<oembed><type>rich</type><version>1.0</version><author_name>npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_name><author_url>https://nostr.ae/npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2015-12-19&#xA;📝 Original message:At the recent Scaling Bitcoin conference in Hong Kong we had a chatham&#xA;house rules workshop session attending by representitives of a super&#xA;majority of the Bitcoin hashing power.&#xA;&#xA;One of the issues raised by the pools present was block withholding&#xA;attacks, which they said are a real issue for them. In particular, pools&#xA;are receiving legitimate threats by bad actors threatening to use block&#xA;withholding attacks against them. Pools offering their services to the&#xA;general public without anti-privacy Know-Your-Customer have little&#xA;defense against such attacks, which in turn is a threat to the&#xA;decentralization of hashing power: without pools only fairly large&#xA;hashing power installations are profitable as variance is a very real&#xA;business expense. P2Pool is often brought up as a replacement for pools,&#xA;but it itself is still relatively vulnerable to block withholding, and&#xA;in any case has many other vulnerabilities and technical issues that has&#xA;prevented widespread adoption of P2Pool.&#xA;&#xA;Fixing block withholding is relatively simple, but (so far) requires a&#xA;SPV-visible hardfork. (Luke-Jr&#39;s two-stage target mechanism) We should&#xA;do this hard-fork in conjunction with any blocksize increase, which will&#xA;have the desirable side effect of clearly show consent by the entire&#xA;ecosystem, SPV clients included.&#xA;&#xA;&#xA;Note that Ittay Eyal and Emin Gun Sirer have argued(1) that block&#xA;witholding attacks are a good thing, as in their model they can be used&#xA;by small pools against larger pools, disincentivising large pools.&#xA;However this argument is academic and not applicable to the real world,&#xA;as a much simpler defense against block withholding attacks is to use&#xA;anti-privacy KYC and the legal system combined with the variety of&#xA;withholding detection mechanisms only practical for large pools.&#xA;Equally, large hashing power installations - a dangerous thing for&#xA;decentralization - have no block withholding attack vulnerabilities.&#xA;&#xA;1) http://hackingdistributed.com/2014/12/03/the-miners-dilemma/&#xA;&#xA;-- &#xA;&#39;peter&#39;[:-1]@petertodd.org&#xA;00000000000000000188b6321da7feae60d74c7b0becbdab3b1a0bd57f10947d&#xA;-------------- next part --------------&#xA;A non-text attachment was scrubbed...&#xA;Name: signature.asc&#xA;Type: application/pgp-signature&#xA;Size: 650 bytes&#xA;Desc: Digital signature&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20151219/8c0d100a/attachment.sig&gt;</html></oembed>