Re: [bitcoin-dev] Satoshilabs secret shared private key scheme

2018-01-10 Thread Gregory Maxwell via bitcoin-dev
On Wed, Jan 10, 2018 at 8:28 PM, Pavol Rusnak wrote: > On 09/01/18 16:12, Pavol Rusnak via bitcoin-dev wrote: >> On 09/01/18 00:47, Gregory Maxwell wrote: >>> Have you considered using blind host-delegated KDFs, where the KDF >>> runs on the user's computer instead of the hardware wallet, but the

Re: [bitcoin-dev] Satoshilabs secret shared private key scheme

2018-01-10 Thread Pavol Rusnak via bitcoin-dev
On 09/01/18 16:12, Pavol Rusnak via bitcoin-dev wrote: > On 09/01/18 00:47, Gregory Maxwell wrote: >> Have you considered using blind host-delegated KDFs, where the KDF >> runs on the user's computer instead of the hardware wallet, but the >> computer doesn't learn anything about they keys? > > An

[bitcoin-dev] JSONRPC vulnerability in Electrum 2.6 to 3.0.4

2018-01-10 Thread Thomas Voegtlin via bitcoin-dev
A vulnerability has been found in Electrum, and patched in version 3.0.5. Please update your software if you are running an earlier version. The following is a copy of the summary and guidelines we posted on our website: https://github.com/spesmilo/electrum-docs/blob/master/cve.rst A CVE number f