Does multi-sig,

using two different signing devices mitigate

From 2 different manufacturers

mitigate the Dark Skippy Nonce attack?

If both devices were independently loaded with corrupt software, I guess it would still be possible?

Props to nostr:npub1r8l06leee9kjlam0slmky7h8j9zme9ca32erypgqtyu6t2gnhshs3jx5dk for 2 great episodes on this issue.

Reply to this note

Please Login to reply.

Discussion

nostr:npub1m5mr8y7wgvcufav43hgda376xsm0t5qrerur30m23ek6w8gmn88q9hympt

I think so It woukd require collusion between 2 different hardware wallets.

Seems unlikely that two different vendors’ devices of your quorum would be corrupted at the same time, undetected.

My brain says single sig is safe enough but my irrational paranoia says a multi is safer. The slippery slope of too much complexity is siren's song.