注册并分享邀请链接,可获得视频播放与邀请奖励。

JP
@jpthor
加入 November 2018
3.1K 正在关注    33.2K 粉丝
The exact leakage path has not been demonstrated yet, but it's clear it was a GG20 bug of the same form as a Paillier-modulus attack: a malicious participant can publish a malformed Paillier modulus during keygen, then use later signing/MtA rounds to extract honest parties’ ECDSA shares. It's likely the latest GG20 patches protects against this, but my recommendation is for thorchain to migrate to DKLS with @silencelabs_sl maintaining the lib.
显示更多
0
9
113
8
转发到社区