|
From: | Jeff Burdges |
Subject: | Re: ECDSA attack |
Date: | Tue, 7 Mar 2023 19:04:45 +0100 |
There is much effort to have snark friendly hash functions, but they wind up being fairly algebraic. I think this says that they might not be secure random oracles for signatures. I doubt it'd work, but one could try to break MuSig-DN with these ideas. Jeff
[Prev in Thread] | Current Thread | [Next in Thread] |