain for beginners
Ovum blockchain for beginnersOvum blockchain for beginners
Ovum blockchain for beginners
 
Blockchain Disadvantages
Blockchain DisadvantagesBlockchain Disadvantages
Blockchain Disadvantages
 
Mastering blockchain advantages and learning path (1)
Mastering blockchain   advantages and learning path (1)Mastering blockchain   advantages and learning path (1)
Mastering blockchain advantages and learning path (1)
 
Melanie Rieback, Klaus Kursawe - Blockchain Security: Melting the "Silver Bul...
Melanie Rieback, Klaus Kursawe - Blockchain Security: Melting the "Silver Bul...Melanie Rieback, Klaus Kursawe - Blockchain Security: Melting the "Silver Bul...
Melanie Rieback, Klaus Kursawe - Blockchain Security: Melting the "Silver Bul...
 
How to build a trusted blockchain system
How to build a trusted blockchain systemHow to build a trusted blockchain system
How to build a trusted blockchain system
 
Top 10 reasons to get a blockchain expert certification
Top 10 reasons to get a blockchain expert certificationTop 10 reasons to get a blockchain expert certification
Top 10 reasons to get a blockchain expert certification
 
Blockchain
BlockchainBlockchain
Blockchain
 
Blockchain and the digital future. Promises of new technology against reality
Blockchain and the digital future. Promises of new technology against realityBlockchain and the digital future. Promises of new technology against reality
Blockchain and the digital future. Promises of new technology against reality
 
5 major advantages of blockchain technology for engineering students
5 major advantages of blockchain technology for engineering students 5 major advantages of blockchain technology for engineering students
5 major advantages of blockchain technology for engineering students
 
Blockchain Fundamentals - Top Rated for Beginners
Blockchain Fundamentals - Top Rated for Beginners Blockchain Fundamentals - Top Rated for Beginners
Blockchain Fundamentals - Top Rated for Beginners
 
Blockchain technology
Blockchain technologyBlockchain technology
Blockchain technology
 
Cybersecurity Challenges in Blockchain Technology By Azgari Lipshy
Cybersecurity Challenges in Blockchain Technology By Azgari LipshyCybersecurity Challenges in Blockchain Technology By Azgari Lipshy
Cybersecurity Challenges in Blockchain Technology By Azgari Lipshy
 

Mehr von Henk van Cann

Blockchain workspace meetup report oct 19 2017 blockchain and legal.pages
Blockchain workspace meetup report oct 19 2017 blockchain and legal.pagesBlockchain workspace meetup report oct 19 2017 blockchain and legal.pages
Blockchain workspace meetup report oct 19 2017 blockchain and legal.pages
Henk van Cann
 

Mehr von Henk van Cann (16)

Questions bwisselink.pptx
Questions bwisselink.pptxQuestions bwisselink.pptx
Questions bwisselink.pptx
 
Public blockchains bwisselink.pptx
Public blockchains bwisselink.pptxPublic blockchains bwisselink.pptx
Public blockchains bwisselink.pptx
 
Bitcoin update java_the_hague_apr 2018
Bitcoin update java_the_hague_apr 2018Bitcoin update java_the_hague_apr 2018
Bitcoin update java_the_hague_apr 2018
 
Blockchain use cases
Blockchain use casesBlockchain use cases
Blockchain use cases
 
Public blockchains and municipalities en v1.0_hc
Public blockchains and municipalities en v1.0_hcPublic blockchains and municipalities en v1.0_hc
Public blockchains and municipalities en v1.0_hc
 
Blockchain fundamentals based on bas w_v1.1.pptx
Blockchain fundamentals based on bas w_v1.1.pptxBlockchain fundamentals based on bas w_v1.1.pptx
Blockchain fundamentals based on bas w_v1.1.pptx
 
Law and blockchain 20180320 v1.0
Law and blockchain 20180320 v1.0Law and blockchain 20180320 v1.0
Law and blockchain 20180320 v1.0
 
Key history of money v1.1
Key history of money v1.1Key history of money v1.1
Key history of money v1.1
 
Blockchain workspace meetup report oct 19 2017 blockchain and legal.pages
Blockchain workspace meetup report oct 19 2017 blockchain and legal.pagesBlockchain workspace meetup report oct 19 2017 blockchain and legal.pages
Blockchain workspace meetup report oct 19 2017 blockchain and legal.pages
 
Meetup blockchain-and-legal-oct-19-2017-blockchain-lab-amsterdam
Meetup blockchain-and-legal-oct-19-2017-blockchain-lab-amsterdamMeetup blockchain-and-legal-oct-19-2017-blockchain-lab-amsterdam
Meetup blockchain-and-legal-oct-19-2017-blockchain-lab-amsterdam
 
