Skip to content

Add anti-klepto to secp256k1 signing #2637

Description

@prusnak

Although Trezor code is fully open-source and builds are fully deterministic, this article provides good reason why to include the anti-klepto protocol to sec256k1 signing: https://shiftcrypto.ch/blog/how-almost-all-hardware-wallets-can-steal-your-seed/

Currently, the blocker is that this protocol currently does not support Schnorr signatures (=no Taproot), but this is to be addressed here: bitcoin-core/secp256k1#1140

Once the above issue is resolved and the code is merged into the secp256k1 we might consider adding the anti-klepto feature.

Metadata

Metadata

Assignees

No one assigned

    Labels

    T1B1 legacyTrezor OneblockedBlocked by external force, 3rd party, or a different issue/PR.coreTrezor Core firmware. Runs on Trezor Model T and Safe models.cryptoStand-alone cryptography library used by both Trezor Core and the Trezor Legacy firmwarefeatureProduct related issue visible for end user

    Type

    No type

    Projects

    Status
    No status

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions