<oembed><type>rich</type><version>1.0</version><author_name>npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd</author_name><author_url>https://nostr.ae/npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2015-06-16&#xA;📝 Original message:&gt;&#xA;&gt; &#34;How do you plan to deal with security &amp; incident response for the&#xA;&gt; duration you describe where you will have control while you are deploying&#xA;&gt; the unilateral hard-fork and being in sole maintainership control?&#34;&#xA;&gt;&#xA;&#xA;How do we plan to deal with security &amp; incident response - exactly the same&#xA;way as before. Remember that XT is basically Core plus a few patches.&#xA;&#xA;Gavin and myself are both on the bitcoin-security mailing list and have&#xA;been for years. Both of us have experience of responding to very serious&#xA;and tight-deadline security incidents, for example, the accidental bdb hard&#xA;fork and (in my case) when we discovered that Android phones had so little&#xA;entropy in them that different devices were actually generating the same&#xA;keys!&#xA;&#xA;That one required co-ordinated crash rollouts of multiple wallets across&#xA;the Bitcoin ecosystem because there was a parallel investigation into key&#xA;collisions taking place in an open forum and they were not far from&#xA;discovering the truth about how badly the Android RNG was broken   (I knew&#xA;because at the time I had access to the Google internal Android bug&#xA;tracker). I organised the whole thing.&#xA;&#xA;So I think we&#39;ll manage. But I don&#39;t expect things to exist in a state of&#xA;disjointness for very long. XT will rebase on top of Core and follow it&#39;s&#xA;releases for as long as there seems to be interest in bigger blocks and as&#xA;long as I have the time/energy/interest. If the &gt;1mb chain wins then Core&#xA;will have to adopt the new ruleset or simply stop being relevant, as it&#xA;will have no users. That wouldn&#39;t make much sense.&#xA;&#xA;Now, there have been concerns raised that a hard fork is unbelievably&#xA;risky, the sky will fall, the value of Bitcoin will drop to zero, etc. I&#xA;don&#39;t believe it&#39;s anywhere near that risky. The patch Gavin is working on&#xA;requires both a miner majority *and* also has a date trigger in it. Much&#xA;like previous forks, in fact. So nobody should be taken by surprise if/when&#xA;bigger blocks appear, because it will have been known for a long time&#xA;beforehand that there was sufficiently strong consensus, there will have&#xA;been messages printed to the node logs, announcements in various places and&#xA;so on.&#xA;&#xA;Does that help clear things up?&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20150616/abf446cc/attachment.html&gt;</html></oembed>