<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated></updated>
  <generator>https://nostr.ae</generator>

  <title>Nostr notes by </title>
  <author>
    <name></name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://nostr.ae/npub1l2n4ksu6cjucm97ffzss5xtrqew80wgqr3tmfr5sxcm2lhmxx6nqp4hapw.rss" />
  <link href="https://nostr.ae/npub1l2n4ksu6cjucm97ffzss5xtrqew80wgqr3tmfr5sxcm2lhmxx6nqp4hapw" />
  <id>https://nostr.ae/npub1l2n4ksu6cjucm97ffzss5xtrqew80wgqr3tmfr5sxcm2lhmxx6nqp4hapw</id>
  <icon></icon>
  <logo></logo>




  <entry>
    <id>https://nostr.ae/nevent1qqspntkqxg66nsa2xgx8l6q9j36qvr4zjgtd9rtt0z9aczqtczp6mjqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vh5k9rj</id>
    
      <title type="html">📅 Original date posted:2013-07-08 📝 Original message:But... ...</title>
    
    <link rel="alternate" href="https://nostr.ae/nevent1qqspntkqxg66nsa2xgx8l6q9j36qvr4zjgtd9rtt0z9aczqtczp6mjqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vh5k9rj" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsfenpegve5hfk5wnf22a40xkksymm46r2ck46047xgrvkm2tew9zq7j08v3&#39;&gt;nevent1q…08v3&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;📅 Original date posted:2013-07-08&lt;br/&gt;📝 Original message:But... Multibit is Java. Java&amp;#39;s security problems has made it an instant&lt;br/&gt;uninstall item on windows PCs for about a year now. Java exploits are a&lt;br/&gt;dime a dozen.&lt;br/&gt;&lt;br/&gt;Yes, you can reduce some of the problems by manually disabling the browser&lt;br/&gt;plugin, but how many users will do that?&lt;br/&gt;&lt;br/&gt;Recommending a fast SPV client as a first wallet - yes, of course.&lt;br/&gt;Recommending users open such a huge attack interface on their computers by&lt;br/&gt;installing Java - No go. Until Multibit is provided as a compiled binary&lt;br/&gt;without a Java dependency, it is DOA.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;On 1 July 2013 02:39, Gary Rowe &amp;lt;g.rowe at froot.co.uk&amp;gt; wrote:&lt;br/&gt;&lt;br/&gt;&amp;gt; I&amp;#39;ve beefed up the supporting documentation for the website to make it&lt;br/&gt;&amp;gt; more accessible for developers who wish to contribute. It&amp;#39;s a Java&lt;br/&gt;&amp;gt; application serving HTML.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; It can be found here: &lt;a href=&#34;https://github.com/jim618/multibit-website&#34;&gt;https://github.com/jim618/multibit-website&lt;/a&gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; On 30 June 2013 16:19, Jim &amp;lt;jim618 at fastmail.co.uk&amp;gt; wrote:&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; Yeah &amp;#34;email jim&amp;#39; was never going to work so I have&lt;br/&gt;&amp;gt;&amp;gt; bumped up MultiBit support (a bit) by:&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &#43; having a dedicated Support page on the website&lt;br/&gt;&amp;gt;&amp;gt;    &lt;a href=&#34;https://multibit.org/support.html&#34;&gt;https://multibit.org/support.html&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt;    It has fixes and support notes for the most common gotchas.&lt;br/&gt;&amp;gt;&amp;gt; &#43; the in-app help also now has a &amp;#39;Support&amp;#39; section with&lt;br/&gt;&amp;gt;&amp;gt;    &amp;#34;Troubleshooting&amp;#39; and the commonest gotchas.&lt;br/&gt;&amp;gt;&amp;gt;    I&amp;#39;ve also written more help to cover as much as possible.&lt;br/&gt;&amp;gt;&amp;gt; &#43; Failing that people are directed first to bitcoin.stackchange.com&lt;br/&gt;&amp;gt;&amp;gt;    (I have a notification set up for the &amp;#39;multibit&amp;#39; keyword.