arXiv · 2110.01970
Evaluating Tooling and Methodology when Analysing Bitcoin Mixing Services After Forensic Seizure
Abstract
Little or no research has been directed to analysis and researching forensic analysis of the Bitcoin mixing or 'tumbling' service themselves. This work is intended to examine effective tooling and methodology for recovering forensic artifacts from two privacy focused mixing services namely Obscuro which uses the secure enclave on intel chips to provide enhanced confidentiality and Wasabi wallet which uses CoinJoin to mix and obfuscate crypto currencies. These wallets were set up on VMs and then several forensic tools used to examine these VM images for relevant forensic artifacts. These forensic tools were able to recover a broad range of forensic artifacts and found both network forensics and logging files to be a useful source of artifacts to deanonymize these mixing services.
Explore related subjects
Keep this discovery
Edward Henry Young, Christos Chrysoulas, Nikolaos Pitropakis, Pavlos Papadopoulos, William J Buchanan. 2021-10-05. Evaluating Tooling and Methodology when Analysing Bitcoin Mixing Services After Forensic Seizure. https://arxiv.org/abs/2110.01970
Cite the original work for its findings. Save a collection to share your selection of sources.