00:36:08 UkoeHB: TX chaining means a transaction can be signed regardless of the membership proof, and the membership proof can be performed later. This means the spend sig isn't bound to the proof. This allows anyone, with sufficient context, to create any membership proof they want, including one of 1 ..= 127, actual output, which effectively doxxes the real spend. 00:37:22 Any multisig member has sufficient context and can harm on-chain privacy accordingly. Currently, they can only harm off-chain privacy by publishing view keys. 00:38:07 It's a practically pointless technicality introduced by malleability in the membership proof I hadn't seen prior discussed. 02:04:55 yes I guess that's possible 13:24:43 Could someone tell me what the current leaning on the tx_extra field is? I'm worried that if not removed the coming monero revolution would be jeopardized. 13:30:41 #monero:monero.social 13:32:13 This room (MRL) is a lab / meant for work. q&a for #monero:monero.social 13:53:49 Rucknium[m] Do you keep track of p2pool payouts being used as decoys? Did their usage actually decrease? 14:42:54 sech1: I have some draft code that will be able to check that soon. 21:49:48 "ima_75b6a4c.jpeg" <- I reached out to the authors of this paper to see if we could ask questions about their constant size range proofs. They responded: 21:49:48 “Thanks for your interest. 21:49:48 We have some optimizations in mind for Monero and may be interested in collaborating with the Monero Research Lab.” 21:49:48 They also mentioned that Luke reached out as well. I’m going to invite them to the meeting on Wednesday and see if they can make it. 21:57:06 thanks xmrack[m] 22:00:32 xmrack: Wow. Thanks! 22:00:33 you're a ⭐️ xmrack 22:06:33 No problem 22:06:56 If anyone has yet to read the paper and would like to. Feel free to reach out to me or atomfried