pull down to refresh

šŸ§¹ Dust Attack Explained


What is "Dust" in Bitcoin?

Dust refers to tiny amounts of Bitcoin that are so small, they become unspendable due to high transaction (tx) fees.

Why can't dust be spent?

Because the transaction fees required to move the dust are greater than its value.
tx fees > value of the dust

Example:

If a UTXO is only 300 sats, but it costs 500 sats in fees to spend it, it's considered dust.
šŸ’” Most wallets set the dust limit around 546 satoshis for legacy addresses.

Why should I care?

Because dust can be used in attacks to track your transactions.

How a Dust Attack Works:

Step 1: Attacker sends tiny BTC amounts to your wallet

Then waits for you to spend them.

Step 2: Linking Addresses

When you spend the dust, you likely combine it with your real UTXOs.
This links your real addresses to the dust address.

Step 3: De-Anonymizing

Once your addresses are linked, attackers can analyze transactions and try to trace your identity.

šŸ” Follow @Bitcoin_Devs for more technical breakdowns like this.
Why did you stop on Step 3?!?!
There must be another step. What's the point in "tracing identity" if they aren't going to do something with it?
Wrench attack seems the most obvious. What else, though?
reply
nearly 30% of all the UTXOs have a value of 546 sats
(from w_s_bitcoin on X)
reply
I really have my doubts about the value of dusting for tx graph discovery.
An adversary already knows the full tx graph, itā€™s a transparent ledger! I donā€™t think one can learn anything you couldnā€™t already see onchain. You can see where every sat is locked anyway!
Iā€™ve def had had dust on the old addrs. I always do coin control and leave the old utxos. It might have value to see that an old addr was used in the past ā€” but again, transparent ledger and full tx graph. Itā€™s there for all eternity.
reply
0 sats \ 4 replies \ @ek 26 Mar
An adversary already knows the full tx graph, itā€™s a transparent ledger! I donā€™t think one can learn anything you couldnā€™t already see onchain. You can see where every sat is locked anyway!
You donā€™t know the relationship between transactions.
But if I send you a few sats and later you buy something for 1m sats and you include the dust I sent you in the inputs, I can tell that you bought something for 1m sats. If you donā€™t include my dust, I canā€™t tell.
reply
Yes you can tell! You watch the address and see where the funds go. You learn nothing by dusting that you couldnā€™t already see.
reply
100 sats \ 1 reply \ @ca 16h
You don't understand it.
The receiver likely generates a new address each time.
When you ask someone for an address, the person will give you a virgin address.
The attacker wants to know THE OTHER addresses of the victim.
When the victim spends from that wallet the virgin address and the others will become visibly linked so that you know more about the victim's true bitcoin balance
reply
Yes, which would be visible on the blockchain. The linking occurs from spending, its nothing to do with the dust. Its a marker that doesn't really add much.
You see the source, and the destination of all sats. If you watch an address (the same as dusting), you learn exactly the same thing you would learn without the dusting.
reply
10 sats \ 0 replies \ @ek 27 Mar
You didn't get it but I don't care so I won't explain it to you again.
reply
Another reason to use one address per transaction as your "daddy" taught you. :-)
reply
0 sats \ 0 replies \ @ek 28 Mar
how does this help against dust attacks?
reply
Donā€™t think I ever been dusted
reply