I like you am too busy to pursue this. And if my hunch is correct, one needs significant hashing power to exploit it, which I don't have. Plus I don't want to create animosity with the developers, because I am hoping they will work with me in the future. I do appreciate your efforts and hope to be the beneficiary of your audit in the future.
Note he didn't confirm my hunch. There is also a possible antithetical meaning to the above post.
I intended to leave the forum for a while to get some work done, so the AnonyMint account was closed and I am happy for that. Because talk is cheap. And the silly arguing we were doing wasn't productive or had reached diminishing returns, especially compared to possible value I could create by coding and not talking. Or at least I wanted to not throw my reputation around because I am in support of the notion that the best code should win, not the best control over public opinion (yeah I wee bit annoyed that Monero tries to win with control over public opinion rather than not bashing the other CN coins and simply out innovating them and let their code speak for itself. And also a little bit annoyed that animorex and rpietila annoint the winner of altcoin innovation without seeing all the innovation and also with their limited understanding of the detailed issues involved. I am also guilty somewhat which is another reason to terminate AnonyMint. At the end of the day, we all need any innovations any one can do, and simply buying or earning bounties on that coin which is the most innovative will make us all rich so we don't need to get too overly aggressive on the public opinion battles.). I am in full support of any innovation that any altcoins can accomplish because I believe there are ominous threats to our human freedom on the near-term horizon which outweigh any of my personal desires for gain. For example, I am very interested in any exploit against one-time ring signatures, since I contemplated using them in an anonymity toolset. Notwithstanding though I would also like to make some money in this space and I trust myself to bring about the necessary innovations more than I trust any other developer or group of developers that I am aware of in this space. But if another development group leaps forward and proves me wrong, I might just have to join them. However, honestly I don't know too well TacoTime's (at al) capabilities or what they have in mind for the near-term future. I am enticed back to this thread because some people who I think would be my angel investors (even if they don't know it) are also investors in XMR and BBR, thus I don't want them to lose the money that I am hoping they will invest on my efforts if ever I get there. Thus I want to try to ascertain whether there is any risk here on BCX's allegation. In short, if something is really important for the future of altcoins, I am drawn back to post.
Note I continue to get further evidence that jl777 doesn't have a deep grasp of the technology. Or at least some areas are not within his realm of expertise. I haven't looked at his code, and prolific coders can be extremely helpful if you keep them away from core things they don't understand well. Note I don't claim to be omniscient or to not make mistakes. And I don't claim to be better at cryptography than gmaxell and other core Bitcoin developers. I am a recent autodidact on cryptography and I am a generalist. So I have some distinct disadvantages, but I also have some creative freedom they may not have.
I learned in this thread that gmaxell (and Adam Beck?) semi-regularly communicate with the Monero developers. Well he thinks I am an idiot, so you have a strong ally I would probably never attain. Closing AnonyMint and stop fighting with the smart developers is a wise step on my part.
Are we affected of what ? He didn't say anything concrete. Atm it looks like classic FUD, because i can't see any other goal behind this post.
But still, it always possible to have flaws - with this post or without it, we should keep attention carefully.
yep, I think the same, I also find funny that the "coin killer" exploit harms Monero anonymity, sounds like the perfect FUD, either way I hope he will work with the dev team for a win win scenario, instead of more hate.
conveniently he says there is a workaround to this unlikely result that just happens to require losing the anonymity
however, it also seems unlikely that losing anonymity will solve any wallet stealing
without any specifics, this is artful FUD, especially with the "under the right conditions" part
It might almost be possible to prove that a local wallet cannot be stolen externally via the blockchain unless the encryption of the wallet is cracked and that the wallet contents are somehow able to be transferred to the attacker! I can see the theoretical possibility of unspent funds being spent without the wallet, which is what happened to XCP. Still for someone to be making such claims, he is either the top cryptonote dev in the world or it is FUD
There isnt an API call that allows the transmission of your wallet is there? Without this and also the ability to crack the encryption of the wallet, this is not very convincing FUD to me. It has nice tech terms to scare non-tech peoples, but unless his "right conditions" includes a computer that is infected with a keylogger the claims seem quite impossible. I await to be corrected with some actual specifics on even the theoretical method of wallet stealing that is possible without an already compromised computer. In that case, all coins, bitcoin included, are victim to the same exploit.
I know of an exploit for USD (or any currency) that allows all your accounts to be drained under the right conditions.
James