A Sybil attack is a type of security threat in which a single malicious actor creates a large number of fake identities (nodes, accounts, or wallets) to gain disproportionate influence over a decentralised network. The term comes from the 1973 book Sybil, about a person with multiple personality disorder. In a blockchain context, Sybil attacks can be used to manipulate consensus, game reward systems, distort governance votes, overwhelm peer-to-peer networks, or game airdrop and token distribution campaigns. Because public blockchains are permissionless — anyone can create unlimited wallets for free — Sybil resistance is a fundamental design challenge.

How blockchains defend against Sybil attacks: Proof of Workmining is costly in energy and hardware, making it expensive to control a majority of nodes; Proof of Stake — influence requires staking real capital; creating thousands of fake validators doesn’t help if each has negligible stake; Proof of Personhood / KYCprojects like Worldcoin use biometrics to verify each participant is a unique human; Social graph analysis — Gitcoin Passport and similar tools score identities based on on-chain history, social connections, and verified credentials to assess Sybil probability; CAPTCHA and rate limits — used by centralised airdrop campaigns. Despite defences, Sybil farming is endemic in crypto — users routinely spin up hundreds of wallets to maximise airdrop allocations, and protocols must increasingly use sophisticated on-chain analysis to identify and exclude farmers. This tension between open access and Sybil resistance shapes much of DeFi’s governance and distribution design.

Example: Before a major DeFi protocol’s airdrop snapshot, automated bots create 50,000 wallets and each performs the minimum qualifying interactions. The protocol loses millions in tokens to Sybil farmers rather than genuine users.

Learn more: Gitcoin Passport — Sybil Resistance

Dr Steve