Pages:
Author

Topic: [neㄘcash, ᨇcash, net⚷eys, or viᖚes?] Name AnonyMint's vapor coin? - page 29. (Read 95279 times)

legendary
Activity: 1008
Merit: 1007
The problem for digital currency is it doesn't enable any popular activity. And all my marketing thoughts have been about how to find killer apps for digital currency that users will clamor for.

You're looking at the problem from the wrong country. The unbanked are your users. Users who's governments are so corrupt that their national currency is basically unusable.
sr. member
Activity: 420
Merit: 262
What happens if the MSM refuses to cover Monero (or any altcoin)? Can an altcoin overcome any way?

Okay good angle.

Quote
Did Bittorrent become popular without MSM coverage?

I'm not really sure.

Quote
Is Bittorrent as popular as Bitcoin?

Bittorrent is more popular than Bitcoin by a wide margin. I've seen reports of 30 million Bittorrent nodes at times, and that does not include all users.

Thanks that is very inspirational.

What I remember is the music industry in cahoots with politicians attempting to kill off file sharing by attacking Napster and some dumb ass politicians thought they could do the same to the decentralized file sharing apps and then later became aware they wouldn't have the power to shut them down (at least not without some global control of all internet protocols).

Then the battle moved to downloaded movies with Bittorrent and the subsequent Kim Dotcom saga which is still ongoing (but looks like they will be able to extradite him to the USA although that is irrelevant to the point of our inquiry I think except it shows the elite are the ones who are one step behind a popular activity).

It seems to me that if there is a popular activity that the world's users want to do and it is decentralized such that it can't be easily regulated by the elite, then the elite are on the losing side.

Thanks! That has been my theory all along and I just wanted to check it again with others to see if I am in delusion.

Bittorrent was spreading for the same reason that VCRs spread. It enables the popular activity of archiving and sharing your favorite media.

The problem for digital currency is it doesn't enable any popular activity. And all my marketing thoughts have been about how to find killer apps for digital currency that users will clamor for. And that is why I think the marketing discussion (and thus the design of the crypto currency to address the marketing) is the most important discussion. Hey I am not trying to belittle the capabilities of the Monero developers. I wish we could all work together. The first order of business is identifying how we address the marketing issue. We need a Bittorrent movement in crypto.

The reason I have resisted just contributing to Monero is because as smart as the devs are at coding, they don't have any marketing sense. And thus they can't lead. Sorry I am not trying to ruin you all, but I can't let you ruin me by leading me in the wrong direction. And Blockstream is no better at marketing and identifying which features are important. Thus again as smart as they are, they can't lead. You will end up in endless discussions and not getting any where.

Note that XMR.to was a stroke of marketing genuis. Who ever did that should be getting more attention from us. And Shapeshift.io was even better. But still both of those haven't identified the killer app for crypto currency that we need to make the masses clamor for it. I have some ideas to try out, but they require me to do a lot of programming just to be able to test the markets. It is a lot of risk for me to take on given I am nearly bankrupt. It is a major sacrifice and I am just thinking about whether I can manage. I am leaning on moving forward and stop posting. But I am still in deep thinking and discuss mode on this first. Maybe a couple or few more days max (hopefully).

Ideally would be to join forces with other devs. But most devs (smooth included) don't want to work for free on crypto. They want something where they can see a reasonable ROI or at least where they are not coding full time (so they can sustain their larger income in their day jobs). Or perhaps they will work for free if it is their own project so they can express their desire to lead or be in that leadership role. It is difficult to figure out how to organize. Seems a leader (e.g. fluffypony) just has to do and not talk and not seek out anyone. Those who are interested chime in when they feel inclined to.

Yet again I come back to that for all the teamwork in Monero, there isn't the leadership focus on how to address a killer app for crypto (perhaps they thought originally anonymity was a killer app and that is another reason I won't follow Monero's leadership because I disagree with that marketing analysis). And the attitude seems to be "build it and wait...markets will come to us".

