-
br-m<leah6866:matrix.org> Hello, When spending XMR, do I need to manually select UTXOs/stealth addresses and manually set the change address?
-
br-m<leah6866:matrix.org> Or can I simply spend the funds and let the wallet automatically select multiple UTXOs and generate a change address, without harming my privacy?
-
br-m<p4xxus:matrix.org> as far as I know: some wallets have the ability to select UTXOs manually, but usually it is done automatically. Stealth addresses are generated automatically, you may want to create a subaddress when receiving something, but no need for sending. Change addresses are automatically generated too.
-
br-m<leah6866:matrix.org> @p4xxus:matrix.org: Thank you!
-
br-m<leah6866:matrix.org> Wouldn’t letting the wallet automatically select multiple UTXOs and generate a change address in a single transaction compromise my privacy?
-
br-m<leah6866:matrix.org> do I need to consolidate UTXOs into a single address first?
-
br-m<elongated:matrix.org> There is no change address
-
br-m<elongated:matrix.org> Change is sent back to your xmr account first address
-
br-m<elongated:matrix.org> Also no addresses are visible on chain
-
br-m<elongated:matrix.org> If you are combining lot of utxos, best to send it your own address, do a few churns and then spend it.
-
br-m<leah6866:matrix.org> @elongated:matrix.org: So I don’t need to manually select UTXOs or set a change address at all, I just need to churn some of the UTXOs?
-
br-m<elongated:matrix.org> If you are going to churn utxos and then spend them together, the churn is useless
-
br-m<elongated:matrix.org> If you have 10 utxos of 1 xmr and want to spend 9 xmr, you should combine those 10 utxos , then churn a few times before spending
-
br-m<elongated:matrix.org> Churn at random time, random nodes
-
br-m<leah6866:matrix.org> @elongated:matrix.org: What does “random nodes” mean? I only have a local monerod instance.
-
br-m<elongated:matrix.org> @leah6866:matrix.org: Use a trusted remote node once or twice while Churning if you don’t have tor
-
br-m<leah6866:matrix.org> > Use a trusted remote node once or twice while Churning if you don’t have tor
-
br-m<leah6866:matrix.org> I’m making transactions in Whonix, is it okay to use only the local node?
-
br-m<leah6866:matrix.org> When churning, should I use different wallet software, or is using the same wallet sufficient? Does XMR have a wallet fingerprinting issue similar to BTC?
-
br-m<leah6866:matrix.org> And what range of random waiting times is recommended between churnings?
-
br-m<pw:xmr.mx> same wallet is fine, you can even send it to the same address as the original transfer as Monero its doesnt know it uses stealth addresses and mixes it with others in a block.
-
br-m<pw:xmr.mx> it can be done straight away too
-
br-m<pw:xmr.mx> don't really need to churn either for the above reasons
-
br-m<leah6866:matrix.org> @pw:xmr.mx: Do all XMR wallet fingerprints look the same on-chain?
-
br-m<pw:xmr.mx> I'm going to day no... I think
-
br-m<pw:xmr.mx> because of stealth addresses and ring signatures
-
br-m<leah6866:matrix.org> Before full-chain membership proofs were introduced, did ring signatures have certain vulnerabilities?
-
br-m<pw:xmr.mx> plowsof @ofrnxmr:xmr.mx selsta @syntheticbird:monero.social
-
br-m<pw:xmr.mx> one of those will have the answer to that i would of thought... or someone else
-
selstadepends on what you mean with vulnerabilities
-
selstaimplementation bugs?
-
br-m<leah6866:matrix.org> selsta: e.g. poisoned output attack
-
br-m<pw:xmr.mx> eae attack?
-
selstayes, you can find info on the internet
-
br-m<leah6866:matrix.org> Thank you
-
br-m<leah6866:matrix.org> Spending this way: BTC KYC exchange -> BTC Core Wallet -> Convert to XMR -> Feather Wallet -> convert back to BTC -> Sparrow Wallet -> pay for goods
-
br-m<leah6866:matrix.org> For the "Feather Wallet XMR -> Sparrow Wallet BTC" step, would it be a problem to convert only exactly the amount needed and spend the entire amount immediately each time (avoid dealing with change)?
-
br-m<leah6866:matrix.org> Or would it be better to convert more BTC in advance and spend only part of it, leaving the rest for future purchases?
-
br-m<pw:xmr.mx> why convert to XMR and pay in BTC? can't you just pay in XMR.
-
br-m<pw:xmr.mx> much less gas fee
-
br-m<leah6866:matrix.org> @pw:xmr.mx: Some services do not support XMR, such as ProtonVPN.
-
br-m<pw:xmr.mx> since you mentioned feather you're talking desktop.
-
br-m<pw:xmr.mx> try stack wallet. multi coin and has built in Tor (you need to turn it on with single press of the onion icon
-
selstausing monero just as a short step won't give you good privacy generally
-
br-m<pw:xmr.mx> mullvad accepts XMR and no other information is needed
-
br-m<leah6866:matrix.org> Thank you. ProtonVPN was just an example, I’d like to know which approach is best for that kind of spending: “convert only the exact amount” or “convert more BTC in advance”?
-
br-m<pw:xmr.mx> best approach. get XMR, spend XMR :P
-
BlueyHealerAgain, they're talking about situations when this is not an option.
-
plowsoffor poisoned output attack just look at moonstoneresearch.com/2023/11/03/Postmortem-of-Monero-CCS-Hack.html
-
plowsofthat info isnt available to an outsider looking in - the eae is a targeted attack against people that are 1. worth being targeted 2. can be targeted (did you steal someone elses wallet and make the news? do you have a public address where people can send you transactions? are you consolidating outputs while depositing directly to a KYC'd CEX?
-
br-m<gingeropolous> " - Ledger stays. It's gated on hidapi being installed, is a handful of files, and monero has no clean switch for it short of hiding the library." >>> BAH!
10 minutes ago