-
selsta
luigi1111: please merge the merge list early, it contains trivial patches that fix compile related regression
-
luigi1111
ok
-
chad[m]
W.r.t. the recent privacy bug for wallets spending a TX at exactly 10 block age: as anyone done an analysis on the effects on neighboring transactions? For example, if one of the decoys in my transaction were spent elsewhere at exactly 10 blocks, it would be trivial to show that it was spent elsewhere, and therefore only a decoy in my TX; thus... my privacy is reduced, even though I waited longer than 10 blocks to spend
-
chad[m]
I'd be curious to know:
-
chad[m]
1) how many TXs were spent with 0 privacy (e.g. this bug)
-
chad[m]
2) how many other TXs used those 0-privacy outputs as decoys
-
sethsimmons
> <@chad:monero.social> I'd be curious to know:
-
sethsimmons
> 1) how many TXs were spent with 0 privacy (e.g. this bug)
-
sethsimmons
> 2) how many other TXs used those 0-privacy outputs as decoys
-
sethsimmons
-
sethsimmons
Even with the bug you can't know for certain if its true spend or decoy, it just makes the guesses more likely to be correct.
-
sethsimmons
It seems there is very little chance it has a snowballing effect on privacy due to how few of these situations occurred.
-
chad[m]
This:
-
chad[m]
> The decoy selection algorithm has next to 0 chance of selecting extremely recent outputs as decoys.
-
chad[m]
Contradicts this:
-
chad[m]
> only ~1% of outputs used in rings were between 10 and 12 blocks old, and a percentage of those were likely decoys
-
chad[m]
A next to 0 percentage were likely decoys. More likely >99% of them were real spends
-
chad[m]
If 1% of outputs were exposed because of this issue, wouldn't this mean 1% of decoys in other transactions used one of these 0-privacy outputs?
-
sethsimmons
That would be the absolute maximum but likely less depending on timing of those transactions due to the decoy selection algo.
-
sethsimmons
Also, 1% of decoys, if affected and known, would mean 1 decoy out of 10 transactions would be able to be discounted, so practically no impact to users who aren't directly affected by the bug.
-
sethsimmons
But yes, 1% is still not 0%.
-
sethsimmons
The real world impact on those not directly affected by the bug is still practically none, IMO.
-
chad[m]
Gotcha. Thanks, that's what I was trying to understand
-
chad[m]
With my luck, I probably picked 11/11 shit decoys ;)
-
sethsimmons
<chad[m] "With my luck, I probably picked "> That would be one hell of a bad ring 😂
-
john_alan
@moneromoooo: are you still working part time paid on Monero or back to voluntary contributions?
-
moneromoooo
I still have a ffs going, slowly.
-
doser[m]
hi all. Am new to monero.
-
doser[m]
Is there a mobile wallet that I can connect with my node?
-
doser[m]
so like Ligtning Nwtwork does it over Onion
-
moneromoooo
Try asking in #monero, they should know.
-
john_alan
Ok cool so you’re still interested in paid woeking
-
john_alan
Working *
-
john_alan
I can’t see it in funding required moneromoooo
-
john_alan
-
moneromoooo
-
plowsof[m]
Welcome!
getmonero.org is a better place to start your journey.
-
john_alan
Awesome thanks moo
-
luigi1111w
.merges
-
xmr-pr
7813 7814 7815