On top of all that, is since the focus of all altcoins are on speculators and not primarily on users, we end up with all these cat fights and inability to discuss user driven feature sets without getting mired in turf battles.
legendary
Activity: 990
Merit: 1108
If you're willing to target recent x86 exclusively, then you can increase resistance by employing the AES-NI instruction.

That is not one but rather a group of instructions. Perhaps you just typoed the missing 's'. One of those instructions was of particular focus of mine.

I wasn't sure if it was one or multiple, but was too lazy to figure out which:-(
Thanks for correcting...
sr. member
Activity: 420
Merit: 262
If you're willing to target recent x86 exclusively, then you can increase resistance by employing the AES-NI instruction.

That is not one but rather a group of instructions. Perhaps you just typoed the missing 's'. One of those instructions was of particular focus of mine.
sr. member
Activity: 420
Merit: 262
Also PoS can't distribute new coins, thus eventually the coin supply shrinks asymptotically to 0.
You are wrong here. There are PoS variants that distribute new coins.

No variants can. And the last time you debated me, I defeated you on every single point. Are we going to have to do it again?

I thought you wrote last time that you were going to be busy with your university semester beginning. I am ~51 (50.7), you are in your early 20s I presume. I have been a software developer since before you were born.

You don't defeat someone by talking wtf just discuss your shit and that's all

You missed the point. I don't have to defeat anything. The dominant stakeholders are stealing everything from you as we speak. Enjoy the ride.

And that includes Dash's masternode scheme and all of the PoS systems.

However, at this time PoW is also the same. The Chinese (professional miners) are stealing everything from Bitcoin investors (but not from Bitcoin users yet, while block rewards are still high!)

Thus the state of crypto is in crisis. So far it is a failure except some foundation work has been laid and some users have benefited from Bitcoin. Even PoS has funded some foundational work so from that standpoint I can't say it is a total failure.

I have an inkling that you really suck at politics

Yup. I will never play in that arena. It is an intentional effort to destroy politics. I detest politics with a venom. Every one of my successes was achieved without any politics whatsoever.

I believe in and want to promote meritocracy.

So all of you who are picking coins based on who is best at manipulating the others politically, I aim to destroy you. And if there is a way, I will. If there is no way, I will quit.

I may manipulate marketing wise, but not designed to siphon funds in a zero sum game. Rather to expand the pie for everyone.

What is the point of selecting a coin based on which one has the best politics?

Even if you had every single speculator from the Bitcoin universe investing in your coin, it would all be useless if you didn't have the design and marketing to gain adoption.

Bitcoin was marketed by the global elite in their MSM and they are mining you the speculators taking all your money with their zero cost mining in China.

Crypto is one big corruption to take all your money. You fools. I am trying to create a fundamental innovation and a real revolution. Just keep criticizing me and handing your money over to your slave masters.

What most intelligent people have decided is that it is much easier to play along and find a way to mine you, than to attack the much more difficult problem of a true revolution. I try against all odds and have never asked for a dime from the investing public, so therefor you don't like me because I don't want to steal your money.

Insanity.

The best design and marketing would be useless without speculators, because otherwise it will never garner the attention of most of the world's population. You include marketing, but you can't fund a sufficient marketing campaign without speculators or doing an ICO. Proper marketing is expensive.

You are apparently highly confused. I never wrote I was excluding speculators, which is in fact impossible in any coin market. You have a quite annoying bratty abrasive method for asking questions by rather asserting that you know everything.

Also, politics are necessary if a cryptocurrency has enough success. Bitcoin is finding this out now.

Bittorrent is decentralized. Bitcoin isn't. Go get an education first, then we can talk.



Edit: haven't you been slightly suspicious of why the MSM publicized Bitcoin so much. 3. That doesn't happen without the approval the global elite.

