<oembed><type>rich</type><version>1.0</version><author_name>npub1s4lj77xuzcu7wy04afcr487f0r3za0f8n2775xrpkld2sv639mjqsd44kw</author_name><author_url>https://nostr.ae/npub1s4lj77xuzcu7wy04afcr487f0r3za0f8n2775xrpkld2sv639mjqsd44kw</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2016-01-08&#xA;📝 Original message:Thanks, Anthony, that works!&#xA;&#xA;So...&#xA;&#xA;How many years until we think a 2^84 attack where the work is an ECDSA&#xA;private-&gt;public key derivation will take a reasonable amount of time?&#xA;&#xA;And Ethan or Anthony:  can you think of a similar attack scheme if you&#xA;assume we had switched to Schnorr 2-of-2 signatures by then?&#xA;&#xA;&#xA;And to everybody who might not be reading this closely:  All of the above&#xA;is discussing collision attacks; none of it is relevant in the normal case&#xA;where your wallet generates the scriptPubKey.&#xA;&#xA;&#xA;&#xA;-- &#xA;--&#xA;Gavin Andresen&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20160108/8f69988f/attachment.html&gt;</html></oembed>