Ok, so @pbarreto has sort of convinced me that Satoshi Nakamoto made a very poor choice of elliptic curve.
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@bascule@matthew_d_green@pbarreto@JacksDismay What’s wrong with Curve25519? -
@tqbf@matthew_d_green@pbarreto@JacksDismay but the larger issue, of course, is that Ed25519 has ready-made DSA by@hashbreaker himself -
@bascule@matthew_d_green@pbarreto@JacksDismay@hashbreaker You can’t use r=H(x,M) to do deterministic signatures over any curve? -
@tqbf@bascule@pbarreto@JacksDismay You totally can. That's why EdDSA is so confusing. It's deterministic, but other stuff too. -
@tqbf@bascule@pbarreto@JacksDismay It's simultaneously a different signature (Schnorr), deterministic, PLUS it uses a special curve. -
@matthew_d_green@tqbf@pbarreto@JacksDismay and now@hashbreaker is moving on to Curve3617 ;) -
@bascule@matthew_d_green@pbarreto@JacksDismay I like him too, but...
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.