3. Maybe, maybe not. You are making an absolute statement, but I haven't seen particularly convincing evidence.

Thanks.

This is an interesting point to ponder. Could a revolutionary crypto coin succeed without the MSM (e.g. Bittorrent), or would the MSM cover something which was not helping the professional miners rape the Bitcoin investors to the tune of $300 million annually?

I think all of us are somewhat unrealistic (unless we were just here to mine the speculators).

This indeed worries me. It is difficult to justify killing myself to code in order to try to create revolution and then think it could all fail just because the MSM holds all the power.

I am not sure which way I am leaning on this issue. My gut tells me "It Is Just Time" for something revolutionary to happen. But my gut is very ill. Lol.
sr. member
Activity: 420
Merit: 262
ArticMine PMed me after I wrote that flaming post, and said he would reply after studying my posts. He has not yet replied. Does that mean I am correct and there is no solution for Monero. I think so.

It is fundamental. Afaics, you'd have to completely rewrite Moaneuro. Tongue

Rewrite Monero, is not necessary at all but some documentation on how the Cryptonote adaptive blocksize limits actually work is needed, especially given the formula in section 6.2.3 of the Cryptonote Whitepaper is wrong. https://cryptonote.org/whitepaper.pdf. My response will come in time.

I will start by examining the Cryptonote Penalty Function for oversize blocks. This is critical to understand any form of spam attack against a Cryptonote coin. From the Cryptonote whitepaper I cited above the penalty function is:

Penalty = BaseReward (BlkSize / MN - 1)2

The new reward is:

NewReward = BaseReward - Penalty

Where MN is the median of the blocksize over the last N blocks
BlkSize is the size of the current block
BaseReward is the reward as per the emission curve or where applicable the tail emission
NewReward is the actual reward paid to the miner
The Maximum allowed blocksize, BlkSize, is 2MN
The penalty is only applied when BlkSize > (1 + Bmin) MN Where 0 < Bmin < 1 In the Cryptonote whitepaper Bmin = 0.1.
 
The error in the Cryptonote Whitepaper was to set NewReward = Penalty

For simplicity I will define:
BlkSize = (1+B) MN
BaseReward = Rbase
Penalty (for a given B) = PB
NewReward (for a given B) = RB

The penalty for a given B becomes:
PB = RbaseB2
While the new reward for a given B becomes:
RB = Rbase(1 - B2)
The first derivative of PB with respect to B is
dPB / dB = 2RbaseB

In order to attack the coin by bloating the blocksize the attacker needs to cause at least over 50% of the miners to mine oversize blocks and for an expedient attack close to 100% or the miners to mine oversize blocks. This attack must be a maintained over a sustained period of time and more importantly must be maintained in order to keep the oversized blocks, since once the attack stops the blocks will fall back to their normal size.  There are essentially two options here:

1) A 51% attack. I am not going to pursue this for obvious reasons.

2) Induce the existing miners to mine oversize blocks. This is actually the more interesting case; however after cost analysis it becomes effectively a rental version of 1 above. Since the rate of change (first derivative) of PB is proportional to B the most effective option for the attacker is to run the attack with B = 1. The cost of the attack has as a lower bound Rbase but would be higher, and proportional to, Rbase  because miners will demand a substantial premium over the base reward to mine the spam blocks due to the increased risk of orphan blocks as the blocksize increases and competition from legitimate users whose cost per KB for transaction fees needed to compete with the attacker will fall as the blocksize increases. The impact on the coin is to stop new coins from being created while the attack is going on. These coins are replaced by the attacker having to buy coins on the open market in order to continue the attack. The impact of this is to further increase the costs to the attacker.

It at this point where we see the critical importance of a tail emission since if Rbase = 0 this attack has zero cost and the tragedy of the commons actually occurs. This is the critical difference between those Cryptonote coins that have a tail emission, and have solved the problem, such as Monero and those that do not, and will in a matter of time become vulnerable, such as Bytecoin.