Workshop blockchain and fraude during Fraudefilm festival 2017
Workshop blockchain and fraude during Fraudefilm festival 2017Workshop blockchain and fraude during Fraudefilm festival 2017
Workshop blockchain and fraude during Fraudefilm festival 2017
 
Meetup symbotic sept21_en_v1.0_hc
Meetup symbotic sept21_en_v1.0_hcMeetup symbotic sept21_en_v1.0_hc
Meetup symbotic sept21_en_v1.0_hc
 
Yubico crypto meetup
Yubico crypto meetupYubico crypto meetup
Yubico crypto meetup
 
Key management howto_v0.9
Key  management howto_v0.9Key  management howto_v0.9
Key management howto_v0.9
 
Umbraco apr11 en_v1.0_hc
Umbraco apr11 en_v1.0_hcUmbraco apr11 en_v1.0_hc
Umbraco apr11 en_v1.0_hc
 
Voorbij de bitcoin dev 070-waarom_nu_verdiepen_in_blockchain
Voorbij de bitcoin dev 070-waarom_nu_verdiepen_in_blockchainVoorbij de bitcoin dev 070-waarom_nu_verdiepen_in_blockchain
Voorbij de bitcoin dev 070-waarom_nu_verdiepen_in_blockchain
 

Kürzlich hochgeladen

哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
ydyuyu
 
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
pxcywzqs
 
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
ayvbos
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理
F
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理
F
 
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
ydyuyu
 
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girlsRussian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
Monica Sydney
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Monica Sydney
 
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 

Kürzlich hochgeladen (20)

哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
 
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
 
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
 
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
 
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理
 
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理
 
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
原版制作美国爱荷华大学毕业证(iowa毕业证书)学位证网上存档可查
 
Mira Road Housewife Call Girls 07506202331, Nalasopara Call Girls
Mira Road Housewife Call Girls 07506202331, Nalasopara Call GirlsMira Road Housewife Call Girls 07506202331, Nalasopara Call Girls
Mira Road Housewife Call Girls 07506202331, Nalasopara Call Girls
 
Trump Diapers Over Dems t shirts Sweatshirt
Trump Diapers Over Dems t shirts SweatshirtTrump Diapers Over Dems t shirts Sweatshirt
Trump Diapers Over Dems t shirts Sweatshirt
 
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girlsRussian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
Russian Call girls in Abu Dhabi 0508644382 Abu Dhabi Call girls
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
 
Real Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirtReal Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirt
 
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
 
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
 
"Boost Your Digital Presence: Partner with a Leading SEO Agency"
"Boost Your Digital Presence: Partner with a Leading SEO Agency""Boost Your Digital Presence: Partner with a Leading SEO Agency"
"Boost Your Digital Presence: Partner with a Leading SEO Agency"
 
Call girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girlsCall girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girls
 
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac RoomVip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
 

