Time to worry about 80-bit collision attacks or not?



Summary:

In this message, Gavin Andresen asks about the timeline for a 2^84 attack on ECDSA private->public key derivation. He also asks if there is a similar attack scheme assuming the switch to Schnorr 2-of-2 signatures. The context clarifies that this discussion is specifically about collision attacks and not relevant in the normal case where a wallet generates the scriptPubKey.


Updated on: 2023-06-11T02:59:10.882683+00:00