Afaics, the above does nothing to remove/ameliorate the Tragedy of the Commons in Satoshi's mining algorithm[1], except if viewed as short-term solution while no miners have a significant percentage of the network hash rate.

The problem is that as I explained for Ethereum, as transaction rate scales up and thus the block reward is dominated by fees, then unless there is a uniform distribution of hashrate amongst all full node miners (which is of course impossible since not everyone can locate their mining equipment next to a hydropower plant with 2 - 4 cents electricity or for that matter perhaps free subsidized electricity in corrupt environs such as China), then those miners with more hashrate will have lower costs of verification. Thus they will be more profitable and can buy more hashrate faster than the other miners. Thus mining will entirely centralize over time, because the economics are designed to centralize mining. So since mining will centralize, then attaining 51% of the mining power will be guaranteed and thus the above algorithm can do nothing to stop miners from spamming the block chain size by paying transaction fees to themselves. But of course with 51% of the hashrate, they can do anything they want, except up to the limits of what public perception will tolerate. I am assuming of course that transaction fees in a free market will reflect actual (marginal) costs and that verification cost will be significant relative to other costs such as bandwidth.

There is also afaics a math flaw in ArticMine's analysis. Unless N is very small, then a miner with a significant but less than 51% hashrate is going to win a block in most every N set, and thus they can hit the 2 * MN hard limit every time (or what ever rate of increase they deem most cost effective according to the Penalty cost being a function of a square), gradually ramping the median block size up over time. Thus the spam attack is not avoided, rather it just takes longer. And again I had pointed out that by shorting the coin, they can potentially recover their lost block rewards and profit. And if N is very small, then the likelihood that a miner can win all N blocks with less than 51% hashrate increases. Also it is not clear to me from ArticMine's specification if N is overlapping meaning a FIFO queue? But I doubt that makes any difference to my conceptual math point (note I have not written down the equations to precisely quantify this alleged flaw).

Also the 2 * MN hard limit means that block chain can't handle transient spikes in transaction load, e.g. such as would be required by Lightning Networks (which has sort of a garbage collection overhead which manifests has large spikes in transaction load).

Conceptually at the highest-level semantic model of the generalized essence, an anti-aliasing filter on transaction rate can't ameliorate the fact that a spam transaction is indistinguishable from a non-spam transaction.

To solve this problem we need to make the cost of what is burned when submitting a transaction greater than the cost of cumulative network verification costs. That both solves the economics of the first paragraph above and it also removes the need to limit the block size in any artificial way other than the burn cost. But in my design, I don't waste the burn cost and instead apply it to security in the form of unprofitable mining. Note that the only way to limit culmulative network verification costs is to centralize mining. And this is why I wanted to give up, because I didn't see any solution that didn't centralize mining. But then I realized the design I had for intra-block partitions can centralize while remaining controlled by decentralized PoW, thus effectively still decentralized. And this is why I say you will have to completely rewrite Monero (at least the consensus design portion of the block chain code).

[1]I introduced this concept in 2013 in my thread Spiraling Transaction Fees and I nailed the block size as the fundamental issue in my last post in that 2013 thread.



Bumping up against the hard limit is probably wastefully expensive for this "attack"

What expense?

[...]mining equipment next to a hydropower plant with 2 - 4 cents electricity or for that matter perhaps free subsidized electricity in corrupt environs such as China[...]

You're suggesting mining is (or can be) free? That's absurd. Even if it were free, this attack still costs you the reward.

I am suggesting the State (or those corrupt who control it) can charge the cost of mining to the collective (think the Three Gorges Dam that wrecked environmental devastation downstream, upstream and derivative effects all over China). I have made this point numerous times. And apparently (after everyone said I was crazy), it came true in China and if true was a factor that enabled China to capture an estimated 67% of the mining and 51% attack Bitcoin. Documentation of these statements is in my vaporcoin thread.

