Cointime

Download App
iOS & Android

MetaMask and Laconic Launch MobyMask Light Client

MobyMask, a new initiative from the MetaMask team to help proactively protect users from phishing, uses a dynamic web of trust for sourcing phishing reporters

Today crypto-phishing is out of control; it has become the domain of extremely professional organizations targeting many innocent people who are trying to participate in new forms of digital ownership with crypto.

You may have previously read about MobyMask, a new initiative from the MetaMask team to help proactively protect users from phishing, using a dynamic web of trust for sourcing phishing reporters.

That original version of MobyMask made it possible for any reporter to invite (or revoke invitations) for additional reporters, as well as submit (or clear) phishing reports. That first version had three major shortcomings:

Because every report is on the blockchain, in order to benefit from the safety benefits of the list, each user needs access to a full node, and must trust that full node with whatever they want to be kept safe from: twitter users, websites, anything. This was not great for privacy.

Because every report is on the blockchain, it costs some crypto to file every phishing report, which is not ideal. The phishers are clearly phishing cheaply, and so reporting them must also be cheap.

Because every report is on the blockchain, the average wallet is not keeping a local copy of the phishing list, and is unable to participate in helping keep their network peers safer.

In that article, I mentioned how I hoped those problems could be addressed by some kind of truly peer-to-peer light client network that enabled users to help directly share select portions of the blockchain that are relevant to them (in this case, the phishing list). I mentioned Laconic at that time, which was still operating in stealth mode, so most people didn’t know how it might relate.

Today I’m excited to announce that Laconic is coming out of stealth mode, and they chose MobyMask as a first demonstration of the power of their system.

Laconic is premiering today and launching a special MobyMask-caching Ethereum light client, which greatly reduces the cost for an individual or organization to host a trustworthy copy of the MobyMask anti-phishing registry. This creates a lightweight server process from which web services like MetaMask, WalletGuard, and Phishfort can start drawing their MobyMask phishing detection data, in a way that is easier for anyone to self-host.

Laconic is also working on a TypeScript version of their Watcher, which makes it possible for the list caching and peer-to-peer replication of that data to happen entirely from the browser.

In another future update, Laconic will also make it possible for users to gossip “counterfactual” phishing reports, which will allow phishing reports to have no cost to the reporter. These messages will be shared between peers, but will be fully provable on-chain, and the blockchain will only be needed for resolving conflicts in the registry and revoking access to reporters.

People running the MobyMask watcher client will both contribute to a more phisher resistant web, and gain access to a private API for looking up phishing reports, which they can then share as they like, either at no cost or for a fee.

While the initial version is a web of trust rooted within the MetaMask team (and reporters are invite-only, so there is currently no way for just anyone to start reporting), we aim to eventually allow users to subscribe to any number of roots of trust for reporting phishers, eventually allowing every user to be their own root of trust for sharing or sourcing phishing information, and eventually a similar system can work for verifying credible sources of other kinds of information, too (yes, that’s a big goal!).

In its final phase, we hope that any user who wants to will be able to run a “watcher” as part of their own wallet, and so the server costs will become effectively none, while the benefits are fully mutually beneficial among those participating.

In Historical Context

At MetaMask, this is a very special day for us. At our first ever team retreat, a number of our team members (including Aaron Davis, Herman Junge, and Dmitry Ryajov) had a vision and kicked off a very similar project we called Mustekala. That work eventually stopped for various reasons, but we’ve long known that letting users cache state for the contracts they care about is a missing ingredient in allowing smart contracts to more fully decentralize.

In my office, I still have the original notepad sheet that the Mustekala team filled out when first forming the concept. It was a wonderful time, a great idea, and has remained out of reach until now.

At Laconic, Rick Dudley and his team have spent the last six years doing the hard work of building a special fork of Go-Ethereum (geth) that serves the Ethereum data in the IPLD format, which makes it cheap and efficient for clients to request proofs of blocks of storage, so they can peer gossip it, as well as the client side code that enables clients to gossip incomplete “slices” of the blockchain state, and exposes that state via a GraphQL API. It’s hard to overstate what an achievement this is for bringing down the computational cost of privacy, scalable data distribution, and also speed of data lookups for users who repeatedly use the same contracts but don’t necessarily run their own full node.

Get Started Today

If you want to try out MobyMask, you can head to mobymask.com. If you’d like to try out self-hosting an IPLD-gossiping fork of geth, you can get started using this guide from Laconic here. If you’d like to build a browser-based application that draws from the Laconic MobyMask network, you can monitor progress on the mobymask-watcher here.

If you’re a developer who’d like to try setting up Laconic to help gossip and distribute access to another smart contract, you can follow the Laconic docs here.

If we’re going to build anything of value out of decentralized technology, we need to basically eliminate phishing from the equation. It’s going to take a lot of our creativity and ingenuity to put it all together, and we’re happy that Laconic and the Delegatable framework combine so well to create a highly scalable and privacy-preserving application whose safety remains rooted on the blockchain.

