[Cryptography] Proof-of-Satoshi fails Proof-of-Proof.

Tony Arcieri bascule at gmail.com
Fri May 6 22:25:25 PDT 2016


On Fri, May 6, 2016 at 12:06 PM, Ron Garret <ron at flownet.com> wrote:

> > But with all forms of DH based signatures, a random number is generated
> and that affects the signature value. In effect, every signature has a salt
> value.


Interesting sidebar: ECDSA nonces were one of the sources of Bitcoin's
transaction malleability. The (massive pile of hacks that is) segregated
witness feature being added to Bitcoin has an added side effect of removing
signatures from the hash of a transaction, and with it the associated
malleability.

All that said, if you're designing a new system today, pick Ed25519.

-- 
Tony Arcieri
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: text/html
Size: 1039 bytes
Desc: not available
URL: <https://lists.cpunks.org/pipermail/cypherpunks/attachments/20160506/4b3059ae/attachment-0002.txt>


More information about the cypherpunks mailing list