&lt;br/&gt;&amp;gt;&amp;gt; &#43; Then finally users are directed to the github issues to search&lt;br/&gt;&amp;gt;&amp;gt;    existing or raise a new issue. Gary and Tim often chip in on there to&lt;br/&gt;&amp;gt;&amp;gt;    close&lt;br/&gt;&amp;gt;&amp;gt;    issues down as well as me.&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; On Sun, Jun 30, 2013, at 12:42 PM, Mike Hearn wrote:&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; Sounds like we have consensus, Saivann, shall we do it?&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; I&amp;#39;m also going to ask Theymos again to relax the newbie restrictions&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; for the alt client forums. It&amp;#39;s probably too hard to get support at&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; the moment and &amp;#34;email jim&amp;#34; doesn&amp;#39;t scale at all.&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; On Fri, Jun 28, 2013 at 4:24 PM, Gavin Andresen &amp;lt;&lt;br/&gt;&amp;gt;&amp;gt; gavinandresen at gmail.com&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; wrote:&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; I vote &amp;#34;yes&amp;#34; to have MultiBit replace Bitcoin-Qt as the recommended&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; desktop wallet app. I think most users will be happier with it.&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; If I&amp;#39;m wrong, it is easy to change back.&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; This SF.net email is sponsored by Windows:&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; Build for Windows Store.&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; &lt;a href=&#34;http://p.sf.net/sfu/windows-dev2dev&#34;&gt;http://p.sf.net/sfu/windows-dev2dev&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; _______________________________________________&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; This SF.net email is sponsored by Windows:&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; Build for Windows Store.&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&#34;http://p.sf.net/sfu/windows-dev2dev&#34;&gt;http://p.sf.net/sfu/windows-dev2dev&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; _______________________________________________&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; --&lt;br/&gt;&amp;gt;&amp;gt; &lt;a href=&#34;https://multibit.org&#34;&gt;https://multibit.org&lt;/a&gt;    Money, reinvented&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt;&amp;gt; This SF.net email is sponsored by Windows:&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; Build for Windows Store.&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; &lt;a href=&#34;http://p.sf.net/sfu/windows-dev2dev&#34;&gt;http://p.sf.net/sfu/windows-dev2dev&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt; This SF.net email is sponsored by Windows:&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; Build for Windows Store.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; &lt;a href=&#34;http://p.sf.net/sfu/windows-dev2dev&#34;&gt;http://p.sf.net/sfu/windows-dev2dev&lt;/a&gt;&lt;br/&gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;-------------- next part --------------&lt;br/&gt;An HTML attachment was scrubbed...&lt;br/&gt;URL: &amp;lt;&lt;a href=&#34;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130709/e45170a6/attachment.html&amp;gt&#34;&gt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130709/e45170a6/attachment.html&amp;gt&lt;/a&gt;;
    </content>
    <updated>2023-06-07T15:04:21Z</updated>
  </entry>

  <entry>
    <id>https://nostr.ae/nevent1qqsfwcl58yyansepfxumq5swq6m3x4lz6zycu20es7mmrm5074xm2kqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vy4rth4</id>
    
      <title type="html">📅 Original date posted:2013-05-21 📝 Original ...</title>
    
    <link rel="alternate" href="https://nostr.ae/nevent1qqsfwcl58yyansepfxumq5swq6m3x4lz6zycu20es7mmrm5074xm2kqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vy4rth4" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs8j9jwpkh2xyk6aum4xpqtmsjvwcq0sknphn4mawwm0alfmdc7kqg34an5g&#39;&gt;nevent1q…an5g&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;📅 Original date posted:2013-05-21&lt;br/&gt;📝 Original message:That&amp;#39;s good - what I had taken away from the replace-by-fee discussions was&lt;br/&gt;that it was finally decided.&lt;br/&gt;&lt;br/&gt;My opinion is that we should be doing what we can to make 0-confs as&lt;br/&gt;reliable as possible - which will always be &amp;#39;not very&amp;#39;, but a solid system&lt;br/&gt;to notify on attempted double-spends is a good start.&lt;br/&gt;&lt;br/&gt;I&amp;#39;d like to know how Peter Todd&amp;#39;s experiment with the 2BTC reward has gone.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;On 21 May 2013 13:27, Mike Hearn &amp;lt;mike at plan99.net&amp;gt; wrote:&lt;br/&gt;&lt;br/&gt;&amp;gt; Indeed, that has been proposed but it&amp;#39;s a dumb idea and I&amp;#39;m very sceptical&lt;br/&gt;&amp;gt; it will go anywhere.  Certainly no decision was made. The arguments for it&lt;br/&gt;&amp;gt; are based on some quite faulty thinking about economics. Double spend&lt;br/&gt;&amp;gt; notifications have been proposed a long time ago, I believe Matt has&lt;br/&gt;&amp;gt; indicated some interest in implementing them and that is the right way to&lt;br/&gt;&amp;gt; go.&lt;br/&gt;&amp;gt; On 20 May 2013 18:57, &amp;#34;Pieter Wuille&amp;#34; &amp;lt;pieter.wuille at gmail.com&amp;gt; wrote:&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; On Tue, May 21, 2013 at 3:24 AM, Robert Backhaus &amp;lt;robbak at robbak.com&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; wrote:&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; So the decision has been made to make 0-conf double spends trivial, so&lt;br/&gt;&amp;gt;&amp;gt; no&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; one will ever trust 0-confs. If a later transaction appears with a&lt;br/&gt;&amp;gt;&amp;gt; larger&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; fee, it will be considered to be the valid one, and the first one&lt;br/&gt;&amp;gt;&amp;gt; dropped,&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; as long as the first one has not been confirmed. This makes undoing a&lt;br/&gt;&amp;gt;&amp;gt; &amp;gt; mistaken transaction possible.&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; This has been suggested, but I know of no such decision having been made.&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; --&lt;br/&gt;&amp;gt;&amp;gt; Pieter&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt;&amp;gt; Try New Relic Now &amp;amp; We&amp;#39;ll Send You this Cool Shirt&lt;br/&gt;&amp;gt;&amp;gt; New Relic is the only SaaS-based application performance monitoring&lt;br/&gt;&amp;gt;&amp;gt; service&lt;br/&gt;&amp;gt;&amp;gt; that delivers powerful full stack analytics. Optimize and monitor your&lt;br/&gt;&amp;gt;&amp;gt; browser, app, &amp;amp; servers with just a few lines of code. Try New Relic&lt;br/&gt;&amp;gt;&amp;gt; and get this awesome Nerd Life shirt!&lt;br/&gt;&amp;gt;&amp;gt; &lt;a href=&#34;http://p.sf.net/sfu/newrelic_d2d_may&#34;&gt;http://p.sf.net/sfu/newrelic_d2d_may&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;-------------- next part --------------&lt;br/&gt;An HTML attachment was scrubbed...&lt;br/&gt;URL: &amp;lt;&lt;a href=&#34;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130521/860b94b0/attachment.html&amp;gt&#34;&gt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130521/860b94b0/attachment.html&amp;gt&lt;/a&gt;;
    </content>
    <updated>2023-06-07T15:02:17Z</updated>
  </entry>

  <entry>
    <id>https://nostr.ae/nevent1qqsxzm397srmaqeuujd7fpexfma5hm2kk8jnlneqfdr5urkjre33kyqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2v8lhc69</id>
    
      <title type="html">📅 Original date posted:2013-05-20 📝 Original ...</title>
    
    <link rel="alternate" href="https://nostr.ae/nevent1qqsxzm397srmaqeuujd7fpexfma5hm2kk8jnlneqfdr5urkjre33kyqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2v8lhc69" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsdfhh3ea4g4hx0eavx60hmvkmeu2lkutn00zmq8ugqazhwu388wjcqqyl3w&#39;&gt;nevent1q…yl3w&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;📅 Original date posted:2013-05-20&lt;br/&gt;📝 Original message:Personally, I agree, but a different decision has been made by the main&lt;br/&gt;devs.&lt;br/&gt;&lt;br/&gt;The issue is this: consider two transactions in the unconfirmed pool. One&lt;br/&gt;transaction has 2BTC input, 1.5BTC to one address (the payment), .4995 to&lt;br/&gt;another address (change) and .0005 standard fee. Another transaction&lt;br/&gt;appears - Same input, 1BTC to one address, .999 to another, and .001 fee.&lt;br/&gt;Which one would a miner include? On pure self interest, the second one,&lt;br/&gt;because it has twice the fee. Anyway, the miner has no real way of knowing&lt;br/&gt;which transaction was real, and which the fraudulent double-spend. The&lt;br/&gt;network does not keep accurate timestamps, so it has no way of really&lt;br/&gt;knowing which is first. A bit of artificial DDOS-type overload on the&lt;br/&gt;recipient&amp;#39;s system, and the real transaction could easily appear last.&lt;br/&gt;&lt;br/&gt;So the decision has been made to make 0-conf double spends trivial, so no&lt;br/&gt;one will ever trust 0-confs. If a later transaction appears with a larger&lt;br/&gt;fee, it will be considered to be the valid one, and the first one dropped,&lt;br/&gt;as long as the first one has not been confirmed. This makes undoing a&lt;br/&gt;mistaken transaction possible.&lt;br/&gt;&lt;br/&gt;So anyone needing 0-conf-like speed will have to make other arangements,&lt;br/&gt;such as contracting with enough mining pool power to never drop their&lt;br/&gt;transactions unless confirmed multiple times. Secure 0-confs is an&lt;br/&gt;impossible target with blockchain cyrpto-currencies as the stand. Any ideas&lt;br/&gt;on how to make them work are welcome, of course - as long as we haven&amp;#39;t&lt;br/&gt;heard them too many times before.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;On 21 May 2013 10:45, Quinn Harris &amp;lt;btcdev at quinnharris.me&amp;gt; wrote:&lt;br/&gt;&lt;br/&gt;&amp;gt; The current BitCoin implementation is subject to relatively easy double&lt;br/&gt;&amp;gt; spend attack for 0 confirmation payments.  Yet 0 confirmation payments&lt;br/&gt;&amp;gt; are needed for typical in person transactions like most purchases at a&lt;br/&gt;&amp;gt; local business.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; Notably, it is easy to transmit two transactions from the same output at&lt;br/&gt;&amp;gt; the same time to different sets of nodes on the network by using two&lt;br/&gt;&amp;gt; instances of bitcoind with same wallet file and a spend on each daemon&lt;br/&gt;&amp;gt; initiated by RPC by some easy to implement code.  If the first attempt&lt;br/&gt;&amp;gt; to pay the merchant doesn&amp;#39;t go through because they received the &amp;#34;wrong&amp;#34;&lt;br/&gt;&amp;gt; transaction it could be quickly followed up with another initiated spend&lt;br/&gt;&amp;gt; from a different output switching which daemon sends the transaction the&lt;br/&gt;&amp;gt; merchant is expecting.  This means an unsophisticated attacker can&lt;br/&gt;&amp;gt; reliably get away with this attack and it would be worth while for small&lt;br/&gt;&amp;gt; transactions.  Given this, I would be reluctant to trust 0 confirmation&lt;br/&gt;&amp;gt; transactions at all though I think many do in practice.  Someone could&lt;br/&gt;&amp;gt; write and publish a special daemon to execute this attack further&lt;br/&gt;&amp;gt; reducing the cost.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; Right now a node will drop any second spend of the same output in the&lt;br/&gt;&amp;gt; memory pool.  After the first transaction has propagated through the&lt;br/&gt;&amp;gt; network issuing a second double spend transaction isn&amp;#39;t likely to be&lt;br/&gt;&amp;gt; seen by a significant number of miners as most nodes especially non&lt;br/&gt;&amp;gt; miner nodes will drop this transaction.  Today, it is necessary to&lt;br/&gt;&amp;gt; transmit both transactions on the network nearly simultaneously to&lt;br/&gt;&amp;gt; reliably get away with this simple attack.  If in this case, the&lt;br/&gt;&amp;gt; receiving end is quickly notified of the double spend this attack&lt;br/&gt;&amp;gt; becomes more more difficult to get away with.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; If the second transaction is relayed instead of being dropped to notify&lt;br/&gt;&amp;gt; the receiving party of the double spend, most miners will receive both&lt;br/&gt;&amp;gt; transactions and it is possible that some or even many of the miners&lt;br/&gt;&amp;gt; would replace the first transaction with the second if it has a higher&lt;br/&gt;&amp;gt; fee as it would be in their short term interest. This can happen some&lt;br/&gt;&amp;gt; time after the first transaction has propagated through the network so&lt;br/&gt;&amp;gt; the receiving end wouldn&amp;#39;t get a timely notification of the double&lt;br/&gt;&amp;gt; spend.  Depending on the choices of the miners, this approach to double&lt;br/&gt;&amp;gt; spend notification could exacerbate the very problem it was attempting&lt;br/&gt;&amp;gt; to fix compared to the current implementation.  While miners might&lt;br/&gt;&amp;gt; continue to drop the second spends, the easy availability of the second&lt;br/&gt;&amp;gt; spends would increase the short term reward for changing this policy.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; This problem can be fixed if instead of sending the second transaction a&lt;br/&gt;&amp;gt; new double spend message is sent with proof of the double spend but not&lt;br/&gt;&amp;gt; the complete transactions.  This would allow the receiving end to be&lt;br/&gt;&amp;gt; quickly notified of a double spend while in no way increase the chance&lt;br/&gt;&amp;gt; over the current implementation that a double spend would be successful.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; The proof of the double spend would include the scriptSig (input) from&lt;br/&gt;&amp;gt; the original transactions and the hashes from the &amp;#34;simplified&amp;#34;&lt;br/&gt;&amp;gt; transaction used by OP_CHECKSIG of the scriptPubKey (output) but not the&lt;br/&gt;&amp;gt; entire transaction.  This is the hash computed by the SignatureHash&lt;br/&gt;&amp;gt; function in script.cpp.   The double spend notification message should&lt;br/&gt;&amp;gt; contain proofs of both signed transaction spending the same output&lt;br/&gt;&amp;gt; ordered by hash to produce a canonical proof for a specific two&lt;br/&gt;&amp;gt; transactions.  To reduce DOS potential, the proof should not be relayed&lt;br/&gt;&amp;gt; unless one of the original transactions has been received to ensure&lt;br/&gt;&amp;gt; there is some commitment to the block chain and different double spend&lt;br/&gt;&amp;gt; proofs of the same output should not be relayed.  The forwarding of&lt;br/&gt;&amp;gt; transactions should remain exactly the same as it is now where the&lt;br/&gt;&amp;gt; second transaction is dropped but a double spend message is transmitted&lt;br/&gt;&amp;gt; if appropriate.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; The existing block chain needs to be checked to make sure the proof of&lt;br/&gt;&amp;gt; double spend couldn&amp;#39;t have been derived from the block chain and a&lt;br/&gt;&amp;gt; single spend in the memory pool.  This could happen if there was already&lt;br/&gt;&amp;gt; an identical transaction in the block chain.  This would typically only&lt;br/&gt;&amp;gt; happen if someone was paying someone else the same amount they had&lt;br/&gt;&amp;gt; before and neither side changed addresses.  In this case double spend&lt;br/&gt;&amp;gt; detection wouldn&amp;#39;t be reliable as it could be generated by anyone, but&lt;br/&gt;&amp;gt; both the sending and receiving client could detect this situation and&lt;br/&gt;&amp;gt; warn the user.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; It would still be possible for an attacker to send the second&lt;br/&gt;&amp;gt; transaction directly to powerful miners but this is a distinctly less&lt;br/&gt;&amp;gt; viable attack than the current double spend attack.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; I would expect this double spend notification implementation to make&lt;br/&gt;&amp;gt; double spends more costly than they are worth for most cases today that&lt;br/&gt;&amp;gt; 0 confirmation acceptance is needed.  That said over time this provision&lt;br/&gt;&amp;gt; might become less effective.  As the reward for each block mined&lt;br/&gt;&amp;gt; decreases, transactions fees will become a more significant part of the&lt;br/&gt;&amp;gt; mining reward accordingly increasing the incentive to replace&lt;br/&gt;&amp;gt; transactions with higher fees.  Today most BitCoin participants have a&lt;br/&gt;&amp;gt; high expectation of significant future appreciation of BitCoins and&lt;br/&gt;&amp;gt; recognize anything that brings into question the integrity of the system&lt;br/&gt;&amp;gt; is likely to reduce that future value so they have a long term self&lt;br/&gt;&amp;gt; interest to keep up the impression of integrity.  As BitCoin becomes&lt;br/&gt;&amp;gt; more establish this incentive will decrease.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; On the other hand, non mining nodes have no incentive to replace by&lt;br/&gt;&amp;gt; fee.  The continued increased capital costs of mining would likely&lt;br/&gt;&amp;gt; increase the proportion of non mining nodes typically run by those with&lt;br/&gt;&amp;gt; an incentive to assure integrity of the network such as merchants.  But&lt;br/&gt;&amp;gt; increasing transaction volume is likely to increase node costs which&lt;br/&gt;&amp;gt; would push out non mining nodes with lower incentive more than mining&lt;br/&gt;&amp;gt; nodes.  Accordingly increasing block size would have a tendency to&lt;br/&gt;&amp;gt; reduce the effectiveness of double spend notification.  The primary&lt;br/&gt;&amp;gt; point is there are multiple counteracting forces that make predicting&lt;br/&gt;&amp;gt; the future effectiveness of double spend notification uncertain.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; I don&amp;#39;t believe this necessary warrants conceding that we can not&lt;br/&gt;&amp;gt; provide any protection from non trusted 0 confirmations transaction as a&lt;br/&gt;&amp;gt; replace by fee implementation would do.  But it would still be important&lt;br/&gt;&amp;gt; to work towards more robust solutions notably various forms of 3rd party&lt;br/&gt;&amp;gt; trust.  This could be tamper resistant devices trusted to not duplicate&lt;br/&gt;&amp;gt; spends, 3rd party certificates with proof the transaction was spent by&lt;br/&gt;&amp;gt; the holder of the certificate or multi signature transactions on the&lt;br/&gt;&amp;gt; block chain that must be signed by a trusted 3rd party to spend.  I&lt;br/&gt;&amp;gt; would expect it would take significantly longer for the companies and&lt;br/&gt;&amp;gt; technologies to be built to implement this on a wide scale than adding&lt;br/&gt;&amp;gt; double spend proof messages to the current implementation.  In addition,&lt;br/&gt;&amp;gt; there will likely always be some use cases where a 3rd party&lt;br/&gt;&amp;gt; (centralization) is not viable.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; Should a BIP and pull request implementing a double spend notification&lt;br/&gt;&amp;gt; as described be accepted?&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; - Quinn&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt; Try New Relic Now &amp;amp; We&amp;#39;ll Send You this Cool Shirt&lt;br/&gt;&amp;gt; New Relic is the only SaaS-based application performance monitoring service&lt;br/&gt;&amp;gt; that delivers powerful full stack analytics. Optimize and monitor your&lt;br/&gt;&amp;gt; browser, app, &amp;amp; servers with just a few lines of code. Try New Relic&lt;br/&gt;&amp;gt; and get this awesome Nerd Life shirt! &lt;a href=&#34;http://p.sf.net/sfu/newrelic_d2d_may&#34;&gt;http://p.sf.net/sfu/newrelic_d2d_may&lt;/a&gt;&lt;br/&gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;-------------- next part --------------&lt;br/&gt;An HTML attachment was scrubbed...&lt;br/&gt;URL: &amp;lt;&lt;a href=&#34;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130521/65a0710f/attachment.html&amp;gt&#34;&gt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130521/65a0710f/attachment.html&amp;gt&lt;/a&gt;;
    </content>
    <updated>2023-06-07T15:02:15Z</updated>
  </entry>

  <entry>
    <id>https://nostr.ae/nevent1qqs24q3g38jp6nth6wxq5kkwzatd3xfr7q24qfwqtz8lrp8dw92vwhqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vdaduxu</id>
    
      <title type="html">📅 Original date posted:2013-04-10 📝 Original message:That ...</title>
    
    <link rel="alternate" href="https://nostr.ae/nevent1qqs24q3g38jp6nth6wxq5kkwzatd3xfr7q24qfwqtz8lrp8dw92vwhqzyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vdaduxu" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs2m7rvwlryp06gjygq8jghc43kscaux4smsgw0vczzddz8r96aezc87n7r4&#39;&gt;nevent1q…n7r4&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;📅 Original date posted:2013-04-10&lt;br/&gt;📝 Original message:That sounds workable. I take it that the P2SH address is not stored? I like&lt;br/&gt;it that this denies the possibility of storing data in the block chain, but&lt;br/&gt;does not block interesting uses like creating date stamps - You can still&lt;br/&gt;store the &amp;#39;fake P2SH&amp;#39; value whose checksum is secured by the blockchain.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;On 10 April 2013 12:53, Gregory Maxwell &amp;lt;gmaxwell at gmail.com&amp;gt; wrote:&lt;br/&gt;&lt;br/&gt;&amp;gt; (1) Define a new address type, P2SH^2 like P2SH but is instead&lt;br/&gt;&amp;gt; H(H(ScriptPubKey)) instead of H(ScriptPubKey). A P2SH^2 address it is&lt;br/&gt;&amp;gt; a hash of a P2SH address.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; (2) Make a relay rule so that to relay a P2SH^2  you must include&lt;br/&gt;&amp;gt; along the inner P2SH address.  All nodes can trivially verify it by&lt;br/&gt;&amp;gt; hashing it.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; (2a) If we find that miners mine P2SH^2 addresses where the P2SH&lt;br/&gt;&amp;gt; wasn&amp;#39;t relayed (e.g. they want the fees) we introduce a block&lt;br/&gt;&amp;gt; discouragement rule where a block is discouraged if you receive it&lt;br/&gt;&amp;gt; without receiving the P2SH^2 pre-images for it.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; With this minor change there is _no_ non-prunable location for users&lt;br/&gt;&amp;gt; to cram data into except values.  (and the inefficiency of cramming&lt;br/&gt;&amp;gt; data into values is a strong deterrent in any case)&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; The same thing could also be done for OP_RETURN PUSH value outputs&lt;br/&gt;&amp;gt; used to link transactions to data. Make the data be a hash, outside of&lt;br/&gt;&amp;gt; the txn include the preimage of the hash.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt; Precog is a next-generation analytics platform capable of advanced&lt;br/&gt;&amp;gt; analytics on semi-structured data. The platform includes APIs for building&lt;br/&gt;&amp;gt; apps and a phenomenal toolset for data science. Developers can use&lt;br/&gt;&amp;gt; our toolset for easy data analysis &amp;amp; visualization. Get a free account!&lt;br/&gt;&amp;gt; &lt;a href=&#34;http://www2.precog.com/precogplatform/slashdotnewsletter&#34;&gt;http://www2.precog.com/precogplatform/slashdotnewsletter&lt;/a&gt;&lt;br/&gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;-------------- next part --------------&lt;br/&gt;An HTML attachment was scrubbed...&lt;br/&gt;URL: &amp;lt;&lt;a href=&#34;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130410/f3916213/attachment.html&amp;gt&#34;&gt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130410/f3916213/attachment.html&amp;gt&lt;/a&gt;;
    </content>
    <updated>2023-06-07T11:46:15Z</updated>
  </entry>

  <entry>
    <id>https://nostr.ae/nevent1qqs968keeve2ys7pcaspkx0t8u7en7k05xexsvtnth4wamju9ue83lczyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vefs4f8</id>
    
      <title type="html">📅 Original date posted:2013-04-09 📝 Original message:The ...</title>
    