If the profit from shorting is greater than the reward, then it doesn't cost you anything. The free mining cost just makes it more likely you can sustain it long enough to reap your reward. How do we know the Chinese won't milk the investors while the block reward is high (mining at near $0 cost charging it the cost to the collective) and then also profit by shorting it all the way down from $1000.

We are bunch of naive geeks who are being reamed (mined) by savvy traders and strategists. These are no different conceptually than Rothschild's and Rockefeller's methods of yore. The players and technological field change, the game remains the same. (Yeah I am crazy conspiracy theorist whose analysis is always wrong)

Edit: haven't you been slightly suspicious of why the MSM publicized Bitcoin so much. That doesn't happen without the approval the global elite.



PoS(hit) can never be secure, because if it has a functioning markets (which it must in order to be widely adopted and liquid), then one can borrow stake, attack the coin (which requires much less than 51% to for example delay transactions by some N blocks where N is a function of percentage of coin supply held), and then pay back the borrowed coin with cheaply bought coin as the price collapses due to attacks. You could simultaneously short it (i.e. which you did when you borrowed the coins, but sell some for fiat before you attack) for profits. Alternatively borrow fiat (or other cryptocoin), buy stake and short to profit and pay back loan. Also PoS can't distribute new coins, thus eventually the coin supply shrinks asymptotically to 0.

With PoW, your borrowed mining hashrate would eventually reach end of contract and the coin would repair itself. And you'd need much closer to 51% to do damage. You would hope to be able to purchase the coin at cheap prices, wait for it to rise back up and then sell it for fiat to pay back your loan. Much less plausible.

However if you are up against the corrupt State that charges cost of PoW mining to the collective, then we're screwed with profitable PoW also, except I have the idea to use the unprofitable PoW of every person's computer in the world (with latency preventing them from farming out to ASIC), which seems might be even too much of an expense for China to hide the subsidization of.
sr. member
Activity: 420
Merit: 262
Again smooth is forced to discipline the Monero Speculation thread:

Five off-topic posts were deleted. Please try to keep the thread on topic. This includes repetitive points that have already been made recently. Those are on warning that they will be deleted. If you post A, someone else disagrees with A, do not post about A again. Both sides have been presented and the reader will have to decide.


By the amount of posts you have that isn't a good sign for your cointoendallcoinsCOIN.

yeah, I'm off topic.

I already agree. And yes we are cluttering the thread now. Any more posts (that are addressing my posts) should ideally be on the facts or arguments about utility of Monero's anonymity and/or the Tragedy of the Commons around economics of mining and block size.

Or just move on to other discussion and I will stop responding.

Can you stop spamming this thread?  No one wants to read your nonsense, please stick to your own threads and if anyone is interested in discussing your musings they will surely join you there.

Smooth please delete this. I just couldn't resist ROTFLMAO:

Sorry I can't resist about the "desperate" allegation, I just was informed of a 58 year old filipino man who sexed his 78 year old mother who due to her Alzheimers thought she was sexing her deceased husband.

Can you stop spamming this thread?  No one wants to read your nonsense, please stick to your own threads and if anyone is interested in discussing your musings they will surely join you there.

Have you ever heard of the concept of self-deprecating humor?

It is known to be a way to be an outlet for stress and for (mice and) men to realize they aren't as self-important as they think they need to be.

Will you ever mature and learn to be a sociable human being?

(smooth is in a difficult political position because of assholes like you but I warned him not to involve in coins that are marketed directly to speculators)

614 pages in this thread and which major facts were elucidated? The thread is mostly noise any way.

Marketing an unfinished product for a unknown brand is suicide on a worldwide stage.

Somebody forgot to tell that to Satoshi.

(you are incorrect)
Satoshi never really tried to "market" bitcoin and at the time of his departure bitcoin was almost an unknown worldwide.

Irrelevant to my point. This is an example of a noise rebuttal.



