<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.1 20151215//EN" "http://jats.nlm.nih.gov/publishing/1.1/JATS-journalpublishing1.dtd">
<article xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" article-type="research-article" dtd-version="1.1">
<front>
<journal-meta>
<journal-id journal-id-type="pmc">CSSE</journal-id>
<journal-id journal-id-type="nlm-ta">CSSE</journal-id>
<journal-id journal-id-type="publisher-id">CSSE</journal-id>
<journal-title-group>
<journal-title>Computer Systems Science &#x0026; Engineering</journal-title>
</journal-title-group>
<issn pub-type="ppub">0267-6192</issn>
<publisher>
<publisher-name>Tech Science Press</publisher-name>
<publisher-loc>USA</publisher-loc>
</publisher>
</journal-meta>
<article-meta>
<article-id pub-id-type="publisher-id">25668</article-id>
<article-id pub-id-type="doi">10.32604/csse.2022.025668</article-id>
<article-categories>
<subj-group subj-group-type="heading">
<subject>Article</subject>
</subj-group>
</article-categories>
<title-group>
<article-title>Cooperative Detection Method for DDoS Attacks Based on Blockchain</article-title><alt-title alt-title-type="left-running-head">Cooperative Detection Method for DDoS Attacks Based on Blockchain</alt-title><alt-title alt-title-type="right-running-head">Cooperative Detection Method for DDoS Attacks Based on Blockchain</alt-title>
</title-group>
<contrib-group content-type="authors">
<contrib id="author-1" contrib-type="author">
<name name-style="western"><surname>Cheng</surname><given-names>Jieren</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref>
</contrib>
<contrib id="author-2" contrib-type="author" corresp="yes">
<name name-style="western"><surname>Yao</surname><given-names>Xinzhi</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref><email>yxz17771776160@163.com</email>
</contrib>
<contrib id="author-3" contrib-type="author">
<name name-style="western"><surname>Li</surname><given-names>Hui</given-names></name>
<xref ref-type="aff" rid="aff-3">3</xref>
</contrib>
<contrib id="author-4" contrib-type="author">
<name name-style="western"><surname>Lu</surname><given-names>Hao</given-names></name>
<xref ref-type="aff" rid="aff-4">4</xref>
</contrib>
<contrib id="author-5" contrib-type="author">
<name name-style="western"><surname>Xiong</surname><given-names>Naixue</given-names></name>
<xref ref-type="aff" rid="aff-5">5</xref>
</contrib>
<contrib id="author-6" contrib-type="author">
<name name-style="western"><surname>Luo</surname><given-names>Ping</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref>
</contrib>
<contrib id="author-7" contrib-type="author">
<name name-style="western"><surname>Liu</surname><given-names>Le</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref>
</contrib>
<contrib id="author-8" contrib-type="author">
<name name-style="western"><surname>Guo</surname><given-names>Hao</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref>
</contrib>
<contrib id="author-9" contrib-type="author">
<name name-style="western"><surname>Feng</surname><given-names>Wen</given-names></name>
<xref ref-type="aff" rid="aff-1">1</xref>
<xref ref-type="aff" rid="aff-2">2</xref>
</contrib>
<aff id="aff-1"><label>1</label><institution>Hainan University</institution>, <addr-line>Haikou, 570228</addr-line>, <country>China</country></aff>
<aff id="aff-2"><label>2</label><institution>Hainan Blockchain Technology Engineering Research Center</institution>, <addr-line>Haikou, 570228</addr-line>, <country>China</country></aff>
<aff id="aff-3"><label>3</label><institution>Hainan Huochain Tech Company Limited</institution>, <addr-line>Haikou, 570100</addr-line>, <country>China</country></aff>
<aff id="aff-4"><label>4</label><institution>Research Office of Information Technology, Air Force Early Warning Academy</institution>, <addr-line>Wuhan, 430019</addr-line>, <country>China</country></aff>
<aff id="aff-5"><label>5</label><institution>Department of Mathematics and Computer Science, Northeastern State University</institution>, <addr-line>Tahlequah, 74464</addr-line>, <country>USA</country></aff>
</contrib-group><author-notes><corresp id="cor1"><label>&#x002A;</label>Corresponding Author: Xinzhi Yao. Email: <email>yxz17771776160@163.com</email></corresp></author-notes>
<pub-date pub-type="epub" date-type="pub" iso-8601-date="2022-03-17"><day>17</day>
<month>03</month>
<year>2022</year></pub-date>
<volume>43</volume>
<issue>1</issue>
<fpage>103</fpage>
<lpage>117</lpage>
<history>
<date date-type="received"><day>01</day><month>12</month><year>2021</year></date>
<date date-type="accepted"><day>18</day><month>1</month><year>2022</year></date>
</history>
<permissions>
<copyright-statement>&#x00A9; 2022 Cheng et al.</copyright-statement>
<copyright-year>2022</copyright-year>
<copyright-holder>Cheng et al.</copyright-holder>
<license xlink:href="https://creativecommons.org/licenses/by/4.0/">
<license-p>This work is licensed under a <ext-link ext-link-type="uri" xlink:type="simple" xlink:href="https://creativecommons.org/licenses/by/4.0/">Creative Commons Attribution 4.0 International License</ext-link>, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.</license-p>
</license>
</permissions>
<self-uri content-type="pdf" xlink:href="TSP_CSSE_25668.pdf"></self-uri>
<abstract>
<p>Distributed Denial of Service (DDoS) attacks is always one of the major problems for service providers. Using blockchain to detect DDoS attacks is one of the current popular methods. However, the problems of high time overhead and cost exist in the most of the blockchain methods for detecting DDoS attacks. This paper proposes a blockchain-based collaborative detection method for DDoS attacks. First, the trained DDoS attack detection model is encrypted by the Intel Software Guard Extensions (SGX), which provides high security for uploading the DDoS attack detection model to the blockchain. Secondly, the service provider uploads the encrypted model to Inter Planetary File System (IPFS) and then a corresponding Content-ID (CID) is generated by IPFS which greatly saves the cost of uploading encrypted models to the blockchain. In addition, due to the small amount of model data, the time cost of uploading the DDoS attack detection model is greatly reduced. Finally, through the blockchain and smart contracts, the CID is distributed to other service providers, who can use the CID to download the corresponding DDoS attack detection model from IPFS. Blockchain provides a decentralized, trusted and tamper-proof environment for service providers. Besides, smart contracts and IPFS greatly improve the distribution efficiency of the model, while the distribution of CID greatly improves the efficiency of the transmission on the blockchain. In this way, the purpose of collaborative detection can be achieved, and the time cost of transmission on blockchain and IPFS can be considerably saved. We designed a blockchain-based DDoS attack collaborative detection framework to improve the data transmission efficiency on the blockchain, and use IPFS to greatly reduce the cost of the distribution model. In the experiment, compared with most blockchain-based method for DDoS attack detection, the proposed model using blockchain distribution shows the advantages of low cost and latency. The remote authentication mechanism of Intel SGX provides high security and integrity, and ensures the availability of distributed models.</p>
</abstract>
<kwd-group kwd-group-type="author">
<kwd>Blockchain</kwd>
<kwd>smart contract</kwd>
<kwd>IPFS</kwd>
<kwd>DDoS attack</kwd>
</kwd-group>
</article-meta>
</front>
<body>
<sec id="s1">
<label>1</label>
<title>Introduction</title>
<p>Among the current types of network attacks, DDoS attacks have the characteristics of being easy to implement, destructive, difficult to resist and track, etc., so the harm is particularly significant [<xref ref-type="bibr" rid="ref-1">1</xref>,<xref ref-type="bibr" rid="ref-2">2</xref>]. According to data from Neustar, a well-known American communications service organization [<xref ref-type="bibr" rid="ref-3">3</xref>], compared with the fourth quarter of 2018, DDoS attacks in the fourth quarter of 2019 increased by 168&#x0025; [<xref ref-type="bibr" rid="ref-4">4</xref>]. The largest mitigation threat is 587 Gbps, which is 31&#x0025; larger than the largest attack in 2018, and the largest attack intensity observed in 2019 is 343 million packets per second (Mpps), which is a 252&#x0025; increase from the most intense attack in 2018. In the first half of 2020, DDoS attacks have undergone major changes. Compared with the same period in 2019, the number of DDoS attacks has increased by 151&#x0025;. These included the largest and longest sustained attacks that Neustar mitigated, at 1.17 Tbps per second and 5 days and 18 h, respectively. Big data environments such as customers, networks, service infrastructure, government organizations, and companies have increasingly become the key targets of DDoS attacks [<xref ref-type="bibr" rid="ref-5">5</xref>,<xref ref-type="bibr" rid="ref-6">6</xref>].</p>
