Default avatar
npub15elf...yswk
npub15elf...yswk
"Nearly all threshold ECDSA based TSS implementations are vulnerable to key extraction attacks despite having undergone multiple security audits." TL,DR: Most MPC implementations appear to be vulnerable. Bitcoin users unaffected.
I would simply not build software that requires permission from the NYAG. It's not complicated
Reading Dr. Niel Ten Oever's Ph.D thesis right now for the University of Amsterdam and it's such a banger: The entanglement of the Internet with the daily practices of governments, companies, institutions, and individuals means that the processes that shape the Internet also shape society. In this dissertation, I study the norms that shape the Internet’s under- lying structure through its transnational governance. Norms are the ‘widely-accepted and internalised [sic] principles or codes of conduct that indicate what is deemed to be permitted, prohibited, or required of agents within a specific community’ (Erskine and Carr 2016, 87). Internet governance is the development, coordina- tion, and implementation of policies, technologies, protocols, and standards. Internet governance produces a global and interop- erable Internet functioning as a general-purpose communication network in transnational governance bodies. I examine four cases of norm conflict and evolution in three key Internet governance institutions: the Internet Engineering Taskforce (IETF); the Internet Corporation for Assigned Names and Numbers (ICANN); and the Réseaux IP Européens Network (RIPE). https://www.academia.edu/44194819/Wired_Norms_Inscription_resistance_and_subversion_in_the_governance_of_the_Internet_infrastructure image
🎶 3AC was first in line 🎶 🎶 Now Silvergate and Gemini 🎶 🎶 SBF, Caroline 🎶c 🎶 Gensler wants Binance to die 🎶 🎶 We didn't play with shitcoins 🎶 image
The combo of: a) this Politico oral history with Biden admin officials marking the one year anniversary of the war in Ukraine - in which sanctions against Russia are described in terms of 'shock-and-awe' and collective punishment, with Treasury officials imagining themselves as warfighters deterring enemy behavior and blithely ignoring collateral damage https://www.politico.com/news/magazine/2023/02/24/russia-ukraine-war-oral-history-00083757 and b) this Bloomberg article published on the same day, quietly admitting that sanctions proponents have given up on them having any impact on Russia's behavior https://www.bloomberg.com/news/features/2023-02-24/russia-sanctions-to-stop-putin-s-war-in-ukraine-became-300b-distraction has convinced me we're in the final stage of the decline of the dollar system, in a "where are we going and why are we in this handbasket?" kind of way.
I think it's great that this mining pool came back from the dead right after that first non-standard ordinals transaction was mined and people started getting shouty. Definitely not an existing player spoofing the OP_RETURN in the coinbase transaction to avoid criticism! image
Sharing this to help motivate me to get finish Chapter 7 and what I anticipate to be a loooong slog through Chapter 8: image
Excited to announce Based, a new programming paradigm for aspiring blockchain developers! How it works: * You send me a DM on Nostr * I explain to you that you don't need a blockchain * You call me a poisonous feminine hygiene product, or a toxic maxipad, or whatever, idk * Five years later you realize you're wasting your life and rebrand as being 'Pro Bitcoin', just in time to buy the top of the next cycle. Welcome to the future. It's Based.
gm, thinking of ways a client can bootstrap a list of relays and test that they're minimally trustworthy in some way. maybe we end up defaulting to nip-05 relay recommendations - if that happens, would providers injecting their own relays into a user's records be helpful or viewed as an attack vector? maybe a canary bot that tries to send restricted samizdata - 3D PDW files, politcally sensitive speech, financial transactions to blacklisted addresses - through a list of relays and testing end-to-end delivery would be useful?
I've added the word 'canary' to the description field for for wss://nostr.relayer.se. So, if for some reason, you wanted to run this command in your terminal: curl -H 'Accept: application/nostr+json' https://nostr.relayer.se ...and check whether the word 'canary' is in the description, or if the word 'canary' was for some reason removed? You can do that now.
Finally set up my lud16 address, just gonna start zapping randos
yeeeurgh just discovered a nasty bug in wss://nostr.relayer.se. fixing now, apologies for the unscheduled maintenance window :(
Question for relay users (so, everyone on nostr): So far I've been focusing on making my relay as private as possible - Onion Hidden V3 Service, running in njal.la, top level domains registered in privacy friendly jurisdictions, etc. What other features would you like to see in a privacy-focused relay?