Marketing an unfinished product for a unknown brand is suicide on a worldwide stage.

Somebody forgot to tell that to Satoshi.

(you are incorrect)
Satoshi never really tried to "market" bitcoin and at the time of his departure bitcoin was almost an unknown worldwide.

Irrelevant to my point. This is an example of a noise rebuttal.

Unfortunately you deleted a post where I added the information that I was already aware of his thought process and making it known that it is an irrelevant thought process. The point is that Bitcoin is still in beta and yet went from 10,000 BTC per pizza to $1000 per BTC due to marketing (who cares that Satoshi wasn't the one who did the marketing). And besides no one can know what Satoshi contemplated on the marketing or to what degree he has been involved behind the scenes.

Edit: Satoshi was marketing in the white paper. He pitched it as a better gold, obviously knowing what this would do to the overlap between Libertarian goldbugs and technophiles.
sr. member
Activity: 420
Merit: 262
Smooth please delete this. I just couldn't resist ROTFLMAO:

Sorry I can't resist about the "desperate" allegation, I just was informed of a 58 year old filipino man who sexed his 78 year old mother who due to her Alzheimers thought she was sexing her deceased husband.

Can you stop spamming this thread?  No one wants to read your nonsense, please stick to your own threads and if anyone is interested in discussing your musings they will surely join you there.

Have you ever heard of the concept of self-deprecating humor?

It is known to be a way to be an outlet for stress and for (mice and) men to realize they aren't as self-important as they think they need to be.

Will you ever mature and learn to be a sociable human being?

(smooth is in a difficult political position because of assholes like you but I warned him not to involve in coins that are marketed directly to speculators)

614 pages in this thread and which major facts were elucidated? The thread is mostly noise any way.
sr. member
Activity: 420
Merit: 262
And (perhaps more importantly) Ed25519 does not require a new random number on each subsequent signature, thus is deemed to less vulnerable to a faulty random number generator (or injection of virus thereof in the operating system).

Is this advantage of Ed25519 over Secp256k1 negated assuming perfect compliance in avoiding BTC address reuse (since if a faulty RNG was used the balance of the at risk address would already be 0 after every transaction)?

That perfect compliance is impossible isn't it, because how do you delete your public key from forums and other places it has been copied out-of-your-control. Don't tell me that the Bitcoin Wiki and the core devs never acknowledged this  Roll Eyes

There is a way though to get perfect compliance which I am using in my design because I use one-time Lamport/Winternitz signatures (although I could use Merkel trees for multiple signatures at the cost of a just marginally longer signature) for the 20 times faster verification speed (at the cost of an exponential blowup in bandwidth at higher bit security), but this way is not encoded in Bitcoin so can't be used there.

See the following I wrote comparing Ed25519 and hash-based signatures (some info on the performance of Ed25519 also):

https://github.com/shelby3/hashsig/blob/master/DDoS%20Defense%20Employing%20Public%20Key%20Cryptography.md#public-key-authentication

P.S. if you see any improvement in my work, it will be because of improving health. I have some signs that my high dose herbal treatments (curcumim, moringa, bitter melon, mangosteen) might be working. I believe possibly (unfortunately self-diagnosis no blood work nor doctor visit since the 2012 doctor screwed me up) my health issue is a messed up pancreas or gall bladder possibly partially blocking my bile duct which would explain why I got so ill every time after I eat.

You all have no idea what it is like to have this sort of illness. Even bending down to scratch your foot becomes chore. Lifting your fingers to type on the keyboard takes a few deep breaths to gain the energy. Thinking about code becomes a chore and not a pleasant challenge. You really don't understand until you walk in another person's shoes. Any person who knows what they were capable of throughout their life and are unable to do because of some painful and chronic disability, is going to exhibit psychological stress and will attempt to cope either by going into depression or fighting back, both being a form of abnormality and dysfunction. I hope that is enough said.