    <link rel="alternate" href="https://nostr.ae/nevent1qqs968keeve2ys7pcaspkx0t8u7en7k05xexsvtnth4wamju9ue83lczyra2wk6rntztnrvhe9y2zzsevvr9caaeqqw90dywjqmrdt7lvcm2vefs4f8" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsv6zt0t7zrng3c475h97adw0r8vpphcc8xk6zhu75q8fq9cdpqu5qy05eun&#39;&gt;nevent1q…5eun&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;📅 Original date posted:2013-04-09&lt;br/&gt;📝 Original message:The obvious problem is that if you can frame it as a valid address, you can&lt;br/&gt;put what you want there. If you can make it pass the validation, miners&lt;br/&gt;have no way of knowing it&amp;#39;s not a valid address.&lt;br/&gt;&lt;br/&gt;Of course, there is nothing new about this. I ran strings on the blockchain&lt;br/&gt;and found all sorts of ascii rubbish right from the beginning.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;On 9 April 2013 21:17, Jay F &amp;lt;jayf at outlook.com&amp;gt; wrote:&lt;br/&gt;&lt;br/&gt;&amp;gt; On 4/9/2013 4:09 AM, Peter Todd wrote:&lt;br/&gt;&amp;gt; &amp;gt; On Tue, Apr 09, 2013 at 12:42:12PM &#43;0200, Mike Hearn wrote:&lt;br/&gt;&amp;gt; &amp;gt;&amp;gt; hack by changing the protocol. Nodes can serve up blocks encrypted&lt;br/&gt;&amp;gt; under a&lt;br/&gt;&amp;gt; &amp;gt;&amp;gt; random key. You only get the key when you finish the download. A&lt;br/&gt;&amp;gt; blacklist&lt;br/&gt;&amp;gt; &amp;gt; NAK&lt;br/&gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt; &amp;gt; Makes bringing up a new node dependent on other nodes having consistent&lt;br/&gt;&amp;gt; &amp;gt; uptimes, particularly if you are on a low-bandwidth connection.&lt;br/&gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt; &amp;gt;&amp;gt; can apply to Bloom filtering such that transactions which are known to&lt;br/&gt;&amp;gt; be&lt;br/&gt;&amp;gt; &amp;gt;&amp;gt; &amp;#34;abusive&amp;#34; require you to fully download the block rather than select the&lt;br/&gt;&amp;gt; &amp;gt;&amp;gt; transactions with a filter. This means that people can still access the&lt;br/&gt;&amp;gt; &amp;gt; NAK&lt;br/&gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt; &amp;gt; No blacklists&lt;br/&gt;&amp;gt; &amp;gt;&lt;br/&gt;&amp;gt; It depends on how clever the spammers get encoding stuff. If law&lt;br/&gt;&amp;gt; enforcement forensic tools can pull a jpeg header &#43; child porn out of&lt;br/&gt;&amp;gt; the blockchain, then there&amp;#39;s a problem that needs mitigation.&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;&amp;gt; ------------------------------------------------------------------------------&lt;br/&gt;&amp;gt; Precog is a next-generation analytics platform capable of advanced&lt;br/&gt;&amp;gt; analytics on semi-structured data. The platform includes APIs for building&lt;br/&gt;&amp;gt; apps and a phenomenal toolset for data science. Developers can use&lt;br/&gt;&amp;gt; our toolset for easy data analysis &amp;amp; visualization. Get a free account!&lt;br/&gt;&amp;gt; &lt;a href=&#34;http://www2.precog.com/precogplatform/slashdotnewsletter&#34;&gt;http://www2.precog.com/precogplatform/slashdotnewsletter&lt;/a&gt;&lt;br/&gt;&amp;gt; _______________________________________________&lt;br/&gt;&amp;gt; Bitcoin-development mailing list&lt;br/&gt;&amp;gt; Bitcoin-development at lists.sourceforge.net&lt;br/&gt;&amp;gt; &lt;a href=&#34;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&#34;&gt;https://lists.sourceforge.net/lists/listinfo/bitcoin-development&lt;/a&gt;&lt;br/&gt;&amp;gt;&lt;br/&gt;-------------- next part --------------&lt;br/&gt;An HTML attachment was scrubbed...&lt;br/&gt;URL: &amp;lt;&lt;a href=&#34;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130409/81a373d3/attachment.html&amp;gt&#34;&gt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20130409/81a373d3/attachment.html&amp;gt&lt;/a&gt;;
    </content>
    <updated>2023-06-07T11:45:04Z</updated>
  </entry>

</feed>