<p>The current work to mitigate DDoS attacks mainly includes the following two: (1) By using legal services on Internet of Things (IoT) devices [<xref ref-type="bibr" rid="ref-7">7</xref>], for example, some simple service discovery protocols are used. However, the harm of DDoS attacks is amplified by this, making the defense problem more complicated and difficult, and causing more serious economic losses [<xref ref-type="bibr" rid="ref-8">8</xref>]. Among the mitigation plans currently proposed, most of the deployment work is extremely difficult to carry out, so only a very small number of plans can be deployed and implemented. For example, Internet Engineering Task Force (IETF) proposed the development of a collaboration protocol called DDoS Open Threat Signaling (DOTS) [<xref ref-type="bibr" rid="ref-9">9</xref>] to spread DDoS attacks. However, the complexity of the development of these new protocols and the high cost of maintenance have brought difficulties that are difficult to overcome in various aspects for the development of collaboration protocols. (2) Currently, DDoS protection schemes provided by companies such as Akamai [<xref ref-type="bibr" rid="ref-10">10</xref>] or CloudFlare [<xref ref-type="bibr" rid="ref-11">11</xref>] are gradually being adopted [<xref ref-type="bibr" rid="ref-12">12</xref>]. These cloud-based solutions to mitigate DDoS attacks [<xref ref-type="bibr" rid="ref-13">13</xref>] are solved by increasing capacity. In order to reduce the detection burden of attacked devices, the traffic in edge routers and switches is exported. When performing extra analysis in the cloud, packet filtering is used to balance, reroute, or drop traffic within the cloud. However, these schemes require protection from a third party, which means higher costs, lower service performance and greater credit problems [<xref ref-type="bibr" rid="ref-14">14</xref>]. However, the infrastructure of blockchain [<xref ref-type="bibr" rid="ref-15">15</xref>] and smart contracts can solve third-party problems and alleviate DDoS attacks.</p>
<p>In the current work on mitigating DDoS attacks using blockchain and smart contracts, the mainstream approach is the architecture and implementation method of using blockchain [<xref ref-type="bibr" rid="ref-16">16</xref>] and smart contracts to transmit attack information (whitelist or blacklist IP address signals) across multiple domains [<xref ref-type="bibr" rid="ref-1">1</xref>]. However, DDoS attacks are large-scale attacks, the number of whitelisted and blacklisted IPs for DDoS attacks is extremely large, and there is a risk of critical data leakage. The blockchain is a distributed structure composed of multiple blocks. The transmission of huge data using the blockchain will seriously affect the time overhead, bring extremely high transmission costs, and greatly reduce the transmission efficiency. Therefore, distributing the DDoS attack detection model can well alleviate the problems of high transmission cost and time overhead, and ensure that key data is not leaked. In order to ensure the security of the model, after the DDoS attack detection model is trained, we use Intel SGX [<xref ref-type="bibr" rid="ref-17">17</xref>] to protect the model to ensure the security of the DDoS attack detection model before distribution. In this paper, our goal is to leverage blockchain and IPFS to distribute DDoS attack detection models. We propose a blockchain-based DDoS attack collaborative detection method, which uses blockchain and IPFS to distribute a DDoS attack detection model to reduce more costs and significantly reduce time overhead. The contributions of this article are:<list list-type="bullet"><list-item>
<p>A model distribution mechanism is proposed to further improve the timeliness of the entire framework while ensuring that key data is not leaked.</p></list-item><list-item>
<p>This article is not limited to a small technological breakthrough, but turns its attention to providing a valuable and implementable overall framework for mitigating DDoS attacks. This article provides a new application scenario for blockchain and a strong guarantee for the distribution mechanism. This scene has a wide range of commercial applications.</p></list-item></list></p>
</sec>
<sec id="s2">
<label>2</label>
<title>Background</title>
<sec id="s2_1">
<label>2.1</label>
<title>Blockchain</title>
<p>Blockchain technology [<xref ref-type="bibr" rid="ref-18">18</xref>] can build a reliable data model that is collectively maintained under the condition of decentralization and no prior trust of service providers. Make data transfer between service providers through encryption algorithms, consensus mechanisms, and specific data storage methods. Miyachi et al. [<xref ref-type="bibr" rid="ref-19">19</xref>] proposed a modular hybrid privacy protection framework, using off-chain and on-chain blockchain system design to be applied to three different reference models. Manogaran et al. [<xref ref-type="bibr" rid="ref-20">20</xref>] proposed a blockchain-assisted data offloading method for maximum availability (BDO-AM), which is to prevent the non-probabilistic (NP) difficult problem of data availability due to prolonged backlog. Nguyen et al. [<xref ref-type="bibr" rid="ref-21">21</xref>] deployed blockchain technology to create a safe and reliable data exchange platform between multiple data providers, in which IoT data is encrypted and recorded in a distributed ledger. Lucas et al. [<xref ref-type="bibr" rid="ref-22">22</xref>] proposed a DR registration framework and implemented it as a proof of concept on Hyperledger Fabric, using real assets in a laboratory environment to study its feasibility and performance. Sun et al. [<xref ref-type="bibr" rid="ref-23">23</xref>] proposed a new model of social network public opinion dissemination based on blockchain technology. This model considers the impact of a reasonable quantitative value contribution on the incentive mechanism generated by the dissemination of information in such social networks, and constructs a profit-risk matrix under different dissemination behaviors. [<xref ref-type="bibr" rid="ref-24">24</xref>] proposed the concept of a blockchain-based remote data integrity check (RDIC) scheme for big data. The new concept uses blockchain technology to greatly improve the efficiency and security of RDIC. Wang et al. [<xref ref-type="bibr" rid="ref-25">25</xref>] first analyzed the security risks of data storage in sensor networks, and then proposed using blockchain technology to ensure the security of data storage in sensor networks. Veeramakali et al. [<xref ref-type="bibr" rid="ref-26">26</xref>] proposed a security framework for data communication based on the Internet of Things using blockchain. In terms of processing time and writing time, the proposed system and the existing system based on the Internet of Things were evaluated for performance. Chinaei et al. [<xref ref-type="bibr" rid="ref-27">27</xref>] use blockchain as a distributed platform to implement on-demand verification schemes. This scheme allows the authorities to automatically conduct transactions with connected devices for witness services.</p>
</sec>
<sec id="s2_2">
<label>2.2</label>
<title>Smart Contract</title>
<p>Smart contract is an event-driven, stateful code and algorithm contract [<xref ref-type="bibr" rid="ref-28">28</xref>]. With the continuous development of blockchain technology, the current blockchain technology has gradually surpassed the era of programmable currency and entered the era of smart contracts. Jain et al. [<xref ref-type="bibr" rid="ref-29">29</xref>] designed a joint resource allocation and pricing scheme using blockchain smart contracts. Ziar et al. [<xref ref-type="bibr" rid="ref-30">30</xref>] provide a privacy protection solution for permissionless blockchains to authorize users to control transaction data in the open ledger. Xu et al. [<xref ref-type="bibr" rid="ref-31">31</xref>] proposed a distributed health monitoring system based on blockchain technology to achieve data security, information transparency, efficient sharing and autonomous decision-making through smart contracts. Lakhan et al. [<xref ref-type="bibr" rid="ref-32">32</xref>] proposed to develop a new, cost-effective and stable IoMT framework based on Wuyun supporting blockchain. Estevam et al. [<xref ref-type="bibr" rid="ref-33">33</xref>] proposed a new decentralized timestamp service that combines smart contracts and different time providers. Chen et al. [<xref ref-type="bibr" rid="ref-34">34</xref>] proposed an incentive compatible reasonable secret scheme to construct a game tree with imperfect information to facilitate our analysis and proof, and directly eliminate the strict control strategy to simplify the game tree. Spataru et al. [<xref ref-type="bibr" rid="ref-35">35</xref>] proposed a blockchain architecture with different semantics, which introduced a new type of node, the purpose of which is to enhance the storage used by smart contracts and an efficient storage model combined with a hybrid compression mechanism. Khan et al. [<xref ref-type="bibr" rid="ref-36">36</xref>] proposed a secure decentralized LMS based on a private blockchain network, called a blockchain-based learning management system (BLMS). Kamboj et al. [<xref ref-type="bibr" rid="ref-37">37</xref>] proposed an RBAC model that uses blockchain-based smart contracts to manage user role permissions in organizations.</p>
