16:00:08 | orwell.freenode.net: | topic is: This channel is not about short-term Bitcoin development | http://bitcoin.ninja/ | This channel is logged. | For logs and more information, visit http://bitcoin.ninja |
16:00:08 | orwell.freenode.net: | Users on #bitcoin-wizards: andy-logbot kmels xenog ryanxcharles erasmosp_ hearn oleganza LeMiner NewLiberty gill3s StephenM347 p15 jhogan42 ThomasV satwo_ DougieBot5000 jmcn Guyver2 gielbier spinza btcdrak SDCDev GGuyZ Quanttek c-cex-yuriy GAit jtimon p15x llllllllll stonecoldpat Starduster bedeho Adlai Logicwax shesek amincd helo dEBRUYNE_ Relos justanotheruser hktud0 priidu b_lumenkraft hashtagg veox fluffypony sparetire_ uumdbmd _whitelogger kristofferR [7] |
16:00:08 | orwell.freenode.net: | Users on #bitcoin-wizards: Fistful_of_Coins cpacia PRab jeremyrubin Dr-G yoleaux prodatalab Jaamg dansmith_btc melvster dc17523be3 arubi_ hulkhogan_ felipelalli Emcy binaryatrocity d1ggy se3000 Guest20852 dgenr8 cluckj rustyn deego theymos Cory face_ mkarrer sipa waxwing scoria andytoshi Eliel azariah SubCreative isis NeatBasis kyuupichan metamarc gnusha amiller kanzure harrow ebfull leakypat xabbix HM iddo michagogo tromp_ harrigan_ copumpkin Madars mariorz epscy |
16:00:08 | orwell.freenode.net: | Users on #bitcoin-wizards: vonzipper catcow a5m0_ smooth dignork ttttemp_ pollux-bts runeks coryfields CryptoGoon AlexStraunoff CodeShark poggy jbenet cfields platinuum adams__ Tiraspol livegnik sneak K1773R Alanius nsh tromp petertodd brand0 c0rw1n yorick elastoma koshii ir2ivps5 sadoshi jgarzik OneFixt richardus bosma luny Krellan null_radix PaulCapestany nephyrin phedny so BrainOverfl0w @ChanServ Oizopower gwillen kinlo sl01 STRML warptangent espes__ AdrianG |
16:00:08 | orwell.freenode.net: | Users on #bitcoin-wizards: gavinandresen luigi1111 Anduck wizkid057 TD-Linux BlueMatt midnightmagic otoburb kumavis starsoccer d9b4bef9 mr_burdell gribble jessepollak ryan-c larraboj Keefe indolering Graet cryptowest_ Apocalyptic catlasshrugged_ jaromil comboy berndj sturles [ace] merlincorey wumpus Iriez EasyAt_ Zouppen nickler crescendo morcos Taek mm_1 dasource huseby CryptOprah s1w throughnothing roasbeef eric sdaftuar GreenIsMyPepper Xzibit17 weex_ gmaxwell warren |
16:00:08 | orwell.freenode.net: | Users on #bitcoin-wizards: airbreather lmatteis [d__d] Muis mikolalysenko yrashk mappum artifexd forrestv dardasaba__ nanotube wiz ajweiss lnovy bliljerk101 optimator Meeh guruvan BananaLotus SwedFTP Luke-Jr pigeons jonasschnelli lmacken cdecker afdudley phantomcircuit davout |
16:19:30 | hulkhogan_: | following the list discussion has been the biggest learning experience since i got into bitcoin, esp seeing 'the process' happen in real-time, instead of reading about it later.. |
16:20:00 | hulkhogan_: | hats off there ! |
17:06:33 | irc.freenode.net: | Disconnected from irc.freenode.net (ERROR :Closing Link: wpsoftware.net (Ping timeout: 240 seconds)) |
17:07:46 | hobana.freenode.net: | topic is: This channel is not about short-term Bitcoin development | http://bitcoin.ninja/ | This channel is logged. | For logs and more information, visit http://bitcoin.ninja |
17:07:46 | hobana.freenode.net: | Users on #bitcoin-wizards: andy-logbot andytoshi NkWsy bosma grubles justanotheruser zooko wallet42 kompreni lclc frankenmint temujin kmels xenog ryanxcharles erasmosp_ LeMiner NewLiberty gill3s StephenM347 p15 jhogan42 satwo_ DougieBot5000 jmcn Guyver2 gielbier spinza btcdrak GGuyZ Quanttek c-cex-yuriy GAit jtimon p15x llllllllll stonecoldpat Starduster bedeho Adlai Logicwax shesek amincd helo dEBRUYNE_ Relos hktud0 b_lumenkraft hashtagg veox fluffypony sparetire_ |
