Reviewed Aug 2026
DE
BA-08 · LESSON 08

Attacks and security budget

KEY DEFINITIONS

Terms used in this lesson

Proof-of-work target
The maximum header-hash value accepted for a block; lowering it makes valid hashes harder to find.
Block subsidy
New bitcoin that consensus permits a block's coinbase transaction to create at a particular height.
Hash rate
The number of mining hash attempts performed per second.
UTXO
Unspent transaction output: one discrete chunk of bitcoin that can be used as a transaction input.

Double-spends, selfish mining, censorship, pool concentration, and fee-market uncertainty require economic analysis.

65 min Difficulty 2/5 Not started

Loading lesson visuals...

01

Learn the idea

Mining attacks exploit transaction ordering, temporary chain replacement, or concentrated control. A double-spend replaces a payment history, selfish mining withholds blocks to gain strategic advantage, and censorship excludes selected transactions. The security budget is miner revenue available from subsidy and fees, but attack cost also depends on hardware, energy, market liquidity, duration, and defensive response.

GUIDED EXPLANATION1/5 ideas inspected
1

Define the attack goal

Stealing through a reorg, delaying transactions, gaining excess rewards, or disrupting confidence require different resources and success measures.

Inspect each idea before the worked example.
The worked example follows the explanation

Inspect every idea above to open it.

Important distinctionControlling more than half of hash rate lets an attacker steal arbitrary UTXOs or change the supply limit.

Majority hash power can reorganize and censor within valid rules. It cannot create valid signatures for others or make invalid blocks acceptable to unchanged nodes.

02
FINISH LEARNING FIRST

The questions unlock after every required learning activity

Inspect every guided idea, open the worked example, rebuild its mechanism, and complete the deterministic lesson tool. Your progress is saved automatically.