There is a way though to get perfect compliance which I am using in my design because I use one-time Lamport/Winternitz signatures

Forcing perfect compliance through cryptography sounds great. Unfortunately I cannot pretend to understand the math and cryptography behind everything you say except on a conceptual basis.

It doesn't gain anything from an anonymity perspective (and is arguably retrogressive), if that is what you were thinking. We pay to a name instead of an address. The address can change and the name remains the same. For security it helps, and my greater motivation is eliminating lost payments (payments to addresses for which no one knows the private key) and overhead for microtransactions (and potentially IoT).

Edit: it is a usability feature for targeting the masses, and I think ShadowCoin has a similar feature but maybe not for the same motivations.
legendary
Activity: 990
Merit: 1108
Hmmm - smartphone mining would be a splendid feature . . . any idea how much more efficient a GPU vs a CPU setup would be - say based on the cost of purchase of most efficient GPU vs CPU setup + 1 year of electric fees. If the GPU setup was 2X more efficient, I could live with that for the advantage of a wide variety of mining equipment (phones, game consoles etc), but if it was 10X, not so workable.

I have very limited data. A GTX980 with a TDP of around 160W was 5x faster than an i7-4790K with a TDP of around 80W. So the GPU appears to be between 2x and 3x more efficient in this case.
But since Cuckoo Cycle is memory bound, neither CPU nor GPU is going to be near their TDP.
So we really need to bench it with power measuring tools, which I'm lacking...
legendary
Activity: 1428
Merit: 1030
I believe there is a way to get both ('goldrush' and a delay for the open source to mature), and it is also integrated with my marketing plan. I have actually explained what this is and I see no reason to repeat it and make it more clear for my competitors. Those who were paying attention already have the information.

Hmmm, maybe a loch-ness style distribution, with large mining rewards at the outset, followed by a dip, followed by ramping up, then a tailing off?
legendary
Activity: 1428
Merit: 1030

I've come to realize it's really really hard to resist GPUs. For portability across different CPU architectures,
I haven't seen anything more resistant than Cuckoo Cycle. If you're willing to target recent x86 exclusively,
then you can increase resistance by employing the AES-NI instruction. Replacing the underlying siphash in Cuckoo Cycle by an AES-NI based hash function would likely render it much more GPU resistant. But I don't like the idea of excluding vast markets of potential hashing power (like smartphones while charging overnight).


Hmmm - smartphone mining would be a splendid feature . . . any idea how much more efficient a GPU vs a CPU setup would be - say based on the cost of purchase of most efficient GPU vs CPU setup + 1 year of electric fees. If the GPU setup was 2X more efficient, I could live with that for the advantage of a wide variety of mining equipment (phones, game consoles etc), but if it was 10X, not so workable.
sr. member
Activity: 420
Merit: 262
No, there is no cryptocurrency using Cuckoo Cycle as proof of work.
Btw, in absolute performance, it runs much better on GPUs than on CPUs.
But I don't know which is better in terms of performance per watt.

Thanks, I've been reading a bit more about it. I've been away for a while - did I miss anything in the CPU space? What do you think is the most GPU resistant PoW around now? I remember Anonymint saying he had a secret CPU PoW years ago - has he said any more?

Slowly ramping up coin distribution does seem fairer, but then a coin loses the 'goldrush' feeling that is so helpful in gaining momentum and early user adoption.

I believe there is a way to get both ('goldrush' and a delay for the open source to mature), and it is also integrated with my marketing plan. I have actually explained what this is and I see no reason to repeat it and make it more clear for my competitors. Those who were paying attention already have the information.
sr. member
Activity: 420
Merit: 262
I've come to realize it's really really hard to resist GPUs.

Remember I told you that would be the case.

I still have my PoW hash from late 2013 (or was it early 2014 I forget) which is yet unreleased. I took an entirely different approach after realizing that memory hard hashes weren't really a resistance to GPUs nor ASICs.

