Bitcoin Forum

Bitcoin => Development & Technical Discussion => Topic started by: interiawp on January 07, 2022, 12:17:29 PM



Title: strange curve anomaly
Post by: interiawp on January 07, 2022, 12:17:29 PM
Before I was sure that secp256k1 has 256bit security for all bits (of integers).

But.

I found strange curve anomaly beetween 190 bit and 240 bit. where security is up to 512 bit.


I mean security as 3*sqrt(p*n) where p and n are secp256k1 modulus and orders and only for integers beetween range 190 and 240 bit

how to explain?


edited: must be : 2*sqrt(p*n) not 3*sqrt(p*n)


Title: Re: strange curve anomaly
Post by: COBRAS on January 07, 2022, 12:31:53 PM
Before I was sure that secp256k1 has 256bit security for all bits (of integers).

But.

I found strange curve anomaly beetween 190 bit and 240 bit. where security is up to 512 bit.


I mean security as 3*sqrt(p*n) where p and n are secp256k1 modulus and orders and only for integers beetween range 190 and 240 bit

how to explain?

Try calculate in another soft


Title: Re: strange curve anomaly
Post by: pooya87 on January 08, 2022, 04:44:32 AM
Before I was sure that secp256k1 has 256bit security for all bits (of integers).
Elliptic curves have a security that is half their prime bit length. For example a 256-bit curve has 128 bits of security. I believe that is because all algorithms used to break them have a complexity of O(2n/2).

Quote
integers beetween range 190 and 240 bit
You can't talk about the curve's security if you have selected a limited range.


Title: Re: strange curve anomaly
Post by: mamuu on January 08, 2022, 12:14:03 PM
hi
please show us

secret priv key for proof -> sha256(7*char)


tihs example for you

Code:
pubkey,
0416ec0022bff86ee7d386bd6fd989f8ddd00f182b5b2f25e3d8c4e4f0df71641a413fac31c27d683c61c86172d1a73b480bbde606fe3b858b2995d50590f5d626
r,s,z (191-bit nounce)

90f7e2f803adbd24d6ea3df979f26903bd3c1b01f8d87bfb797b58de0b7ce8c3,83b8cea8f2af4847e8929df6c14849d443d07612365622f481aa862a271b9e18,cf9dd6c3a8fb3cf04e1ec73ccb54e0ac8f0e4bfa2581ed21c8195dfd4cbe4fd4
18da216bb593920d262e6db6fab26b490150e9c905c0e50d07bf8d43d5ff3545,c768ca24c8edd15bd4f110bbc530dff68bda839a3e03383f154da1f725c77165,2be7f4cc000012e780f9b8dc79c1d40a4516833067c2bd81363a63226c71bbfc
481e83c088642f5c73816bd1d1885df42393d6d34c2ed8aa824577768549b838,e451deffa49f92e7582b869be25943658eaa454ded9bf8f92a7a4d232b4948e6,167ebdfbaae75cc603e153e4bafe54c71ccd8cb84f7c809c514dc46ce4744b30
cd5d51e4839a20000a7747f78975f91228a1611316def622427ed80622cdca1b,d088c010643055d3243264d27e60f95c4ab9ba3dadb9943d4fbde71cf10558d5,4725c27238aaa58196c37cc1d6010c5e18bdf1262b79f4f7b730e5d01ca06651


Title: Re: strange curve anomaly
Post by: mamuu on January 08, 2022, 01:05:12 PM
first mamuu it is not about cracking,

algo is designed for veryfing "some" math hipoteses only,  .

second who are you that I must proof you anything my little scriptkiddy guy , you are like "parasite" :)

what have you done, what kind of test have you performed? what kind of "paper"  or literature have you publish?

to be sure that you will understand " no one on this forum will give you a clue or "real working script" or soultion if "exists""

and this topic is only for people who knows what I'm talking about, not for like you "proof" proof" .Go HOME little boy.
 

Please keep your bad words to yourself, my purpose is not to argue, but to see examples, there is no hypothesis, there is a guess.
hypotheses are also exemplified. cannot be left blank.
Besides, what I wrote to you is already an anomaly. (https://blog.trailofbits.com/2020/06/11/ecdsa-handle-with-care/)
If you don't like it, just let me know.
I will not reply after this message.
have a nice day