</sec>
<sec id="s2_3">
<label>2.3</label>
<title>Distributed Denial of Service Attack Detection</title>
<p>Currently, there is no way to completely eliminate DDoS attacks, but we can mitigate DDoS attacks through DDoS attack detection, and quickly restore business and provide services after suffering a DDoS attack. Liu et al. [<xref ref-type="bibr" rid="ref-38">38</xref>] aimed at the existing flow-based DDoS attack detection methods that face non-negligible time delays, and they are not universal for different types and different rates of DDoS attacks. They proposed a fast data packet-based method. DDoS attack detection method (FAPDD). Amaizu et al. [<xref ref-type="bibr" rid="ref-39">39</xref>] proposed a composite and efficient DDoS attack detection framework for 5G and B5G. The proposed detection framework consists of a composite multilayer perceptron, which is combined with an efficient feature extraction algorithm. Not only can it detect DDoS attacks, but it can also return the type of DDoS attacks encountered. Cui et al. [<xref ref-type="bibr" rid="ref-40">40</xref>] proposed a DDoS attack detection and defense mechanism based on self-organizing mapping (SOM) in an SDN environment. Yu et al. [<xref ref-type="bibr" rid="ref-41">41</xref>] proposed a collaborative DDoS attack detection scheme based on entropy and integrated learning. The method established a coarse-grained preliminary detection module based on entropy in the edge switch to monitor the network status in real time. If an abnormality is found, then Report to the controller. Gadekallu et al. [<xref ref-type="bibr" rid="ref-42">42</xref>] proposed a blockchain-based solution to secure datasets generated from IoT devices for e-health applications.</p>
</sec>
</sec>
<sec id="s3">
<label>3</label>
<title>Blockchain-based Collaborative Detection Framework for Distributed Denial of Service Attacks</title>
<sec id="s3_1">
<label>3.1</label>
<title>The Structure of the Framework</title>
<p>The blockchain-based DDoS attack collaborative detection framework proposed in this paper is divided into three parts, as shown in <xref ref-type="fig" rid="fig-1">Fig. 1</xref>. The first part includes many clients at the outermost layer, the second part is the middle-level service provider, and the third part is the outer blockchain network. Data with valuable meaning, sharing requirements, collaborative processing requirements, and auditing requirements are suitable for uploading to the blockchain. The model meets the above characteristics and occupies less resources, so it is very suitable to upload the model and distribute it.</p>
<fig id="fig-1">
<label>Figure 1</label>
<caption>
<title>Blockchain-based collaborative detection framework for DDoS attacks</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-1.png"/>
</fig>
<p><bold>Client computer.</bold> The outermost layer contains many visitors, many visitors include normal clients and malicious attackers (normal clients are blue dots, and malicious attack machines are red dots). Normal clients have normal access to the service provider, while malicious attackers have organized abnormal access to the service provider.</p>
<p><bold>Service provider.</bold> The service provider is responsible for receiving the visits of the outermost visitors, and is responsible for the tasks of keeping visit records, training models, using SGX to protect the models and uploading the models to the blockchain. The task of service providers is particularly important. Therefore, it is very important for service providers to reach an agreement in advance to form an alliance before receiving numerous client visits.</p>
<p><bold>Blockchain network.</bold> Before receiving visits from many clients, service providers jointly formed a blockchain network to form an alliance so that service providers could help each other without the risk of key data leakage. While service providers are distributing models to each other, the models are also being updated over time, and the latest models are distributed through the blockchain, so as to achieve more efficient collaborative detection purposes.</p>
</sec>
<sec id="s3_2">
<label>3.2</label>
<title>Distributed Denial of Service Attack Collaborative Detection Process</title>
<p>The main purpose of the blockchain-based collaborative detection framework for DDoS attacks is to conduct collaborative detection of DDoS attacks by using the characteristics of the blockchain. Among them, The blockchain can ensure that the model is not tampered with, and the size of the CID generated by IPFS can ensure that it does not affect the efficiency of the blockchain. SGX provides protection locally for the trained DDoS attack detection model. SGX can effectively prevent the model from being maliciously tampered with before uploading to the blockchain. As shown in <xref ref-type="fig" rid="fig-2">Fig. 2</xref>, the details of the system architecture are as follows:<list list-type="bullet"><list-item>
<p><bold>Step 1.</bold> Clients access the service provider, including both normal clients and malicious attackers. Normal clients normally access the service provider and receive services from the service provider. Many malicious attackers launch DDoS attacks on service providers in an active or manipulated state, in an attempt to cause serious damage to the service provider&#x0027;s business.</p></list-item><list-item>
<p><bold>Step 2.</bold> The service provider has access records after normal clients and malicious attack machines have visited, and the service provider sends the access records to the model training machine.</p></list-item><list-item>
<p><bold>Step 3.</bold> The model training machine uses the access records sent by the service provider to train the DDoS attack detection model.</p></list-item><list-item>
<p><bold>Step 4.</bold> After training the DDoS attack detection model, the training machine uses SGX to protect the model locally to prevent the model from being tampered with.</p></list-item><list-item>
<p><bold>Step 5.</bold> The training machine uploads the DDoS attack detection model protected by SGX to IPFS. After receiving the model, IPFS generates CID and uploads the CID to the blockchain. Note that this blockchain network is composed of service providers in the same industry.</p></list-item><list-item>
<p><bold>Step 6.</bold> When the CID is uploaded to the blockchain network, other service providers on the blockchain will download the CID from the blockchain network. Other service providers use CID to download the model on IPFS and detect the visiting clients.</p></list-item><list-item>
<p><bold>Step 7.</bold> If other service providers in the blockchain network have also suffered DDoS attacks, the model can be updated and distributed according to the above steps.</p></list-item></list></p>
<fig id="fig-2">
<label>Figure 2</label>
<caption>
<title>Blockchain-based DDoS attack collaborative detection architecture</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-2.png"/>
</fig>
<p>Assuming that model <italic>f</italic><sub><italic>i</italic></sub> and data <italic>f</italic><sub><italic>D</italic></sub>, the relationship between model <italic>f</italic><sub><italic>i</italic></sub> and data <italic>f</italic><sub><italic>D</italic></sub> is that <italic>f</italic><sub><italic>i</italic></sub>&#x2009;&#x003C;&#x2009;<italic>f</italic><sub><italic>D</italic></sub>. Since the time cost of distributing files is proportional to the size of the files to be transmitted, the relationship between model <italic>f</italic><sub><italic>i</italic></sub> and data <italic>f</italic><sub><italic>D</italic></sub> is shown in <xref ref-type="disp-formula" rid="eqn-1">(1)</xref>:<disp-formula id="eqn-1"><label>(1)</label>
<mml:math id="mml-eqn-1" display="block"><mml:mtable rowspacing="4pt" columnspacing="1em"><mml:mtr><mml:mtd><mml:mrow><mml:msub><mml:mi>t</mml:mi><mml:mi>i</mml:mi></mml:msub><mml:mo stretchy="false">(</mml:mo><mml:mrow><mml:msub><mml:mi>f</mml:mi><mml:mi>i</mml:mi></mml:msub></mml:mrow><mml:mo stretchy="false">)</mml:mo><mml:mo>&#x003C;</mml:mo><mml:msub><mml:mi>t</mml:mi><mml:mi>i</mml:mi></mml:msub><mml:mo stretchy="false">(</mml:mo><mml:mrow><mml:msub><mml:mi>f</mml:mi><mml:mi>D</mml:mi></mml:msub></mml:mrow><mml:mo stretchy="false">)</mml:mo></mml:mrow></mml:mtd></mml:mtr></mml:mtable></mml:math>
</disp-formula></p>
<p>The blockchain-based DDoS attack collaborative detection architecture has a total of <italic>i</italic> service providers, and each service provider can distribute the model. Because <italic>t</italic><sub><italic>i</italic></sub>(<italic>f</italic><sub><italic>i</italic></sub>)&#x2009;&#x003C;&#x2009;<italic>t</italic><sub><italic>i</italic></sub>(<italic>f</italic><sub><italic>D</italic></sub>), The relationship between the total cost of the distribution of model <italic>f</italic><sub><italic>i</italic></sub> and data <italic>f</italic><sub><italic>D</italic></sub> in a fixed period of time is shown in <xref ref-type="disp-formula" rid="eqn-2">(2)</xref>:<disp-formula id="eqn-2"><label>(2)</label>