Comments

All Comments

Recommended for you

  • 2024 Q1 On-Chain Report: USDT Market Value Exceeds $100 Billion for the First Time

    On April 19th, Artemis, a blockchain analysis platform, and QuickNode, a blockchain development platform, released their Q1 2024 on-chain report. The market value of USDT exceeded $100 billion for the first time, and the number of transactions processed in Q1 was more than 10 times that of USDC. Stablecoins still occupy the top spot in address activity, while DeFi transactions have surpassed stablecoins. The TVL of DeFi yield generation protocols increased from $26.5 billion in Q3 2023 to $59.7 billion in Q1 2024. The number of transactions in Web3 games increased by 370% YoY, making it the category with the highest YoY growth in the Web3 industry. User activity on decentralized social networks increased by 425% in Q1. Solana NFT activity surged, with Tensor surpassing OpenSea in active addresses. The total Web3 investment increased by 55% compared to Q4 2023, with seed round investment increasing by 53% QoQ.

  • Insider: CZ giving up voting control of Binance FZE is the final step to obtain Dubai VASP license

    Binance recently obtained a comprehensive cryptocurrency license in Dubai, which is the result the company has been seeking for a long time. The condition is that Binance co-founder Zhao Changpeng (CZ) agrees to relinquish voting control over the local entity. Binance CEO Richard Teng confirmed the news in an interview on Thursday.

  • IMF report: BTC has become a necessary financial tool to preserve wealth in times of financial instability

    A new report from the International Monetary Fund (IMF) shows that BTC is becoming an increasingly important channel for cross-border capital flows amid global financial instability. According to the IMF, residents of countries with strict financial regulations are turning to Bitcoin to transfer capital more freely across borders. The report highlights the large trading volumes from countries such as Argentina and Venezuela, whose citizens face rampant inflation and strict financial controls. In these regions, Bitcoin has become a necessary financial tool for preserving wealth and accessing global markets, rather than just a speculative investment. The report's authors state that Bitcoin transactions provide individuals in high inflation countries with a stable savings option and a way to participate in global commerce that their local currency cannot achieve.

  • Uniswap Foundation: v4-core (PoolManager) will freeze code and is expected to be deployed later this year

    The Uniswap Foundation has announced that Uniswap v4-core (PoolManager) will soon enter the code freeze period. The v4 features will be considered as complete and no longer have new features added, rebuilt, or undergo major changes (such as removing hook permissions or how to implement dynamic fees). After the code freeze, developers will be able to implement hooks, create interfaces, implement position management with other external contracts, write production-ready code without mandatory refactoring. At the same time, after the code freeze, the core contracts will enter the audit phase, and v4 is expected to be deployed later this year.

  • Only one day left until Bitcoin block reward halving

    Data shows there are still 152 blocks left until the Bitcoin block reward halves, which is approximately 1 day and 14 minutes away.

  • Fed's Kashkari: Rate cuts may have to wait until 2025

    Kashkari of the Federal Reserve stated that the resilience of the US housing market surprised him; once inflation continues to fall back to 2%, we can lower interest rates; we need to be patient and wait until we are sure that inflation is declining; it may be necessary to wait until 2025 to lower interest rates; as political heat rises, the Federal Reserve is more focused on its own mission.

  • ARKB had a net inflow of $10 million yesterday

    ARK Invest's Bitcoin spot ETF, ARKB, had a net inflow of $10 million yesterday (April 18).

  • Blast DEX Thruster receives $7.5 million in seed round funding

    The decentralized trading protocol Thruster based on Blast raised $7.5 million in seed funding led by Pantera Capital, bringing Thruster's valuation to $70 million. Angel investors include Santiago Santos, Frax founder Sam Kazemian, Pendle founder TN Lee, Stacked founder Alex Lin, Renzo founder Kratik Lodha, and Axelar founder Georgios Vlachos also participated in this round of funding.

  • Hong Kong Treasury Secretary: Will submit a draft bill on stablecoin and virtual asset over-the-counter trading services to the Legislative Council

    According to a report by Caixin, Hong Kong Financial Secretary Paul Chan Mo-po introduced the expenditure budget and work focus for the fiscal year 2024-25, stating that a variety of central bank digital currency cross-border networks (mBridge) are expected to be launched this year, with the first phase of services focusing on settling cross-border transactions for enterprises using various central bank digital currencies. In addition, the "digital renminbi" will also expand its pilot scope in Hong Kong, further improving cross-border payment efficiency and user experience. In terms of virtual assets, the government is promoting a series of measures to strengthen regulation and promote the stable and responsible development of the virtual asset market in Hong Kong. Specifically, the Hong Kong Monetary Authority launched a stablecoin sandbox in March this year, allowing institutions interested in issuing stablecoins to conduct testing within a controlled range. The government has also consulted the public on the regulation of fiat-backed stablecoin issuers and virtual asset over-the-counter trading services, and is considering the feedback received. Depending on the progress of preparatory work, the draft legislation will be submitted to the Legislative Council as soon as possible.

  • Three men and women arrested for laundering more than 1.8 billion yuan from virtual currency trading platforms and bank accounts

    Hong Kong Customs broke up a money laundering syndicate and arrested three local suspects who are suspected of using virtual currency trading platforms and multiple local bank accounts opened by companies to process over 1.8 billion yuan of funds with unknown sources. Customs officials targeted the three suspects based on intelligence and launched a wealth investigation, discovering that the three individuals conducted over 1,000 suspicious transactions between June 2021 and July 2022 through the opening of multiple local companies and bank accounts, including the transfer of funds from virtual currency trading platforms, involving more than 1.8 billion yuan.