Post
Topic
Board Development & Technical Discussion
Re: A covert-channel-free black-box signer without ZNPs
by
stv
on 15/12/2014, 22:48:52 UTC
This is a very nice protocol to tackle the problem of leakage, but it is not perfect either. It is practically the same as mine with ZK proofs or gmaxwell's based on Schnorr, because leakage can still happen via “u”.

But it is better than mine because it is easily computable. It is better than gmaxwell's because it does not require a protocol change.