Can we shield P2PK outputs from quantum threats?

15 replies 78 views
alexsatNewbie
Posts: 110 · Reputation: 15
#1Oct 10, 2019, 10:40 AM
Honestly, it feels like protecting P2PK addresses from quantum attacks is a lost cause. Once that public key is out there, a quantum attacker can easily crack the private key using blockchain data. Just seems too easy for them.
5 Reply Quote Share
Posts: 57 · Reputation: 90
#2Oct 10, 2019, 02:30 PM
Yeah, I get that. But what if there are some unique data points only the original owners know? That could be a requirement for moving P2PK funds. Just a thought.
4 Reply Quote Share
0xDefiFull Member
Posts: 54 · Reputation: 317
#3Oct 10, 2019, 02:46 PM
But like, if the public key is already exposed, adding more layers to ownership sounds messy. Any new rules risk turning subjective, don’t you think? Hourglass seems better since it just slows attackers at the consensus level.
3 Reply Quote Share
0xNodeMember
Posts: 257 · Reputation: 80
#4Oct 12, 2019, 09:48 PM
Instead of all this theory, why not just move stuff to unspent P2WPKH addresses? Sure, not a perfect solution but it’s better than nothing, right?
2 Reply Quote Share
alexsatNewbie
Posts: 110 · Reputation: 15
#5Oct 12, 2019, 11:55 PM
I’m with you there. The last idea has its flaws, but maybe a phased Hourglass might help too. Reducing the spendable amount over time could push holders to transfer coins faster. Deadlines could work wonders.
6 Reply Quote Share
0xNodeMember
Posts: 257 · Reputation: 80
#6Oct 13, 2019, 01:30 AM
Abandoned coins are the owner's problem. I don't like the idea of controlling how users handle their coins. We shouldn't just disable certain address types.
4 Reply Quote Share
seed777Full Member
Posts: 12 · Reputation: 357
#7Oct 13, 2019, 03:30 AM
Right, but what happens if quantum computers really do break through? The attacker could sign transactions just like the original owner. How will the network tell them apart?
0 Reply Quote Share
0xNodeMember
Posts: 257 · Reputation: 80
#8Oct 15, 2019, 04:21 AM
If we start disabling stuff for security, we’re straying from decentralized ideals. Sure, there might be moments when we need to act for security, but we can’t make it a habit.
4 Reply Quote Share
alexsatNewbie
Posts: 110 · Reputation: 15
#9Oct 17, 2019, 07:34 AM
We shouldn’t force changes, but incentivizing users to protect their coins sounds alright. Everything in Bitcoin revolves around incentives anyway.
3 Reply Quote Share
alex.byteLegendary
Posts: 70 · Reputation: 5910
#10Oct 17, 2019, 10:48 AM
Why are we still discussing P2PK? It's pretty much dead apart from a few NFT folks. It’s like reviving old codes that should stay gone.
4 Reply Quote Share
m1kes4tFull Member
Posts: 43 · Reputation: 252
#11Oct 17, 2019, 12:19 PM
So, according to the proposal from that GitHub link, moving 50 BTC would require 50 signatures? Seriously? That sounds like a security nightmare if every signature leaks info about the private key.
1 Reply Quote Share
alexsatNewbie
Posts: 110 · Reputation: 15
#12Oct 17, 2019, 01:35 PM
Those coins could be moved easily if Satoshi or anyone holding the keys feels unsafe. Drastic changes could lead to chaos if something goes wrong.
3 Reply Quote Share
0xChadNewbie
Posts: 138 · Reputation: 3
#13Oct 18, 2019, 08:48 PM
Got it! I was confused about the different Hourglass ideas too. But yeah, I still think needing 50 signatures is a risk. Gotta find another way.
0 Reply Quote Share
0xNodeMember
Posts: 257 · Reputation: 80
#14Oct 18, 2019, 10:59 PM
How do we even implement this? If output two looks like any other script, how do we verify the specific rules without exposing the redeem script?
1 Reply Quote Share
alexsatNewbie
Posts: 110 · Reputation: 15
#15Oct 19, 2019, 04:50 AM
We’re nearing the day when private keys can be derived from addresses. So, this whole idea might be moot soon. We actually don’t need this proposal now.
2 Reply Quote Share
Posts: 1111 · Reputation: 35
#16Oct 19, 2019, 05:50 AM
True, if we go for covenants, it’ll depend on the specific approach but TapScript could help hide the script path. But if someone publishes the redeem script, it could spoil everything.
2 Reply Quote Share

Related topics