Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Ensure that FROST shares don't have small-order components #61

Open
str4d opened this issue Mar 3, 2021 · 1 comment
Open

Ensure that FROST shares don't have small-order components #61

str4d opened this issue Mar 3, 2021 · 1 comment
Assignees
Labels

Comments

@str4d
Copy link
Contributor

str4d commented Mar 3, 2021

If a signing party includes a small-order component in their share such that ak is generated with a small-order component, then every rk (for every transaction signed with that ak) will have the same small-order component, enabling those transactions to be linked (to within 1-in-7, but that is still a big hit to spend unlinkability).

@chelseakomlo
Copy link
Contributor

@str4d we have some new people joining Zcash and working on FROST, so can you please specify notation here? Specifically ak and rk.

@dconnolly dconnolly self-assigned this May 20, 2021
@ftm1000 ftm1000 assigned chelseakomlo and unassigned upbqdn Mar 22, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

4 participants