<mml:math id="mml-eqn-2" display="block"><mml:mtable rowspacing="4pt" columnspacing="1em"><mml:mtr><mml:mtd><mml:mrow><mml:munderover><mml:mrow><mml:mo movablelimits="false">&#x2211;</mml:mo></mml:mrow><mml:mrow><mml:mi>i</mml:mi><mml:mo>=</mml:mo><mml:mn>1</mml:mn></mml:mrow><mml:mi>n</mml:mi></mml:munderover><mml:mo>&#x2061;</mml:mo><mml:msub><mml:mi>t</mml:mi><mml:mi>i</mml:mi></mml:msub><mml:mo stretchy="false">(</mml:mo><mml:mrow><mml:msub><mml:mi>f</mml:mi><mml:mi>i</mml:mi></mml:msub></mml:mrow><mml:mo stretchy="false">)</mml:mo><mml:mo>&#x003C;</mml:mo><mml:munderover><mml:mrow><mml:mo movablelimits="false">&#x2211;</mml:mo></mml:mrow><mml:mrow><mml:mi>i</mml:mi><mml:mo>=</mml:mo><mml:mn>1</mml:mn></mml:mrow><mml:mi>n</mml:mi></mml:munderover><mml:mo>&#x2061;</mml:mo><mml:msub><mml:mi>t</mml:mi><mml:mi>i</mml:mi></mml:msub><mml:mo stretchy="false">(</mml:mo><mml:mrow><mml:msub><mml:mi>f</mml:mi><mml:mi>D</mml:mi></mml:msub></mml:mrow><mml:mo stretchy="false">)</mml:mo></mml:mrow></mml:mtd></mml:mtr></mml:mtable></mml:math>
</disp-formula></p>
<p>Before implementing model distribution, service providers need to train the DDoS attack detection model in advance. There are various ways of training the DDoS attack detection model. We give an example and show it in Algorithm 1.</p>
<fig id="fig-9">
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-9.png"/>
</fig>
</sec>
<sec id="s3_3">
<label>3.3</label>
<title>Model Distribution Process</title>
<sec id="s3_3_1">
<label>3.3.1</label>
<title>Model Distribution Architecture</title>
<p>This article uses IPFS to complete the task of uploading the model to the blockchain. The reasons for choosing IPFS to chain are shown in Part 4. The service provider uploads the trained model from the training machine to IPFS, and IPFS will feed back the CID corresponding to the model. The service provider then uploads the CID to the blockchain through a smart contract to achieve the purpose of model distribution. Since the size of the CID has always been in a fixed interval, and the size of this interval is in bytes, the model will save a lot of cost through IPFS on the chain than directly on the chain. The distribution architecture of the model is shown in <xref ref-type="fig" rid="fig-3">Fig. 3</xref>.</p>
<fig id="fig-3">
<label>Figure 3</label>
<caption>
<title>Model distribution architecture</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-3.png"/>
</fig>
</sec>
<sec id="s3_3_2">
<label>3.3.2</label>
<title>Model Upload Process</title>
<p>The process of uploading the model to IPFS is shown in <xref ref-type="fig" rid="fig-4">Fig. 4</xref>. The steps required are as follows:<list list-type="bullet"><list-item>
<p><bold>Step 1.</bold> The service provider encounters a DDoS attack and has trained the model, and needs to upload the model to IPFS.</p></list-item><list-item>
<p><bold>Step 2.</bold> The service provider stores the model in its working directory.</p></list-item><list-item>
<p><bold>Step 3.</bold> The service provider informs IPFS that it wants to add a model, and the system generates the CID of the model (the CIDs generated by IPFS all start with Qm).</p></list-item><list-item>
<p><bold>Step 4.</bold> The model already exists in the IPFS network.</p></list-item></list></p>
<fig id="fig-4">
<label>Figure 4</label>
<caption>
<title>Model upload process</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-4.png"/>
</fig>
<p>The model utilizes the IPFS upload and confirmation functions explained in Algorithm 2.</p>
<fig id="fig-10">
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-10.png"/>
</fig>
</sec>
</sec>
</sec>
<sec id="s4">
<label>4</label>
<title>Case Study</title>
<p>In this section, we will introduce the implementation and explain that the cost of each aspect of the solution is within a reasonable range. Compared with mainstream methods of mitigating DDoS attacks, our solution has obvious advantages in terms of cost, time, and security. Compared with direct transmission, this solution has greater advantages in terms of security, credibility, and feasibility. Our implementation environment is carried out on a Dell Precision 3630 desktop computer, this desktop computer supports Intel SGX, the processor is Intel(R) Core(TM) i7-9700K CPU, 16G memory, the Ubuntu version is Ubuntu 9.3.0-17ubuntu1&#x223C;20.04, The Linux kernel version is 5.11.0-38-generic (buildd@lgw01-and64-041), Ganache is used to create a blockchain environment, and the Ubuntu version of IPFS Desktop.</p>
<sec id="s4_1">
<label>4.1</label>
<title>Cost Overhead</title>
<p>This experiment aims to compare the cost of choosing IPFS to upload to the blockchain and directly uploading to the blockchain, so as to prove the correctness of choosing IPFS in this article. Since the blockchain is distributed, the size of each block is only about 1&#x2005;M. When the amount of data that needs to be uploaded is large, the use of blockchain transmission is not only extremely inefficient and costly (the cost here is in gas units). We compare 10 data uploaded to the blockchain via IPFS with the data directly uploaded to the blockchain. The size of the data directly uploaded to the blockchain is 10&#x2005;K, as shown in <xref ref-type="fig" rid="fig-5">Fig. 5</xref>. We can clearly observe from <xref ref-type="table" rid="table-1">Tab. 1</xref>, since the size of the generated CID (Content-ID) is always in a small range after the data is uploaded to IPFS. However, uploading only 10&#x2005;K of data directly to the blockchain consumes 231,943 gas. so in terms of transaction overhead, using IPFS to upload to the blockchain will consume less gas. In October 2021, 1ether will be approximately 3642 U.S. dollars. Therefore, the smaller the gas, the lower the chain cost.</p>
<fig id="fig-5">
<label>Figure 5</label>
<caption>
<title>Comparison of the cost of using IPFS and uploading data directly to the blockchain</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-5.png"/>
</fig>
<table-wrap id="table-1"><label>Table 1</label>
<caption>
<title>Comparison of the cost of using IPFS and uploading data directly to the block chain</title></caption>
<table><colgroup><col align="left"/><col align="left"/>
</colgroup>
<thead>
<tr>
<th align="left">Data size (MB)</th>
<th align="left">Transaction cost (gas)</th>
</tr>
</thead>
<tbody>
<tr>
<td align="left">12.8</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">25.6</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">38.4</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">51.2</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">64</td>
<td align="left">28874</td>
</tr>
<tr>
<td align="left">76.8</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">89.6</td>
<td align="left">28874</td>
</tr>
<tr>
<td align="left">102.4</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">115.2</td>
<td align="left">28874</td>
</tr>
<tr>
<td align="left">128</td>
<td align="left">35934</td>
</tr>
<tr>
<td align="left">0.0097</td>
<td align="left">231943</td>
</tr>
</tbody>
</table>
</table-wrap>

</sec>
<sec id="s4_2">
<label>4.2</label>
<title>Model Distribution</title>
<p>This experiment aims to demonstrate the advantages of the blockchain-based DDoS attack collaborative detection framework, which is mainly reflected in the time overhead. Distributing the DDoS attack detection model to other service providers that make up the blockchain through the blockchain-based DDoS attack collaborative detection framework can solve the problem of time overhead. We have taken the experimental data of 30 consecutive uploads and downloads, which are shown in <xref ref-type="fig" rid="fig-6">Figs. 6</xref> and <xref ref-type="fig" rid="fig-7">7</xref>. <xref ref-type="fig" rid="fig-6">Fig. 6</xref> shows the comparison [<xref ref-type="bibr" rid="ref-43">43</xref>] of the upload time of the model and large data through the smart contract in the blockchain distribution process. It takes 11.18881 and 16.27832 s to upload 1.5G and 2G data. In the process of uploading the same data, the time overhead for the first upload will be very large, and subsequent uploads will be accompanied by certain fluctuations. But the upload time cost of the model is smooth and efficient.</p>
<fig id="fig-6">
<label>Figure 6</label>
<caption>
<title>Comparison of the time cost of uploading data between models and large data</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-6.png"/>
</fig>
<fig id="fig-7">
<label>Figure 7</label>
<caption>
<title>Comparison of the time cost of downloading data between model and large data</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-7.png"/>
</fig>
<p><xref ref-type="fig" rid="fig-7">Fig. 7</xref> shows the comparison of the download time of the model and large data through the smart contract in the blockchain distribution process. It can be concluded from <xref ref-type="fig" rid="fig-7">Fig. 7</xref> that the blockchain-based DDoS attack collaborative detection framework can greatly reduce the download time overhead of various service providers. In the process of downloading the same piece of data, the time overhead for the first download will also be large, and subsequent downloads will be accompanied by certain fluctuations. But the download time overhead of the model is very efficient.</p>
