{"type":"rich","version":"1.0","author_name":"npub1s4lj77xuzcu7wy04afcr487f0r3za0f8n2775xrpkld2sv639mjqsd44kw","author_url":"https://nostr.ae/npub1s4lj77xuzcu7wy04afcr487f0r3za0f8n2775xrpkld2sv639mjqsd44kw","provider_name":"njump","provider_url":"https://nostr.ae","html":"📅 Original date posted:2016-01-07\n📝 Original message:On Thu, Jan 7, 2016 at 8:26 PM, Matt Corallo \u003clf-lists at mattcorallo.com\u003e\nwrote:\n\n\u003e So just because other attacks are possible we should weaken the crypto\n\u003e we use? You may feel comfortable weakening crypto used to protect a few\n\u003e billion dollars of other peoples' money, but I dont.\n\u003e\n\nNo...\n\nI'm saying we can eliminate one somewhat unlikely attack (that there is a\nbug in the code or test cases, today or some future version, that has to\ndecide what to do with \"version 0\" versus \"version 1\" witness programs) by\naccepting the risk of another insanely, extremely unlikely attack.\n\nReference for those who are lost:\n\nhttps://github.com/CodeShark/bips/blob/segwit/bip-codeshark-jl2012-segwit.mediawiki#witness-program\n\nMy proposal would be to just do a version 0 witness program now, that is\nRIPEMD160(SHA256(script)).\n\nAnd ten or twenty years from now, if there is a plausible attack on\nRIPEMD160 and/or SHA256, revisit and do a version 11 (or whatever).\n\nIt will simplify the BIP, means half as many test cases have to be written,\nmeans a little more scalability, and is as secure as the P2SH and P2PKH\neverybody is using to secure their bitcoin today.\n\nTell you what:  I'll change my mind if anybody can describe a plausible\nattack if we were using MD5(SHA256), given what we know about how MD5 is\nbroken.\n\n\n---\n\nI'm really disappointed with the \"Here's the spec, take it or leave it\"\nattitude. What's the point of having a BIP process if the discussion just\ncomes down to \"We think more is better. We don't care what you think.\"\n\n-- \n--\nGavin Andresen\n-------------- next part --------------\nAn HTML attachment was scrubbed...\nURL: \u003chttp://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20160107/ba55bae0/attachment.html\u003e"}
