<oembed><type>rich</type><version>1.0</version><author_name>npub1tjephawh7fdf6358jufuh5eyxwauzrjqa7qn50pglee4tayc2ntqcjtl6r</author_name><author_url>https://nostr.ae/npub1tjephawh7fdf6358jufuh5eyxwauzrjqa7qn50pglee4tayc2ntqcjtl6r</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2018-07-08&#xA;📝 Original message:On Sun, Jul 8, 2018, 19:23 Erik Aronesty via bitcoin-dev &lt;&#xA;bitcoin-dev at lists.linuxfoundation.org&gt; wrote:&#xA;&#xA;&gt; Pretty sure these non interactive sigs are more secure.&#xA;&gt;&#xA;&#xA;Schnorr signatures are provably secure in the random oracle model assuming&#xA;the discrete logarithm problem is hard in the used group.&#xA;&#xA;What does &#34;more secure&#34; mean? Is your construction secure with weaker&#xA;assumptions?&#xA;&#xA;-- &#xA;Pieter&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20180708/4f9bcb27/attachment.html&gt;</html></oembed>