Iia congres juni 8 2018 v1.1

  • 1. Blockchain Workspace www.blockchainworkspace.com !1 Veiligheid in blockchain gebruik @henkvancann @henkvancann and @bcworkspace IIA congres 8 juni 2018 Korte omschrijving van de presentatie (3-5 bullets) •Blockchain fundamentals voor Auditors -> dit leidt tot onwijzigbaarheid •Waarom vertrouwen verplaatsen? -> geeft daar als auditor zelf maar antwoord op (iets met mensen?) •Hoe zelf zin en onzin van de technologie scheiden -> hier en nu het begin, eindeloos leerproces ter grootte van het leren over en werken met Internet. NOOIT MEER VERGETEN: Fundamentele kennis is jouw pad naar professionalisering Begin met leren: http://wiki.2value.nl/BCWS/meetup/study_more
  • 2. Twitter: @henkvancann www.blockchainworkspace.com @henkvancann Waarom CRYPTOGRAFIE The Crypto Anarchist Manifesto Timothy C. May <tcmay@netcom.com> “A specter is haunting the modern world, the specter of crypto anarchy.” What is de echte behoefte aan deze kennis. Welke reële functie vervult het in ons dagelijks leven?
  • 3. Blockchain Workspace www.blockchainworkspace.com !3 Vandaag niet… • HOE de techniek van publieke blockchains in detail werkt • WAAROM blockchains het werkende leven fundamenteel gaan beïnvloeden • Op WELKE manier zijn blockchains verstorend Verlies ik mijn baan, mijn vrijheid, centrale positie, mogelijkheid om te rommelen met data? Nee, nee, ja, ja.
  • 4. Blockchain Workspace www.blockchainworkspace.com !4 . Tip: Begrijp de werking van de technologie die u gebruikt Fundamental knowledge is your way to freedom :)
  • 5. Blockchain Workspace www.blockchainworkspace.com !5 Tip: Begrijp de werking van de technologie die u gebruikt …zodat je veilig kennis kunt maken en kennis opdoen
  • 6. Blockchain Workspace www.blockchainworkspace.com !6 Stel jezelf de vraag:
 Zijn de digitale sleutels goed opgeslagen? @henkvancann and @bcworkspace
  • 7. Blockchain Workspace www.blockchainworkspace.com !7 Blockchain - bewijzen zonder vertrouwen Voorbeeld SHA-256 HASH: ca978112ca1bbdcafac231b39a23dc4da786eff8147c4e72b9807785afee48bb Beroemde HASH: 000000000019d6689c085ae165831e934ff763ae46a2a6c172b3f1b60a8ce26f + = Herhaal de essentie van publieke blockchains (DATA + FUNC): DATA Hashing {sleutel/vingerafdruk} Tijdstempels and consensus {stempelen} Verificatie {check} 000000000019d6689c085ae165831e934ff763ae46a2a6c172b3f1b60a8ce26f Genesis block #0 (Jan 3, 2009, 10 leading zeros) Expert vraag: Wat is het toevallige gedeelte van de blockchain ontdekking? -> Antwoord: Het (later gewijzigd ‘op_return’) data field of a transaction. FUNC : smart contracts -> lex cryptographia “Lex Cryptographia is a plan for addressing trust and recourse problems in online commerce in a way that does not depend on unreliable, inaccessible, non-existent, or contradictory government law systems. By combining the concepts of insurance, surety, smart contracts, and third party arbitration where necessary, it is possible to greatly reduce the risk of non-performance.”
  • 8. Blockchain Workspace www.blockchainworkspace.com Wat staat er OP de blockchain?! POINTERSINHOUD SCRIPTS / PROGRAMMA CODE NEE JA JA Picture of CODE: https://www.coindesk.com/information/ethereum-smart-contracts-work/ CODE spread out over many computers, transparent, open source, immutable, etc. SCRIPTS as (optional) parts of the protocol
  • 9. Blockchain Workspace www.blockchainworkspace.com Ketting van hashes: evident dat ermee is geknoeid! Hashpointer -> hash die wijst naar data en het tegelijkertijd valideert! Log N validatie tijden Elke 10 minuten een block met transacties. Geen circulaire ketens toegestaan of mogelijk -> blockchain, chain of blocks
  • 10. Blockchain Workspace www.blockchainworkspace.com !10 Inbreuk op veilig gevoel of Fraude MENSEN zijn de bepalende factor
  • 11. Blockchain Workspace www.blockchainworkspace.com !11 "If you control your keys, it's your bitcoin. If you don't control the keys, it's NOT your bitcoin." Andreas Antonopoulos, 2015
  • 12. Blockchain Workspace www.blockchainworkspace.com !12 "Why you have to carefully manage your keys. And why you won’t" Henk van Cann 2018 :) Een leerproces, is niet iets wat je even een keer ’s avonds doet.
  • 13. Blockchain Workspace www.blockchainworkspace.com !13 Hoe zien cryptografische sleutels er nu uit? • Sterke wachtwoorden • Seeds 12 woorden, 24 woorden, 25 woorden • Hexadecimale strings • QR codes 2kWqP2AKQqVaiv]Pykk; (we focus on control and private keys) Strong passwords first : generated from and stored in a Password Manager.
  • 14. Blockchain Workspace www.blockchainworkspace.com !14 Een bitcoin, dat ben ik! Kennis is controle, controle geeft een veiliger gevoel
  • 15. Blockchain Workspace www.blockchainworkspace.com !15 Doen:
 Noteer je gevoel van veiligheid Noteer je gevoel van Onveiligheid KENNIS opdoen. Google is your friend! + 18 oktober a.s.! @henkvancann and @bcworkspace Mensen zijn het probleem (jijzelf onbewust/per ongeluk en anderen per ongeluk en bewust), niet de techniek. Blockchain zijn dus veilig in de techniek, onveilig in het gebruik.
