As I understand, 12-word recovery codes are not more secure than 24-word right?

I mean, if you have a reliable source of entropy, the final BIP39 seed anter the stretch function will always be 512 bits.

The word count is only relevant when using a software wallet or similar with a pseudorandom source of entropy, just to increase those degrees of entropy.

Am I right? What do you think about this? #Bitcoin #askbitcoin

Reply to this note

Please Login to reply.

Discussion

24 words are more secure in case they are leaked in a random order. The order of 12 words can be brute forced, the order of 24 words cannot.