<p>The above experiments clearly show that the blockchain-based DDoS attack collaborative detection framework not only solves the problem of high time overhead for detecting DDoS attacks on the current blockchain, but also improves the detection efficiency of various service providers and reduces all aspects of costs.</p>
</sec>
<sec id="s4_3">
<label>4.3</label>
<title>Time Cost of Model in Software Guard Extensions</title>
<p>This experiment aims to compare the time spent in SGX between models and data of different sizes. We tested the time spent on SGX for 7 different data (models are also a type of data), where the time spent is the sum of the time spent on reading, encrypting, decrypting, transmitting and writing text. We used 7 different data (including models and gradually increasing data). <xref ref-type="table" rid="table-2">Tab. 2</xref> compares our experimental results with the time spent in SGX [<xref ref-type="bibr" rid="ref-44">44</xref>] for data of different sizes obtained from preliminary research. It can be clearly derived from <xref ref-type="fig" rid="fig-8">Fig. 8</xref> that the time cost of the model is much smaller than the time cost of gradually increasing data. This experiment proves that the distribution model can not only improve the efficiency of collaborative detection, but also significantly reduce the burden of security and transmission without reducing its performance. Note that a model with too simple functions will lead to a decrease in the detection effect.</p>
<table-wrap id="table-2"><label>Table 2</label>
<caption>
<title>Comparison of the time cost of model and data in SGX</title></caption>
<table><colgroup><col align="left"/><col align="left"/>
</colgroup>
<thead>
<tr>
<th align="left">Data size (MB)</th>
<th align="left">Cost (s)</th>
</tr>
</thead>
<tbody>
<tr>
<td align="left">51.2</td>
<td align="left">0.2036</td>
</tr>
<tr>
<td align="left">64</td>
<td align="left">0.2580</td>
</tr>
<tr>
<td align="left">76.8</td>
<td align="left">0.3127</td>
</tr>
<tr>
<td align="left">89.6</td>
<td align="left">0.3678</td>
</tr>
<tr>
<td align="left">102.4</td>
<td align="left">0.4030</td>
</tr>
<tr>
<td align="left">115.2</td>
<td align="left">0.4466</td>
</tr>
<tr>
<td align="left">128</td>
<td align="left">0.4924</td>
</tr>
</tbody>
</table>
</table-wrap>
<fig id="fig-8">
<label>Figure 8</label>
<caption>
<title>Comparison of the time cost of model and data in SGX</title></caption>
<graphic mimetype="image" mime-subtype="png" xlink:href="CSSE_25668-fig-8.png"/>
</fig>
</sec>
<sec id="s4_4">
<label>4.4</label>
<title>Overall Transmission Time Overhead</title>
<p>This experiment aims to compare the time overhead of a blockchain-based DDoS attack collaborative detection framework and the transmission model without using the blockchain. It can be clearly drawn from <xref ref-type="table" rid="table-3">Tab. 3</xref> that compared with the two, the total transmission time of this method is not too far behind without blockchain transmission while ensuring the safety and stability. Although the time overhead of direct transmission without using the blockchain is small, other hidden dangers are worrying. Therefore, the advantages of the blockchain-based collaborative detection framework for DDoS attacks appear to be particularly prominent.</p>
<table-wrap id="table-3"><label>Table 3</label>
<caption>
<title>Comparison of model transmission time overhead with or without blockchain</title></caption>
<table><colgroup><col align="left"/><col align="left"/>
</colgroup>
<thead>
<tr>
<th align="left">Transfer method</th>
<th align="left">Cost (s)</th>
</tr>
</thead>
<tbody>
<tr>
<td align="left">Transmission using blockchain</td>
<td align="left">1.31181</td>
</tr>
<tr>
<td align="left">Transmission without blockchain</td>
<td align="left">0.65046</td>
</tr>
</tbody>
</table>
</table-wrap>
</sec>
<sec id="s4_5">
<label>4.5</label>
<title>Summary</title>
<p>Through the above experiments, it can be proved that the blockchain-based DDoS attack collaborative detection framework has the characteristics of low cost, low time efficiency, high efficiency, security and comprehensiveness. This framework solves the problem of poor timeliness and high cost in today&#x0027;s blockchain detection of DDoS attacks. Part 4.1 proves the low-cost characteristics of the blockchain-based DDoS attack collaborative detection framework using smart contracts and IPFS to distribute the model. Part 4.2 proves the low timeliness and high efficiency of the model when using the blockchain-based DDoS attack collaborative detection framework to transmit. Section 4.3 proves the low timeliness, high efficiency and security of the DDoS attack collaborative detection framework based on blockchain. Part 4.4 proves the comprehensiveness of the blockchain-based DDoS attack collaborative detection framework.</p>
</sec>
</sec>
<sec id="s5">
<label>5</label>
<title>Conclusion</title>
<p>The scale of DDoS attacks expands rapidly with the increase in the number of network devices, and the problem of detection efficiency of DDoS attacks is becoming more and more prominent. The use of blockchain to detect DDoS attacks is one of the current mainstream, but most detection methods have the problems of time overhead and high cost. This work distributes the DDoS attack detection model through the blockchain, which is helpful to the existing research on using the blockchain to detect DDoS attacks. The DDoS attack detection model has the characteristics of value, small amount of data, and security, and is very suitable for distribution using the blockchain, which significantly reduces the time and cost. In this article, first of all, we introduce a blockchain-based DDoS attack collaborative detection method, so that the model is distributed through the blockchain to solve the problem of high time and cost of detecting DDoS attacks on the existing blockchain. Secondly, the research results reported in this article bring new enlightenment to the method of using blockchain to detect DDoS attacks, and it helps to improve the timeliness, security and practicability of the method. Finally, the evidence of this research shows that our solution can provide low-cost, low-latency and secure model storage for DDoS attack detection using blockchain.</p>
</sec>
<sec id="s6">
<label>6</label>
<title>Limitation and Future Research</title>
<p>In this section, we describe the limitations of this paper and the scope of future work.</p>
<p>The limitations of this paper are:<list list-type="bullet"><list-item>
<p><bold>Intel SGX.</bold> Currently, SGX has a memory limit of 128&#x2005;MB, which limits the amount of important data that can be stored. If the total amount of data that needs to be protected is much larger than the memory limit of SGX, then the efficiency of SGX will drop significantly.</p></list-item><list-item>
<p><bold>Blockchain.</bold> Currently, the use of smart contracts to transfer data on the blockchain is still limited. The size of data directly uploaded to the blockchain using smart contracts is still not ideal, and the transmission efficiency on the blockchain still needs to be improved.</p></list-item></list></p>
<p>Our future scope of work:<list list-type="bullet"><list-item>
<p><bold>Reputation Assessment.</bold> Even if the service provider distributes the trained latest DDoS attack detection model, there is still the issue of the authenticity of the distribution model. Therefore, it is necessary to use the reputation evaluation mechanism to constrain each service provider to ensure the validity of the distributed model.</p></list-item><list-item>
<p><bold>Model safety.</bold> According to the latest research, the detection model has the risk of leaking key data. How to protect the model before it is distributed is another research direction.</p></list-item></list></p>
</sec>
</body>
<back><fn-group>
<fn fn-type="other">
<p><bold>Funding Statement:</bold> This work was supported by the Key Research and Development Program of Hainan Province (Grant No. ZDYF2020040, ZDYF2021GXJS003), Major science and technology project of Hainan Province (Grant No. ZDKJ2020012), National Natural Science Foundation of China (NSFC) (Grant No. 62162022, 62162024 and 61762033), Hainan Provincial Natural Science Foundation of China (Grant No. 620MS021), and Opening Project of Shanghai Trusted Industrial Control Platform (Grant No. TICPSH202003005-ZC).</p>
</fn>
<fn fn-type="conflict">
<p><bold>Conflicts of Interest:</bold> The authors declare that they have no conflicts of interest to report regarding the present study.</p>
</fn>
</fn-group>
<ref-list content-type="authoryear">
<title>References</title>
<ref id="ref-1"><label>[1]</label><mixed-citation publication-type="conf-proc"><person-group person-group-type="author"><string-name><given-names>Z.</given-names> <surname>Houda</surname></string-name>, <string-name><given-names>A.</given-names> <surname>Hafid</surname></string-name> and <string-name><given-names>L.</given-names> <surname>Khoukhi</surname></string-name></person-group>, &#x201C;<article-title>Co-IoT: A collaborative DDoS mitigation scheme in IoT environment based on blockchain using SDN</article-title>,&#x201D; in <conf-name>2019 IEEE Global Communications Conf.</conf-name>, <publisher-loc>Waikoloa, HI, USA</publisher-loc>, pp. <fpage>1</fpage>&#x2013;<lpage>6</lpage>, <year>2019</year>.</mixed-citation></ref>
