{"type":"rich","version":"1.0","author_name":"npub1tjephawh7fdf6358jufuh5eyxwauzrjqa7qn50pglee4tayc2ntqcjtl6r","author_url":"https://nostr.ae/npub1tjephawh7fdf6358jufuh5eyxwauzrjqa7qn50pglee4tayc2ntqcjtl6r","provider_name":"njump","provider_url":"https://nostr.ae","html":"📅 Original date posted:2018-07-08\n📝 Original message:On Sun, Jul 8, 2018, 19:23 Erik Aronesty via bitcoin-dev \u003c\nbitcoin-dev at lists.linuxfoundation.org\u003e wrote:\n\n\u003e Pretty sure these non interactive sigs are more secure.\n\u003e\n\nSchnorr signatures are provably secure in the random oracle model assuming\nthe discrete logarithm problem is hard in the used group.\n\nWhat does \"more secure\" mean? Is your construction secure with weaker\nassumptions?\n\n-- \nPieter\n-------------- next part --------------\nAn HTML attachment was scrubbed...\nURL: \u003chttp://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20180708/4f9bcb27/attachment.html\u003e"}
