6 ms·
There are several quantum resistant crypto currencies. I.e. IOTA
by flignats 9y ago
There are several quantum resistant crypto currencies. I.e. IOTA
- banderman 9y agoCan you please explain what makes it quantum resistant?
- flignats 9y ago"IOTA uses hash-based signatures (https://www.imperialviolet.org/2013/07/18/hashsig.html https://www.imperialviolet.org/2013/07/18/hashsig.html) instead of elliptic curve cryptography (ECC). Not only is hash-based signatures a lot faster than ECC, but it also greatly simplifies the overall protocol (signing and verification). What actually makes IOTA quantum-secure is the fact that we use Winternitz signatures. IOTA's ternary hash function is called Curl."
- nine_k 9y agoNot all crypto becomes easy to crack with a quantum computer: https://en.wikipedia.org/wiki/Post-quantum_cryptography https://en.wikipedia.org/wiki/Post-quantum_cryptography With its use, the scarcity of numbers remain, that is, finding a clash that would allow to forge a transaction stays infeasible, and mining stays hard. BTW while mining is so important with Bitcoin and Etherium, it's not a necessary part of a cryptocurrency. Mining is an incentive to keep doing blockchain validation. Some currencies exist without it (e.g. NXT).
- garmaine 9y agoAll crypto becomes easier (well, except for the one time pad). But some algorithms (AES, SHA) only require doubling the number of bits to achieve the same security level, which is rather trivial to do.
- bdamm 9y agoTo date the only practical replacements for RSA and EC achieve key derivation but not signatures. Without signatures we're not really 'complete' since certificates are hard to do with only key derivation. Post-quantum cryptograph research is a very active area right now. If these researchers do not find a practical signature algorithm, PKI as we know it will change very significantly. Ironically, blockchains might elevate in importance as a result, since the evolving blockchain is a useful construct for quantum resistance. It has cryptographic agility built in.
- woah 9y agoIOTA isn't even resistant to differential cryptanalysis.
- flignats 9y agoCare to add sources?
- seanwilson 9y agoA flaw was found in the hash function they rolled themselves which doesn't build confidence there aren't more vulnerabilities to be found: https://medium.com/@neha/cryptographic-vulnerabilities-in-iota-9a6a9ddc4367 https://medium.com/@neha/cryptographic-vulnerabilities-in-io... https://www.forbes.com/sites/amycastor/2017/09/07/mit-and-bu-researchers-uncover-critical-security-flaw-in-2b-cryptocurrency-iota/2/#625c6bc042ff https://www.forbes.com/sites/amycastor/2017/09/07/mit-and-bu... To make things even worse than rolling their own hash function, they're claiming the flaw was intentional! This makes them hostile and untrustworthy to the open source community if this is true and further erodes confidence they know what they're doing if this is their attempt at PR spin: https://hackernoon.com/why-i-find-iota-deeply-alarming-934f1908194b https://hackernoon.com/why-i-find-iota-deeply-alarming-934f1... > Next, and in my mind most damningly, Sergey Ivancheglo, Iota’s cofounder, claims that the flaws in the Curl hash function were in fact deliberate; that they were inserted as ‘copy protection’, to prevent copycat projects, and to allow the Iota team to compromise those projects if they sprang up.
- flignats 9y agoThese points have all been talked over extensively and are not a concern: https://medium.com/@comefrombeyond/cfbs-comments-on-https-www-media-mit-edu-posts-iota-response-5834c7f8172d https://medium.com/@comefrombeyond/cfbs-comments-on-https-ww...
- seanwilson 9y agoThat blog response is completely unconvincing and makes me trust them even less. They have no proof of the extraordinary claim that the flawed hash function was intended (which is bad whether this is true or false) and their network going down for three days is a huge red flag that the protocol cannot be used in a decentralised way. He talks a good game but if you have any technical background you can see he isn't addressing what's being asked and is avoiding valid criticism via hand waving and character attacks.