-
m-relay<total.calitabby.death:catgirl.cloud> CRISPY IS A PEDO TROON FAGGOT
-
m-relay<total.calitabby.death:catgirl.cloud> CRISPY IS A PEDO TROON FAGGOT
-
m-relay<total.calitabby.death:catgirl.cloud> CRISPY IS A PEDO TROON FAGGOT
-
m-relay<coincat:matrix.org> Could the moderators please remove this obvious scam? It seems like this chat is dead
-
m-relay<coincat:matrix.org> plowsof monerobull
-
m-relay<monerobull:matrix.org> On it
-
m-relay<coincat:matrix.org> Helios: y^2 = x^3 - 3*x + 15789920373731020205926570676277057129217619222203920395806844808978996083412 over GF(p)
-
m-relay<coincat:matrix.org> Selene: y^2 = x^3 - 3*x + 50691664119640283727448954162351551669994268339720539671652090628799494505816 over GF(q)
-
m-relay<coincat:matrix.org> Both of these fail the Discriminants, Ladders, Twists, and Completeness checks. Is it safe to use them with the upcoming FCMP++ upgrade for Monero?
-
m-relay<coincat:matrix.org> Helios and Selene will be used. I obtained this information from the FCMP++ optimization competition: github.com/j-berman fcmp-plus-plus-optimization-competition/tree/main
-
m-relay<coincat:matrix.org> Helios and Selene will be used. I obtained this information from the FCMP++ optimization competition: github.com/j-berman/fcmp-plus-plus-optimization-competition/tree/main
-
m-relay<monerobull:matrix.org> jberman:
-
m-relay<monerobull:matrix.org> kayabanerve:
-
m-relay<kayabanerve:matrix.org> safecurves defines a lot of unnecessary criteria. A small discriminant implies a speedup, and I don't remember the exact discriminant Helios/Selene has off the top of my head, feel free to share coincat, but it doesn't imply a break.
-
m-relay<kayabanerve:matrix.org> The lack of existence of a single-coordinate ladder is meaningless. We also can't have one as it requires a cofactor IIRC and we require prime-order curves for security reasons.
-
m-relay<kayabanerve:matrix.org> Twist security is meaningless as well. The security model requires small-subgroup/off-curve points don't cause issues. We don't have small subgroups in our curves and we reject off-curve points. Which specific twist criteria do we fail again?
-
m-relay<kayabanerve:matrix.org> As for completeness, we do have complete point addition formulas.
-
m-relay<kayabanerve:matrix.org> I reviewed this several months ago FWIW, hence why I don't immediately recall some of these points.
39 minutes ago