Post
Topic
Board Bitcoin Technical Support
Merits 4 from 2 users
Re: Is Bitcoin Signature Messages still safe in 2024?
by
ranochigo
on 23/08/2024, 03:23:49 UTC
⭐ Merited by pooya87 (2) ,ABCbits (2)
I appreciate your thoughts, What should be an ideal message example? Something like this maybe? Do take into consideration that I'm the one to request it and verify it. Nobody else involded.
 
Message: "Bitcoin Signature for Proof of funds "
Signature: H5g/Jc...<...>...P6Ty5=
Timestamp: 2024-08-22 15:00:00
Not exactly sure what's the intent and the purpose of your message and I'd go with what I would request to be signed typically. The message would typically be:

"This Bitcoin Message is signed on 2024-08-22 at 1500 Hours UTC+1. This message proves that I, AzizLeBG is in control of the funds and the address as of this time to facilitate the transaction between XX and XX on 2024-08-23."

You should be clear on the purpose of the message, and the timestamp to ensure that no one else would be able to reuse your signed message for other purposes. Bitcoin Signature for Proof of Funds is way too generic and can easily be reused.
As for the verification part, since I'm acting as third party verification, Verifying should not be of any trouble as well? Still doable on Electrum. In this part, I would need an address, a signature and the exact message. The valid signature pop up should clear any concerns regarding ownership.
No, but you should understand that having a signed message doesn't necessarily mean that they would send you the funds in the future. ie. I can borrow 2BTC from someone else, sign the message and send them back. This doesn't guarantee that they would commit to the transaction.