โ† All CCA Flashcard Decks

Transactions & Verification Flashcards

7 cards from real CCA practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Transactions & Verification flashcards as text
  1. In a Bitcoin UTXO model, what happens when a transaction output is partially spent?

    Answer: A new change UTXO is created and sent back to the sender

    Bitcoin transactions consume entire UTXOs; any leftover amount is returned to the sender as a new change output (UTXO).

  2. Which script type is used in standard Bitcoin Pay-to-Public-Key-Hash (P2PKH) transactions?

    Answer: Legacy scriptPubKey with OP_DUP OP_HASH160

    P2PKH locking scripts use OP_DUP OP_HASH160 followed by the hash of the public key and OP_EQUALVERIFY OP_CHECKSIG.

  3. What is a Replace-By-Fee (RBF) transaction and its primary audit concern?

    Answer: A mechanism to replace an unconfirmed transaction with a higher fee; concern is double-spend risk

    RBF allows rebroadcasting an unconfirmed transaction with a higher fee, raising double-spend concerns before the original confirms.

  4. In Ethereum, what is the role of the 'nonce' field in a transaction?

    Answer: It prevents replay attacks and ensures transaction ordering per account

    The nonce is a sequential counter per Ethereum account that prevents replay attacks and enforces strict ordering of transactions.

  5. Which hashing algorithm does Bitcoin use to generate a transaction ID (TXID)?

    Answer: SHA-256 applied twice (double SHA-256)

    Bitcoin TXIDs are computed by applying SHA-256 twice (SHA-256d) to the serialized transaction data.

  6. What is a 'dust' transaction in cryptocurrency auditing, and why is it significant?

    Answer: A transaction output too small to spend economically, often used for tracking or spam

    Dust outputs are UTXOs below the minimum economically spendable threshold and are used in dust attacks to deanonymize wallet addresses.

  7. In a multi-signature (multisig) transaction audit, what document should an auditor review to verify the required signing threshold?

    Answer: The redeem script embedded in the P2SH or P2WSH output

    The redeem script specifies the M-of-N threshold and the participating public keys, making it the authoritative source for multisig verification.