3 ms·
This is false, their privacy is similar to Monero (RingCT). SGX is only an added level of privacy.
by qqii 5y ago
This is false, their privacy is similar to Monero (RingCT). SGX is only an added level of privacy.
- nullc 5y agoNo, that is smoke and mirrors. The client fully identifies itself and its keys to the server, the wallet is entirely implemented server side. Without SGX there is no privacy what-so-ever. Usage of ringct is incidental. It's like claiming that your documents are private when your operating system submits them all to the NSA because the NSA encrypts them after receiving them. :) (and, of course, we trust the NSA to behave honestly...)
- ianmiers 5y agoYou got sources for that being how the construction works? From various telegram groups with the devs in them , my understanding is 1) rings are constructed client side 2) uploaded to the server inside SGX. This has two major weaknesses 1) it doesn't specify how payment notification happens, which can be a massive privacy hole 2) if SGX is broken you are subject to all of the long term intersection attacks on Monero's/k-anonymity because the rings are now public. This is a very limited threat model and worthy of serious scrutiny.
- runeks 5y agoWait, haven’t they published a white paper?
- petertodd 5y agoAlso, _even if_ we steel-manned the design and imagine SGX is truly only used as a "defence-in-depth" layer on top of a ringct blockchain, using SGX to prove that SGX Lightning nodes weren't keeping transaction info would still be better privacy under many circumstances. Lightning transactions are ephemeral: once the transaction happens, _no_ data about the transaction actually needs to be kept by anyone, let alone on a public blockchain. And only the peers directly involved in the route ever learn about the transaction directly. Whereas with SGX, if SGX is broken in the future - and it will be - the statistical analysis on the underlying blockchain data is still possible. And unlike MobileCoin, this design wouldn't put SGX in any kind of trust or custodial position at all: if SGX failed, you'd just close the Lightning channels the same way any other Lightning implementation would, and open new channels with non-SGX peers.
- qqii 5y agoI clearly misunderstood you but can you explain how you've come to that conclusion? I'm trusting their whitepaper but it looks to me that fog provides similar security guarentees between MyMonero (shared view key) and other light wallets (computation on device). I don't see how the privacy could be any worse than MyMonero even if SGX was compromised.