<ref id="ref-2"><label>[2]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>B.</given-names> <surname>Rodrigues</surname></string-name>, <string-name><given-names>E.</given-names> <surname>Scheid</surname></string-name> and <string-name><given-names>C.</given-names> <surname>Killer</surname></string-name></person-group>, &#x201C;<article-title>Blockchain signaling system (BloSS): Cooperative signaling of distributed denial-of-service attacks</article-title>,&#x201D; <source>Journal of Network and Systems Management</source>, vol. <volume>28</volume>, no. <issue>1</issue>, pp. <fpage>953</fpage>&#x2013;<lpage>989</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-3"><label>[3]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>M.</given-names> <surname>Snehi</surname></string-name></person-group>, &#x201C;<article-title>Vulnerability retrospection of security solutions for software-defined cyber-physical system against DDoS and IoT-DDoS attacks</article-title>,&#x201D; <source>Computer Science Review</source>, vol. <volume>40</volume>, pp. <fpage>100371</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-4"><label>[4]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>A.</given-names> <surname>Bhardwaj</surname></string-name>, <string-name><given-names>V.</given-names> <surname>Mangat</surname></string-name> and <string-name><given-names>R.</given-names> <surname>Vig</surname></string-name></person-group>, &#x201C;<article-title>Distributed denial of service attacks in cloud: State-of-the-art of scientific and commercial solutions</article-title>,&#x201D; <source>Computer Science Review</source>, vol. <volume>39</volume>, pp. <fpage>100332</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-5"><label>[5]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>L.</given-names> <surname>Yeh</surname></string-name>, <string-name><given-names>P.</given-names> <surname>Lu</surname></string-name> and <string-name><given-names>S.</given-names> <surname>Huang</surname></string-name></person-group>, &#x201C;<article-title>SOChain: A privacy-preserving DDoS data exchange service over SOC consortium blockchain</article-title>,&#x201D; <source>IEEE Transactions on Engineering Management</source>, vol. <volume>69</volume>, no. <issue>4</issue>, pp. <fpage>1487</fpage>&#x2013;<lpage>1500</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-6"><label>[6]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>G.</given-names> <surname>Spathoulas</surname></string-name>, <string-name><given-names>N.</given-names> <surname>Giachoudis</surname></string-name> and <string-name><given-names>G. P.</given-names> <surname>Damiris</surname></string-name></person-group>, &#x201C;<article-title>Collaborative blockchain-based detection of distributed denial of dervice attacks based on internet of things botnets</article-title>,&#x201D; <source>Future Internet</source>, <year>2019</year>, vol. <volume>11</volume>, no. <issue>11</issue>, pp. <fpage>226</fpage>&#x2013;<lpage>250</lpage>.</mixed-citation></ref>
<ref id="ref-7"><label>[7]</label><mixed-citation publication-type="web"><person-group person-group-type="author"><string-name><given-names>A.</given-names> <surname>Hakiri</surname></string-name> and <string-name><given-names>A.</given-names> <surname>Gokhale</surname></string-name></person-group>, &#x201C;<article-title>A software-defined blockchain-based architecture for scalable and tamper-resistant IoT-enabled smart cities</article-title>,&#x201D; <comment>Communication Technologies for Networked Smart Cities</comment>, pp. <fpage>275</fpage>&#x2013;<lpage>300</lpage>, <year>2021</year>. [Online]. Available: <uri xlink:href="https://digital-library.theiet.org/content/books/10.1049/pbte090e_ch12">https://digital-library.theiet.org/content/books/10.1049/pbte090e_ch12</uri>.</mixed-citation></ref>
<ref id="ref-8"><label>[8]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>S.</given-names> <surname>Vetha</surname></string-name> and <string-name><given-names>K. V.</given-names> <surname>Devi</surname></string-name></person-group>, &#x201C;<article-title>A trust-based hyervisor framework for preventing DDoS attacks in cloud</article-title>,&#x201D; <source>Concurrency and Computation: Practice and Experience</source>, vol. <volume>33</volume>, pp. <fpage>32</fpage>&#x2013;47, <year>2019</year>.</mixed-citation></ref>
<ref id="ref-9"><label>[9]</label><mixed-citation publication-type="web"><person-group person-group-type="author"><string-name><given-names>K.</given-names> <surname>Nishizuka</surname></string-name>, <string-name><given-names>L.</given-names> <surname>Xia</surname></string-name> and <string-name><given-names>J.</given-names> <surname>Xia</surname></string-name></person-group>, &#x201C;<article-title>Inter-domain cooperative DDOS protection mechanism</article-title>,&#x201D; <year>July 2016</year>. [Online]. Available: <uri xlink:href="https://tools.ietf.org/html/draft-nishizuka-dots-inter-domain-mechanism-02">https://tools.ietf.org/html/draft-nishizuka-dots-inter-domain-mechanism-02</uri>.</mixed-citation></ref>
<ref id="ref-10"><label>[10]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><surname>Akamai</surname></string-name></person-group>, &#x201C;<article-title>How to protect against DDoS attacks-stop denial of service</article-title>,&#x201D; <year>2017</year>. [Online]. Available: <uri xlink:href="https://www.akamai.com/us/en/resources/protect-against-ddos-attacks.jsp">https://www.akamai.com/us/en/resources/protect-against-ddos-attacks.jsp</uri>.</mixed-citation></ref>
<ref id="ref-11"><label>[11]</label><mixed-citation publication-type="web"><person-group person-group-type="author"><collab>CloudFare</collab></person-group>, &#x201C;<article-title>Cloudflare advanced DDoS protection</article-title>,&#x201D; <year>2016</year>. [Online]. Available: <uri xlink:href="https://www.cloudflare.com/static/media/pdf/cloudflare-whitepaper-ddos.pdf">https://www.cloudflare.com/static/media/pdf/cloudflare-whitepaper-ddos.pdf</uri>.</mixed-citation></ref>
<ref id="ref-12"><label>[12]</label><mixed-citation publication-type="conf-proc"><person-group person-group-type="author"><string-name><given-names>B. B.</given-names> <surname>Gupta</surname></string-name> and <string-name><given-names>C.</given-names> <surname>Chaturvedi</surname></string-name></person-group>, &#x201C;<article-title>Software defined networking (SDN) based secure integrated framework against distributed denial of service (DDoS) attack in cloud environment</article-title>,&#x201D; in <conf-name>2019 Int. Conf. on Communication and Electronics Systems (ICCES)</conf-name>, <conf-loc>Coimbatore, India</conf-loc>, pp. <fpage>1310</fpage>&#x2013;<lpage>1315</lpage>, <year>2019</year>.</mixed-citation></ref>
<ref id="ref-13"><label>[13]</label><mixed-citation publication-type="other"><person-group person-group-type="author"><string-name><given-names>V.</given-names> <surname>Kansal</surname></string-name> and <string-name><given-names>M.</given-names> <surname>Dave</surname></string-name></person-group>, &#x201C;<article-title>Proactive DDoS attack mitigation in cloud-fog environment using moving target defense</article-title>,&#x201D; <comment>arXiv preprint arXiv:2012.01964</comment>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-14"><label>[14]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>R.</given-names> <surname>Saxena</surname></string-name> and <string-name><given-names>S.</given-names> <surname>Dey</surname></string-name></person-group>, &#x201C;<article-title>DDoS attack prevention using collaborative approach for cloud computing</article-title>,&#x201D; <source>Cluster Computing</source>, vol. <volume>23</volume>, no. <issue>2</issue>, pp. <fpage>1329</fpage>&#x2013;<lpage>1344</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-15"><label>[15]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>T. R.</given-names> <surname>Gadekallu</surname></string-name>, <string-name><given-names>Q. V.</given-names> <surname>Pham</surname></string-name> and <string-name><given-names>D. C.</given-names> <surname>Nguyen</surname></string-name></person-group>, &#x201C;<article-title>Blockchain for edge of things: Applications, opportunities, and challenges</article-title>,&#x201D; <source>IEEE Internet of Things Journal</source>, vol. <volume>9</volume>, pp. <fpage>964</fpage>&#x2013;<lpage>988</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-16"><label>[16]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>B.</given-names> <surname>Prabadevi</surname></string-name>, <string-name><given-names>N.</given-names> <surname>Deepa</surname></string-name> and <string-name><given-names>Q. V.</given-names> <surname>Pham</surname></string-name></person-group>, &#x201C;<article-title>Toward blockchain for edge-of-things: A new paradigm, opportunities, and future directions</article-title>,&#x201D; <source>IEEE Internet of Things Magazine</source>, vol. <volume>4</volume>, pp. <fpage>102</fpage>&#x2013;<lpage>108</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-17"><label>[17]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>W.</given-names> <surname>Zhang</surname></string-name>, <string-name><given-names>Y.</given-names> <surname>Wu</surname></string-name> and <string-name><given-names>X.</given-names> <surname>Wu</surname></string-name></person-group>, &#x201C;<article-title>A survey of intel SGX and its applications</article-title>,&#x201D; <source>Frontiers of Computer Science</source>, vol. <volume>15</volume>, pp. <fpage>153808</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-18"><label>[18]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>B.</given-names> <surname>Bordel</surname></string-name>, <string-name><given-names>R.</given-names> <surname>Alcarria</surname></string-name>, <string-name><given-names>D.</given-names> <surname>Mart&#x00ED;n</surname></string-name> and <string-name><given-names>&#x00C1;.</given-names> <surname>S&#x00E1;nchez-Picot</surname></string-name></person-group>, &#x201C;<article-title>Trust provision in the internet of things using transversal blockchain networks</article-title>,&#x201D; <source>Intelligent Automation &#x0026; Soft Computing</source>, vol. <volume>25</volume>, no. <issue>1</issue>, pp. <fpage>155</fpage>&#x2013;<lpage>170</lpage>, <year>2019</year>.</mixed-citation></ref>
