Global Feed Post Login
Replying to Avatar ABH3PO

Looks good, my main concern is if there are only a few big signers they can collude to reveal all users keys, if they are greater than threshold T, non colluding signers will not even know that keys are compromised, even the user will never know if no obvious signatures are made, and they will go on using their key as if its good, while all their private comms could be decrypted.

It's still better than relying on one server, it's just the worst case scenario I could think of.

Avatar
hodlbod 0mo ago

Yeah, that's part of the threat model. Users could choose do do a higher threshold, like 4/5 or something, or even 3/3 and hold one shard, but that's the tradeoff.

Reply to this note

Please Login to reply.

Discussion

No replies yet.