pull down to refresh

bip 39 is terrible

i'm calling it now, you are a troll

not even Core uses it, yet it's responsible for more coin theft than anything.

fact, not opinion.

reply

Could you point me in the direction of some reading material related to bip39's problems, I was genuinely unaware of it being controversial. Also might I ask what the best alternative is in your opinion?

reply

Core's aversion to it seems to be mostly about cryptographic strength

https://bitcoin.stackexchange.com/questions/88237/is-there-a-reason-to-why-bitcoin-core-does-not-implement-bip39

Haven't seen any great overall write-ups

Have seen other mentions about lack of versioning, and AI's potential to brute force, which coincides with cryptographic strength.

What I find most interesting is that it is the single greatest cause of stolen coin, through social engineering and inviting lazy storage

The alternative, at least how Core does it, is have you back up the seed and encrypt it.

Whether that's better is debatable, people lost coins that way too when it was more common. Harder to social engineer, but just as if not more easy to fuck up storage.

The other alternative is AEZEED, same social engineering weakness, but more obscure which mitigates that at least for now. If it became more popular that advantage would flip.

AEZEED also has versioning and better cryptographic strength as a direct response to criticism of BIP39, so it's "better" at least incrementally, but still doesn't really address the causes of lost coin thus far.

Key management is a fundamental CS issue for which there seems to be no ideal solution, key management faces the same challenges it has since systems started using it in the 70's/80's

I've given seriously thought to this and everything I think up comes back to moving trade-offs around. Better brainwallet tooling (and split brainwallet tooling for inheritance) may be the lowest hanging fruit and probably warrants some additional effort.

reply

eCash will have Vaults ...so...

reply

I bet, I know shitcoiners love crypto-theater features

reply
Having your funds forward only to a back up multisig address
and/or timelock sent to that adress after a certain period if you lose your main seed

is theater...

people here seem to respect your opinion as a dev for some reason, and its a sign of how dumb bitcoin development has become i believe

reply

Yea, normies will just make 2 seeds when they can't even properly handle 1 seed.

people here seem to respect your opinion

Because I just call balls and strikes, and don't feed into the loop of virtue signaling nerd sniping inanities you crypto script kiddies shit up the space with every week pretending you solved something

how dumb bitcoin development

ok shitcoiner

reply

Thanks, thats helpfull. Any additional opinions on trezor's SLIP 39?

reply

Might have some use cases, probably better than multisig in mosts contexts

Haven't pondered it much though

reply

for all we know, no one in core uses or is paid in bitcoin

reply

No argument there.

reply