17:07:46 | hobana.freenode.net: | Users on #bitcoin-wizards: uumdbmd _whitelogger kristofferR [7] Fistful_of_Coins cpacia PRab jeremyrubin Dr-G yoleaux prodatalab Jaamg dansmith_btc melvster dc17523be3 arubi_ hulkhogan_ felipelalli Emcy binaryatrocity d1ggy se3000 Guest20852 dgenr8 cluckj rustyn deego theymos Cory face_ mkarrer sipa waxwing scoria Eliel azariah SubCreative isis NeatBasis kyuupichan metamarc gnusha amiller kanzure harrow ebfull leakypat xabbix HM iddo michagogo tromp_ harrigan_ copumpkin |
17:07:47 | hobana.freenode.net: | Users on #bitcoin-wizards: Madars mariorz epscy vonzipper catcow a5m0_ smooth dignork ttttemp_ pollux-bts runeks coryfields CryptoGoon AlexStraunoff CodeShark poggy jbenet cfields platinuum adams__ Tiraspol livegnik sneak K1773R Alanius nsh tromp petertodd brand0 c0rw1n yorick elastoma koshii ir2ivps5 sadoshi jgarzik OneFixt richardus luny Krellan null_radix PaulCapestany nephyrin phedny so davout phantomcircuit afdudley cdecker lmacken jonasschnelli pigeons Luke-Jr |
17:07:47 | hobana.freenode.net: | Users on #bitcoin-wizards: SwedFTP BananaLotus guruvan Meeh optimator bliljerk101 lnovy ajweiss wiz nanotube dardasaba__ forrestv artifexd mappum yrashk mikolalysenko Muis [d__d] lmatteis airbreather warren gmaxwell weex_ Xzibit17 GreenIsMyPepper sdaftuar eric roasbeef throughnothing s1w CryptOprah huseby dasource mm_1 Taek morcos crescendo nickler Zouppen EasyAt_ Iriez wumpus merlincorey [ace] sturles berndj comboy jaromil catlasshrugged_ Apocalyptic cryptowest_ Graet |
17:07:47 | hobana.freenode.net: | Users on #bitcoin-wizards: indolering Keefe larraboj ryan-c jessepollak gribble mr_burdell d9b4bef9 starsoccer kumavis otoburb midnightmagic BlueMatt TD-Linux wizkid057 Anduck luigi1111 gavinandresen AdrianG espes__ warptangent STRML sl01 kinlo gwillen Oizopower @ChanServ BrainOverfl0w |
20:53:40 | maaku: | maaku is now known as Guest27461 |
20:56:59 | Guest27461: | Guest27461 is now known as maaku |
21:26:02 | amiller: | shots fired in the world of snarks |
21:26:11 | amiller: | https://eprint.iacr.org/2015/437 |
21:26:45 | amiller: | it seems like when the SCIPR team made optimizations on the original GGPR snark protocol, they introduced an optimization that wrecks the entire scheme |
21:27:19 | amiller: | "the protocol does not appear in that peer-reviewed paper; instead, it appears only in a technical report, where it is justified via a lemma that lacks a proof. Unfortunately, the lemma is incorrect, and the modified protocol is unsound. With probability one, an adversary can submit false statements and proofs that the verifier will accept." |
21:27:36 | kanzure: | neat |
21:27:59 | kanzure: | i wonder how incorrect it is |
21:28:29 | amiller: | well, seems like it's pretty dangerously incorrect, but also fixable |
21:28:55 | amiller: | "libsnark authors are developing a patch.... Preliminary performance results suggest that for applications with small IO relative to the computation, the performance impact is quite small" |
21:38:50 | gmaxwell: | Good thing no one wanted to build something with unboudned undetectable inflation based on that.... :) |
21:39:51 | gmaxwell: | amiller: is the problem related to vanishing inputs? |
21:40:11 | gmaxwell: | (like you pass in zeros and end up with a zero proof which is trivially true?) |
21:41:27 | gmaxwell: | (I ask because the comment about IO and that input consistency validation was something I didn't really get) |
21:44:37 | amiller: | i dunno, the high level idea is that the scipr optimization ensures that some set of polynomials is distinct |
21:44:54 | amiller: | but actually what's required is to show that the set of polynomials are all linearly independent, and their optimization doesn't guarantee that |
22:20:33 | nsh: | hm |
23:46:36 | nsh: | what's the d-PKE assumption? |
23:49:20 | nsh: | power knowledge of exponent |