  • 16. Blockchain Workspace www.blockchainworkspace.com !16 Welke aspecten bij gevoel van “veiligheid” •Complexiteit, moeilijk binnen te komen •Geld, het kost meer dan het oplevert •Tijd, je bent te lang bezig •Zichtbaarheid, de actie loopt in het oog •Volwassenheid, hoe “oud” is de technologie Waarom is dit wezenlijk? -> Het gaat altijd over ‘mij’ omdat: Technisch netwerk is heel solide, fouten en fraude/stelen door mensen + Onbewust fouten door jezelf. -> Kennis opdoen: hoe kun je op alle fronten voorsprong krijgen?
  • 17. Blockchain Workspace www.blockchainworkspace.com !17 “Quantum Computers: Informatie die vandaag niet gevaarlijk is, kan in de nabije toekomst wel zijn.” 
 Tanja Lange - @hyperelliptic Photo: Henk van Cann, SURFnet security & privacy 2018 Bron citaat: FD artikel Speech op SURFnet - slides, CC by SA Tanja Lange.
  • 18. Blockchain Workspace www.blockchainworkspace.com !18 1.shared db, 2.multiple writers, 3.mistrust, 4.disintermediation, 5.interdependent transactions, 6.set rules, 7.validators, 8.asset backing Eight conditions to avoid pointless blockchain applications - Nov 2015 article : 1st out of 8 conditions to avoid pointless blockchain projects: Blockchains are a technology for shared databases, do you need one?! 2nd out of 8 conditions to avoid pointless blockchain projects: there needs to be more than one entity which is generating the transactions that modify the database. Do you know who these writers are? 3rd out of 8 conditions to avoid pointless blockchain projects: there also needs to be some degree of mistrust between those entities; it can also exist within a single large organization, for example between departments or the operations in different countries. 4th out of 8 conditions to avoid pointless blockchain projects: disintermediation, is there any good reason to take away (the service of) a middleman?! 5th out of 8 conditions to avoid pointless blockchain projects: Blockchains truly shine where there is some interaction between the transactions created by these writers. Interdependencies wanted! 6th out of 8 conditions to avoid pointless blockchain projects: This isn’t really a condition, but rather an inevitable consequence of the first 5 points: the database must contain embedded rules restricting the transactions performed. 7th out of 8 conditions to avoid pointless blockchain projects: a blockchain’s job is to be the authoritative final transaction log, on whose contents all validators provably agree, do you know them and trust them? 8th out of 8 conditions to avoid pointless blockchain projects: Is there anyone standing behind the assets represented on the blockchain? If the database says that I own 10 units of something, who will allow me to claim those 10 units in the real world?
  • 19. Blockchain Workspace www.blockchainworkspace.com !19 Pamela Morgan quotes • ‘my failure to implement good security wasn’t totally my fault; it was a combination of misunderstanding the risks, overestimating the effort it takes to implement’ • ‘I had heard about people getting hacked. But it was always other people’ • ‘the risk wasn’t real enough for me to do anything about it’ • ‘the real danger is that when your credentials are stolen your life can be disrupted in a major way’ • ‘Maybe you’re like I used to be: simply unsure of what to do — so you do nothing’ • LINK TO ARTICLE
  • 20. Blockchain Workspace www.blockchainworkspace.com !20 Pamela Morgan quotes • ‘Basic good security practices are now part of my routine without even noticing. Like putting on a seatbelt after getting into a vehicle, it’s just something I do.’ • LINK TO ARTICLE
  • 21. Blockchain Workspace www.blockchainworkspace.com !21 Famous bugs in contracts for Ethereum From: https://applicature.com/blog/history-of-ethereum-security-vulnerabilities-hacks-and-their-fixes#comment-719 •DAO, June 17 2016 •KING OF THE ETHER THRONE, RUBIXI, GOVERNMENTAL SMART CONTRACTS •HACKERGOLD BUG, Jan 4 2017 •BITHUMB, June 29 2017 •CLASSIC ETHER WALLET, June 30 2017 •AUGUR REP TOKEN, July 13 2017 - whole REP economy at risk •COINDASH, July 17 2017 - 34,5K ETH stolen •PARITY, July 19 2017 - over 150,000 ETH stolen •SATHOSHI PIE - July 23 2017, $ 7M stolen •VERITASEUM - July 23 2017 $8.5M stolen https://applicature.com/blog/history-of-ethereum-security-vulnerabilities-hacks-and-their-fixes#comment-719
  • 22. Blockchain Workspace www.blockchainworkspace.com Dank je wel! @henkvancann @henkvancann
  • 23. Blockchain Workspace www.blockchainworkspace.com !23 License This work is licensed under a Creative Commons Attribution-Share Alike 4.0 license https://creativecommons.org/licenses/by-sa/4.0/
  • 24. Blockchain Workspace www.blockchainworkspace.com !24 Fundamentele kennis is jouw pad naar professionalisering @henkvancann and @bcworkspace