<ref id="ref-19"><label>[19]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>K.</given-names> <surname>Miyachi</surname></string-name> and <string-name><given-names>T. K.</given-names> <surname>Mackey</surname></string-name></person-group>, &#x201C;<article-title>hOCBS: A privacy-preserving blockchain framework for healthcare data leveraging an on-chain and off-chain system design</article-title>,&#x201D; <source>Information Processing &#x0026; Management</source>, vol. <volume>58</volume>, no. <issue>3</issue>, pp. <fpage>102535</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-20"><label>[20]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>G.</given-names> <surname>Manogaran</surname></string-name>, <string-name><given-names>S.</given-names> <surname>Mumtaz</surname></string-name> and <string-name><given-names>C.</given-names> <surname>Mavromoustakis</surname></string-name></person-group>, &#x201C;<article-title>Artificial intelligence and blockchain-assisted offloading approach for data availability maximization in edge nodes</article-title>,&#x201D; <source>IEEE Transactions on Vehicular Technology</source>, vol. <volume>70</volume>, no. <issue>3</issue>, pp. <fpage>2404</fpage>&#x2013;<lpage>2412</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-21"><label>[21]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>B. L.</given-names> <surname>Nguyen</surname></string-name>, <string-name><given-names>E. L.</given-names> <surname>Lydia</surname></string-name>, <string-name><given-names>M.</given-names> <surname>Elhoseny</surname></string-name>, <string-name><given-names>I. V.</given-names> <surname>Pustokhina</surname></string-name>, <string-name><given-names>D. A.</given-names> <surname>Pustokhin</surname></string-name> <etal>et al.,</etal></person-group> &#x201C;<article-title>Privacy preserving blockchain technique to achieve secure and reliable sharing of IoT data</article-title>,&#x201D; <source>Computers, Materials &#x0026; Continua</source>, vol. <volume>65</volume>, no. <issue>1</issue>, pp. <fpage>87</fpage>&#x2013;<lpage>107</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-22"><label>[22]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>A.</given-names> <surname>Lucas</surname></string-name>, <string-name><given-names>D.</given-names> <surname>Geneiatakis</surname></string-name> and <string-name><given-names>Y.</given-names> <surname>Soupionis</surname></string-name></person-group>, &#x201C;<article-title>Blockchain technology applied to energy demand response service tracking and data sharing</article-title>,&#x201D; <source>Energies</source>, vol. <volume>14</volume>, no. <issue>7</issue>, pp. <fpage>1</fpage>&#x2013;<lpage>17</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-23"><label>[23]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>G.</given-names> <surname>Sun</surname></string-name>, <string-name><given-names>S.</given-names> <surname>Bin</surname></string-name>, <string-name><given-names>M.</given-names> <surname>Jiang</surname></string-name>, <string-name><given-names>N.</given-names> <surname>Cao</surname></string-name>, <string-name><given-names>Z.</given-names> <surname>Zheng</surname></string-name> <etal>et al.,</etal></person-group> &#x201C;<article-title>Research on public opinion propagation model in social network based on blockchain</article-title>,&#x201D; <source>Computers, Materials &#x0026; Continua</source>, vol. <volume>60</volume>, no. <issue>3</issue>, pp. <fpage>1015</fpage>&#x2013;<lpage>1027</lpage>, <year>2019</year>.</mixed-citation></ref>
<ref id="ref-24"><label>[24]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>H.</given-names> <surname>Wang</surname></string-name>, <string-name><given-names>D.</given-names> <surname>He</surname></string-name> and <string-name><given-names>J.</given-names> <surname>Yu</surname></string-name></person-group>, &#x201C;<article-title>RDIC: A blockchain-based remote data integrity checking scheme for IoT in 5G networks</article-title>,&#x201D; <source>Journal of Parallel and Distributed Computing</source>, vol. <volume>152</volume>, no. <issue>12</issue>, pp. <fpage>1</fpage>&#x2013;<lpage>10</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-25"><label>[25]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>J.</given-names> <surname>Wang</surname></string-name>, <string-name><given-names>W.</given-names> <surname>Chen</surname></string-name>, <string-name><given-names>L.</given-names> <surname>Wang</surname></string-name>, <string-name><given-names>R. S.</given-names> <surname>Sherratt</surname></string-name>, <string-name><given-names>O.</given-names> <surname>Alfarraj</surname></string-name> <etal>et al.,</etal></person-group> &#x201C;<article-title>Data secure storage mechanism of sensor networks based on blockchain</article-title>,&#x201D; <source>Computers, Materials &#x0026; Continua</source>, vol. <volume>65</volume>, no. <issue>3</issue>, pp. <fpage>2365</fpage>&#x2013;<lpage>2384</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-26"><label>[26]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>T.</given-names> <surname>Veeramakali</surname></string-name>, <string-name><given-names>R.</given-names> <surname>Siva</surname></string-name> and <string-name><given-names>B.</given-names> <surname>Sivakumar</surname></string-name></person-group>, &#x201C;<article-title>An intelligent internet of things-based secure healthcare framework using blockchain technology with an optimal deep learning model</article-title>,&#x201D; <source>The Journal of Supercomputing Volume</source>, vol. <volume>77</volume>, pp. <fpage>9576</fpage>&#x2013;<lpage>9596</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-27"><label>[27]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>M. H.</given-names> <surname>Chinaei</surname></string-name>, <string-name><given-names>H. H.</given-names> <surname>Gharakheili</surname></string-name> and <string-name><given-names>V.</given-names> <surname>Sivaraman</surname></string-name></person-group>, &#x201C;<article-title>Optimal witnessing of healthcare IoT data using blockchain logging contract</article-title>,&#x201D; <source>IEEE Internet of Things Journal</source>, vol. <volume>8</volume>, no. <issue>12</issue>, pp. <fpage>10117</fpage>&#x2013;<lpage>10130</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-28"><label>[28]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>A. H.</given-names> <surname>Lone</surname></string-name> and <string-name><given-names>R. N.</given-names> <surname>Mir</surname></string-name></person-group>, &#x201C;<article-title>Applicability of blockchain smart contracts in securing internet and IoT: A systematic literature review</article-title>,&#x201D; <source>Computer Science Review</source>, vol. <volume>39</volume>, no. <issue>1</issue>, pp. <fpage>100360</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-29"><label>[29]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>V.</given-names> <surname>Jain</surname></string-name>, <string-name><given-names>B.</given-names> <surname>Kumar</surname></string-name></person-group>, &#x201C;<article-title>Combinatorial auction based multi-task resource allocation in fog environment using blockchain and smart contracts</article-title>,&#x201D; <source>Peer-to-Peer Networking and Applications</source>, vol. <volume>14</volume>, pp. <fpage>3124</fpage>&#x2013;<lpage>3142</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-30"><label>[30]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>R. A.</given-names> <surname>Ziar</surname></string-name>, <string-name><given-names>S.</given-names> <surname>Irfanullah</surname></string-name> and <string-name><given-names>W. U.