<oembed><type>rich</type><version>1.0</version><author_name>npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd</author_name><author_url>https://nostr.ae/npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2014-04-23&#xA;📝 Original message:On Wed, Apr 23, 2014 at 8:57 PM, Gregory Maxwell &lt;gmaxwell at gmail.com&gt; wrote:&#xA;&#xA;&gt; Hm? I didn&#39;t think this is at all what they did.  What they claim to&#xA;&gt; do is to prioritize transactions in their mempool from people who pay&#xA;&gt; them&#xA;&gt;&#xA;&#xA;That&#39;s the definition of a Finney attack, right? A tx is broadcast and&#xA;nodes normally take the first one they saw, allowing you to measure&#xA;propagation and use double spend alerts to get pretty good confidence,&#xA;pretty quick. A Finney attacker doesn&#39;t do that and includes a double&#xA;spend, so the one in the mempool gets overridden.&#xA;&#xA;I mean, I hope that&#39;s the definition of a Finney attack, given that I&#xA;coined the term :)&#xA;&#xA;&#xA;&gt; I think we have very clear evidence that the Bitcoin community doesn&#39;t&#xA;&gt; care if miners reorder transactions in their mempool to profitable&#xA;&gt; ends: In https://bitcointalk.org/index.php?topic=327767.0 it&#39;s&#xA;&gt; demonstrated that GHash.IO, currently the largest publicly identified&#xA;&gt; pool was used to rip off Betcoin dice via double-spends.&#xA;&gt;&#xA;&#xA;Yes, very disappointing. Though I&#39;d hope that if this sort of thing was&#xA;sustained over months and merchants started dropping Bitcoin as a result,&#xA;miners would pay more attention.&#xA;&#xA;Right now I suspect miners don&#39;t pay attention to anything other than&#xA;hardware builds though.&#xA;&#xA;Yes, Bitcoin is imperfect at stopping double spends today. It can certainly&#xA;be improved! There are plenty of oft-discussed measures like double spend&#xA;alerts and discouraging Finney-attack blocks as was debated extensively in&#xA;2011. This thread is just a third such proposal.&#xA;&#xA;More importantly, it&#39;s possible to deploy technological approaches to&#xA;&gt; make zero-conf very secure against reversal: Things like performing&#xA;&gt; multi-sig with a anti-double-spending system&#xA;&gt;&#xA;&#xA;These sorts of proposals are all just ways of saying block chains kind of&#xA;suck and we should go back to using trusted third parties.&#xA;&#xA;That may well be how the Bitcoin experiment ends, but I think we all agree&#xA;here that block chains and decentralised consensus are quite spiffy and we&#xA;should try hard to make them work as well as possible before just shrugging&#xA;and say &#34;find a trusted third party&#34;. Otherwise why not just go back to&#xA;using MasterCard? Any TTP that enforces anti double spending rules will be&#xA;a lot more centralised than miners, given the difficulty of finding them,&#xA;their need for a strong brand/reputation, and the difficulty of getting&#xA;everyone to agree on them.&#xA;&#xA;Not to mention that this solution makes Bitcoin sound like a joke currency.&#xA;It&#39;s a super duper low fee totally decentralised financial system .....&#xA;unless you want to buy something in, you know, a shop. And walk out. Then&#xA;you need to sign up with this company that looks suspiciously like a bank,&#xA;and pay their fees, and yeah there&#39;s like 3 to pick from. Totally&#xA;decentralised!&#xA;&#xA;&#xA;&gt; Doubly so because a &#39;nasty&#39; party with non-trivial hash-power can&#xA;&gt; doublespend their own transactions&#xA;&gt;&#xA;&#xA;If a miner is vertically integrated and defrauding merchants themselves,&#xA;with no service component, pretty quickly people would talk to each other,&#xA;notice this pattern and stop trading with them, making their coins rather&#xA;useless. Also if their real identity is ever revealed they could be liable&#xA;and there&#39;d be a lot of people wanting to sue them.&#xA;&#xA;So I think the ability to resell double spending to lots of different&#xA;people around the world seems important to practicality.&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20140423/06e5e291/attachment.html&gt;</html></oembed>