Edit: I wasn't aiming for the CPU hash to be as efficient as the ASIC, but at least hopefully within 2 orders-of-magnitude so that my design for having payers mine unprofitably holds that mining is unprofitable even for ASICS. In theory, I can adjust the parameter of debasement rate to expected CPU/ASIC efficiency ratios to attempt to mitigate with the ratio of total payers PoW difficulty/debasement.
legendary
Activity: 990
Merit: 1108
No, there is no cryptocurrency using Cuckoo Cycle as proof of work.
Btw, in absolute performance, it runs much better on GPUs than on CPUs.
But I don't know which is better in terms of performance per watt.

Thanks, I've been reading a bit more about it. I've been away for a while - did I miss anything in the CPU space? What do you think is the most GPU resistant PoW around now?

I've come to realize it's really really hard to resist GPUs. For portability across different CPU architectures,
I haven't seen anything more resistant than Cuckoo Cycle. If you're willing to target recent x86 exclusively,
then you can increase resistance by employing the AES-NI instruction. Replacing the underlying siphash in Cuckoo Cycle by an AES-NI based hash function would likely render it much more GPU resistant. But I don't like the idea of excluding vast markets of potential hashing power (like smartphones while charging overnight).

Quote
Slowly ramping up coin distribution does seem fairer, but then a coin loses the 'goldrush' feeling that is so helpful in gaining momentum and early user adoption.

That's not so much user adoption as miner adoption, and does little to the long term staying power...
legendary
Activity: 1428
Merit: 1030
No, there is no cryptocurrency using Cuckoo Cycle as proof of work.
Btw, in absolute performance, it runs much better on GPUs than on CPUs.
But I don't know which is better in terms of performance per watt.

Thanks, I've been reading a bit more about it. I've been away for a while - did I miss anything in the CPU space? What do you think is the most GPU resistant PoW around now? I remember Anonymint saying he had a secret CPU PoW years ago - has he said any more?

Slowly ramping up coin distribution does seem fairer, but then a coin loses the 'goldrush' feeling that is so helpful in gaining momentum and early user adoption.
legendary
Activity: 990
Merit: 1108
I would also ramp down slowly rather than halving days

Agree that Bitcoin's reward halving every 4 years is way too disruptive.

Putting it on the same schedule as the biweekly difficulty adjustments
would seem to be vastly preferable...
legendary
Activity: 2968
Merit: 1198
I would also ramp down slowly rather than halving days
legendary
Activity: 990
Merit: 1108
We MUST eliminate profitable mining (my design)!

That's exactly what I argued for in my comment on "The resolution of the Bitcoin experiment" at
https://news.ycombinator.com/threads?id=tromp

Hey Tromp, are there any altcoins implementing Cuckoo yet?

No, there is no cryptocurrency using Cuckoo Cycle as proof of work.
Btw, in absolute performance, it runs much better on GPUs than on CPUs.
But I don't know which is better in terms of performance per watt.

Quote
To eliminate profitable mining, how about block rewards that are inversely proportional to chain difficulty? Only those who can mine at a (someone elses) loss will mine.

I don't like that, since I want a predictable distribution curve.
But I'd make two changes to Bitcoin's curve.

First, rewards should ramp up slowly, only peaking after a year or two, allowing the mining software to mature and become widespread.

Second, the rewards should converge to some constant greater than zero;
making the currency non-deflationary.
You cannot avoid losing coins due to bugs, misconfiguration, typos, loss of private keys, stupidity, etc.
If we assume a yearly loss rate of 1%, then a limit reward of X per year results in an effective soft-cap of 100X, so it's still not really inflationary.
sr. member
Activity: 420
Merit: 262
Sorry I can't resist about the "desperate" allegation, I just was informed of a 58 year old filipino man who sexed his 78 year old mother who due to her Alzheimers thought she was sexing her deceased husband.
Pages:
Jump to: