Daira-Emma Hopwood

Results 725 comments of Daira-Emma Hopwood

If we were to take the option mentioned above of using LongsightF-322/p/3 for the Merkle tree (644 \* 29 constraints for a depth of 29 with #647), and Pedersen for...

The cost of MiMC (specifically LongsightF-322/p/3) in one layer of the Merkle tree, including selection of the correct side of the authentication path, is 645 constraints. The corresponding cost for...

I suspect this won't get into Bamboo either, but I want us to reconsider progress on MiMC cryptanalysis by then.

Yes, I misunderstood the result in https://arxiv.org/abs/1412.5204 . LongsightL should not have this problem, although that doesn't quite work in the LP231 variant I posted before, because of the gcd...

Actually section 5.3 of the paper says that there is no reduction in the needed number of rounds for exponents of the form e = 2t + 1, relative to...

Note that: * gcd(7, p - 1) = 1 * gcd(15, p - 1) ≠ 1 * gcd(31, p - 1) = 1.

Fixing ``wallet_protectcoinbase.py`` now.

I agree it should be bumped from 1.0.8, but please let's discuss this early in the 1.0.9 release schedule. (Note that the dust check is a standard rule and not...