</given-names> <surname>Khan</surname></string-name></person-group>, &#x201C;<article-title>Privacy preservation for on-chain data in the permission less blockchain using symmetric key encryption and smart contract</article-title>,&#x201D; <source>Mehran University Research Journal of Engineering and Technology</source>, vol. <volume>40</volume>, no. <issue>2</issue>, pp. <fpage>305</fpage>&#x2013;<lpage>313</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-31"><label>[31]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>J.</given-names> <surname>Xu</surname></string-name>, <string-name><given-names>H.</given-names> <surname>Liu</surname></string-name> and <string-name><given-names>Q.</given-names> <surname>Han</surname></string-name></person-group>, &#x201C;<article-title>Blockchain technology and smart contract for civil structural health monitoring system</article-title>,&#x201D; <source>Computer-Aided Civil and Infrastructure Engineering</source>, vol. <volume>36</volume>, no. <issue>10</issue>, pp. <fpage>1288</fpage>&#x2013;<lpage>1305</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-32"><label>[32]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>A.</given-names> <surname>Lakhan</surname></string-name>, <string-name><given-names>M. A.</given-names> <surname>Mohammed</surname></string-name> and <string-name><given-names>A. N.</given-names> <surname>Rashid</surname></string-name></person-group>, &#x201C;<article-title>Smart-contract aware ethereum and client-fog-cloud healthcare system</article-title>,&#x201D; <source>Sensors</source>, vol. <volume>21</volume>, no. <issue>12</issue>, pp. <fpage>4093</fpage>&#x2013;<lpage>4113</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-33"><label>[33]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>G.</given-names> <surname>Estevam</surname></string-name>, <string-name><given-names>L. M.</given-names> <surname>Palma</surname></string-name> and <string-name><given-names>R. S.</given-names> <surname>Luan</surname></string-name></person-group>, &#x201C;<article-title>Accurate and decentralized timestamping using smart contracts on the ethereum blockchain</article-title>,&#x201D; <source>Information Processing &#x0026; Management</source>, vol. <volume>58</volume>, no. <issue>3</issue>, pp. <fpage>102471</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-34"><label>[34]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>Z.</given-names> <surname>Chen</surname></string-name>, <string-name><given-names>Y.</given-names> <surname>Tian</surname></string-name> and <string-name><given-names>C.</given-names> <surname>Peng</surname></string-name></person-group>, &#x201C;<article-title>An incentive-compatible rational secret sharing scheme using blockchain and smart contract</article-title>,&#x201D; <source>Sciece China. Information Sciences</source>, vol. <volume>64</volume>, no. <issue>10</issue>, pp. <fpage>106587</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-35"><label>[35]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>A. L.</given-names> <surname>Spataru</surname></string-name>, <string-name><given-names>C. P.</given-names> <surname>Pungila</surname></string-name> and <string-name><given-names>M.</given-names> <surname>Radovancovici</surname></string-name></person-group>, &#x201C;<article-title>A high-performance native approach to adaptive blockchain smart-contract transmission and execution</article-title>,&#x201D; <source>Information Processing &#x0026; Management</source>, vol. <volume>58</volume>, no. <issue>4</issue>, pp. <fpage>102561</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-36"><label>[36]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>M.</given-names> <surname>Khan</surname></string-name> and <string-name><given-names>T.</given-names> <surname>Naz</surname></string-name></person-group>, &#x201C;<article-title>Smart contracts based on blockchain for decentralized learning management system</article-title>,&#x201D; <source>SN Computer Science</source>, vol. <volume>2</volume>, no. <issue>4</issue>, pp. <fpage>1</fpage>&#x2013;<lpage>9</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-37"><label>[37]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>P.</given-names> <surname>Kamboj</surname></string-name>, <string-name><given-names>S.</given-names> <surname>Khare</surname></string-name> and <string-name><given-names>S.</given-names> <surname>Pal</surname></string-name></person-group>, &#x201C;<article-title>User authentication using blockchain based smart contract in role-based access control</article-title>,&#x201D; <source>Peer-to-Peer Networking and Applications</source>, vol. <volume>14</volume>, pp. <fpage>1</fpage>&#x2013;<lpage>16</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-38"><label>[38]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>X.</given-names> <surname>Liu</surname></string-name>, <string-name><given-names>J.</given-names> <surname>Ren</surname></string-name> and <string-name><given-names>H.</given-names> <surname>He</surname></string-name></person-group>, &#x201C;<article-title>A fast all-packets-based DDoS attack detection approach based on network graph and graph kernel</article-title>,&#x201D; <source>Journal of Network and Computer Applications</source>, vol. <volume>185</volume>, no. <issue>2</issue>, pp. <fpage>103079</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-39"><label>[39]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>G.</given-names> <surname>Amaizu</surname></string-name>, <string-name><given-names>C. I.</given-names> <surname>Nwakanma</surname></string-name> and <string-name><given-names>S.</given-names> <surname>Bhardwaj</surname></string-name></person-group>, &#x201C;<article-title>Composite and efficient DDoS attack detection framework for B5G networks</article-title>,&#x201D; <source>Computer Networks</source>, vol. <volume>188</volume>, no. <issue>1</issue>, pp. <fpage>107871</fpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-40"><label>[40]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>J.</given-names> <surname>Cui</surname></string-name>, <string-name><given-names>M.</given-names> <surname>Wang</surname></string-name> and <string-name><given-names>Y.</given-names> <surname>Luo</surname></string-name></person-group>, &#x201C;<article-title>DDoS detection and defense mechanism based on cognitive-inspired computing in SDN</article-title>,&#x201D; <source>Internet Technology Letters</source>, vol. <volume>97</volume>, pp. <fpage>275</fpage>&#x2013;<lpage>283</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-41"><label>[41]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>S.</given-names> <surname>Yu</surname></string-name>, <string-name><given-names>J.</given-names> <surname>Zhang</surname></string-name> and <string-name><given-names>J.</given-names> <surname>Liu</surname></string-name></person-group>, &#x201C;<article-title>A cooperative DDoS attack detection scheme based on entropy and ensemble learning in SDN</article-title>,&#x201D; <source>EURASIP Journal on Wireless Communications and Networking</source>, vol. <volume>90</volume>, pp. <fpage>1</fpage>&#x2013;<lpage>10</lpage>, <year>2021</year>.</mixed-citation></ref>
<ref id="ref-42"><label>[42]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>T. R.</given-names> <surname>Gadekallu</surname></string-name>, <string-name><given-names>M. K.</given-names> <surname>Manoj</surname></string-name> and <string-name><given-names>K. S.</given-names> <surname>Sivarama</surname></string-name></person-group>, &#x201C;<article-title>Blockchain based attack detection on machine learning algorithms for IoT based E-health applications</article-title>,&#x201D; <source>IEEE Internet of Things Magazine</source>, vol. <volume>4</volume>, pp. <fpage>30</fpage>&#x2013;<lpage>33</lpage>, <year>2020</year>.</mixed-citation></ref>
<ref id="ref-43"><label>[43]</label><mixed-citation publication-type="conf-proc"><person-group person-group-type="author"><string-name><given-names>B.</given-names> <surname>Rodrigues</surname></string-name>, <string-name><given-names>T.</given-names> <surname>Bocek</surname></string-name> and <string-name><given-names>A.</given-names> <surname>Lareida</surname></string-name></person-group>, &#x201C;<article-title>A Blockchain-based architecture for collaborative DDoS mitigation with smart contracts</article-title>,&#x201D; in <conf-name>IFIP Int. Conf. on Autonomous Infrastructure, Management and Security</conf-name>, <conf-loc>Zurich, Switzerland</conf-loc>, vol. <volume>10356</volume>, pp. <fpage>16</fpage>&#x2013;<lpage>29</lpage>, <year>2017</year>.</mixed-citation></ref>
<ref id="ref-44"><label>[44]</label><mixed-citation publication-type="journal"><person-group person-group-type="author"><string-name><given-names>J.</given-names> <surname>Cheng</surname></string-name>, <string-name><given-names>J.</given-names> <surname>Li</surname></string-name> and <string-name><given-names>N.</given-names> <surname>Xiong</surname></string-name></person-group>, &#x201C;<article-title>Lightweight mobile clients privacy protection using trusted execution environments for blockchain</article-title>,&#x201D; <source>Computers, Materials &#x0026; Continua</source>, vol. <volume>65</volume>, no. <issue>3</issue>, pp. <fpage>2247</fpage>&#x2013;<lpage>2262</lpage>, <year>2020</year>.</mixed-citation></ref>
</ref-list>
</back>
</article>