pubkeys are derived from privkeys by ECC, which can be vulnerable to Shor's algorithm by simply calculating your privkey out of your pubkey. As long as your pubkey is not revealed, there can be no long range attack. P2WSH/P2WPKH only reveal a UTXO address specific pubkey when you spend them (so you have about 10 min for a short range attack).

Reply to this note

Please Login to reply.

Discussion

Great list! ๐Ÿ‘๐Ÿงก

Maybe also consider adding an audit to Tor attack vectors like timing analysis / Sybil attacks, especially if #Nostr is used for direct communication.

https://cointelegraph.com/news/tor-germany-timing-attack-privacy

Maybe in general "we need more security audits" should be a point in the list

Or is there something more specific I'm missing for a Tor section of the list?

Tor is imho the backbone of our privacy. We need to donate more for ita development and node maintenance and/or run a node ourselves if we have the technical skills and expertise to do so.