Skip to main navigation Skip to search Skip to main content

Panning for gold.eth: Understanding and Analyzing ENS Domain Dropcatching

  • Stony Brook University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

3 Scopus citations

Abstract

Ethereum Name Service (ENS) domains allow users to map human-readable names (such as gold.eth) to their cryptocurrency addresses, simplifying cryptocurrency transactions. Like traditional DNS domains, ENS domains must be periodically renewed. Failure to renew leads to expiration, making them available for others to register (a phenomenon known as dropcatching). This presents a security risk where attackers can register expired domains to leverage the residual trust associated with them and, in the context of ENS, receive transactions intended for their previous owners. In this paper, we conduct the first large-scale study on dropcatching in ENS domains. We curate and analyze a dataset comprising 3.1M ENS domains and 9.7M Ethereum transactions, finding that 241K of these domains were re-registered by new owners after expiration. Our findings indicate a preference for domains linked to high-income wallets in re-registrations. We identify 2,633 transactions that were misdirected to new owners, averaging the equivalent of thousands of US dollars. Lastly, we highlight the lack of countermeasures by digital wallet providers, and suggest straightforward approaches that they can use to minimize financial losses due to ENS dropcatching.

Original languageEnglish
Title of host publicationIMC 2024 - Proceedings of the 2024 ACM Internet Measurement Conference
PublisherAssociation for Computing Machinery
Pages731-738
Number of pages8
ISBN (Electronic)9798400705922
DOIs
StatePublished - Nov 4 2024
Event2024 ACM Internet Measurement Conference, IMC 2024 - Madrid, Spain
Duration: Nov 4 2024Nov 6 2024

Publication series

NameProceedings of the ACM SIGCOMM Internet Measurement Conference, IMC
ISSN (Print)2150-3761

Conference

Conference2024 ACM Internet Measurement Conference, IMC 2024
Country/TerritorySpain
CityMadrid
Period11/4/2411/6/24

Keywords

  • blockchain
  • cryptocurrency
  • domains
  • nfts

Fingerprint

Dive into the research topics of 'Panning for gold.eth: Understanding and Analyzing ENS Domain Dropcatching'. Together they form a unique fingerprint.

Cite this