Bitcoin Forum
May 14, 2024, 06:05:05 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Time to revisit the 'Symbiotic Zerocoin alt-chain'  (Read 2412 times)
amincd (OP)
Hero Member
*****
Offline Offline

Activity: 772
Merit: 501


View Profile
January 19, 2014, 12:35:28 AM
Last edit: January 19, 2014, 11:17:34 PM by amincd
 #1

Several months ago d'aniel proposed releasing Zerocoin as an altchain with one way convertibility from bitcoins to zerocoins, where zerocoins are generated by destroying bitcoins:

https://bitcointalk.org/index.php?topic=248865.0

He called this a 'symbiotic Zerocoin alt-chain' because the success of this alt would support the value of Bitcoin, while the hashing power of the Bitcoin network would secure the new Zerocoin alt-chain.

adam3us expanded on the idea in November, calling it "bitcoin staging" aka betaCoin:

https://bitcointalk.org/index.php?topic=175156.msg3611878#msg3611878

At the time of d'aniel's post, Mike Hearn cited some problems with Zerocoin that made it unusable:

ZeroCoin is not merge-able not because it would create a much harder time staying decentralised. It's unmerge-able because the performance is so poor it would break things completely.

It's worth reading the original paper very carefully before forming any opinions on ZeroCoin. When I read it I discovered a serious error in their analysis but it was too late for the paper to be fixed. Namely that they thought that because blocks are created every 10 minutes, if it takes 10 minutes to verify a block then that's ok. Not correct! You need to be able to verify a block within seconds, not minutes. Otherwise the whole consensus algorithm just fails.

The maths behind ZeroCoin is fascinating, but unless they made dramatic improvements we're getting way ahead of ourselves talking about alt coins and implementations. This isn't some kind of finely nuanced tradeoff on which reasonable people can disagree. ZeroCoin is just not usable in its current form in any coin, alt or no.

And that's ignoring the issue of how you initialise the system in a trustworthy manner, which is still an open research problem. If you don't solve that then you're back to having a central banker which rather defeats the point of crypto-currencies.

Since then, Matthew Green's team has apparently reduced the size of the zero-knowledge proofs by 98% and have claimed they will release a usable version of the eletronic cash system in May.

This could make the creation of a symbiotic Zerocoin altchain, or betaCoin, worthwhile. A symbiotic release would benefit Bitcoin, the adoption rate of Zerocoin, and cryptocurrency in general.

One additional advantage of this type of release of Zerocoin is that it would be compatible with a future change in Bitcoin to integrate Zerocoin as a full extension with two-way convertibility, in the event that the beta release of Zerocoin proves secure and efficient.
calian
Sr. Member
****
Offline Offline

Activity: 354
Merit: 250



View Profile
January 19, 2014, 07:28:42 AM
 #2

So proof of work --> proof of burn --> zero knowledge proof?

With the hope that the bitcoin community would be open to future full convertibility back and forth via proof of burn? I'd be surprised to see that happen.
LiteCoinGuy
Legendary
*
Offline Offline

Activity: 1148
Merit: 1010


In Satoshi I Trust


View Profile WWW
January 19, 2014, 12:22:19 PM
 #3

take a look here for more infos about Zerocoin:

https://bitcointalk.org/index.php?topic=362468.msg3878992#msg3878992

amincd (OP)
Hero Member
*****
Offline Offline

Activity: 772
Merit: 501


View Profile
January 19, 2014, 11:15:25 PM
 #4

There is a discussion on this proposal in the Zerocoin subreddit:

http://www.reddit.com/r/ZeroCoin/comments/1vk3ol/the_best_way_to_launch_zerocoin_as_a_betacoin_of/
tacotime
Legendary
*
Offline Offline

Activity: 1484
Merit: 1005



View Profile
January 20, 2014, 04:50:01 AM
 #5

Zerocoin is now called zerocash and will be launching as an alpha in April or May. This was announced about a week ago.  Proofs are now less than 300 bytes in size thanks to SNARK.

Code:
XMR: 44GBHzv6ZyQdJkjqZje6KLZ3xSyN1hBSFAnLP6EAqJtCRVzMzZmeXTC2AHKDS9aEDTRKmo6a6o9r9j86pYfhCWDkKjbtcns
whtchocla7e
Full Member
***
Offline Offline

Activity: 392
Merit: 116


Worlds Simplest Cryptocurrency Wallet


View Profile
January 20, 2014, 05:11:39 AM
 #6

Can't wait for this new technology. I hope it lives up to the hype.

Quote
▂▂▂▂▂▂▂▂▂▂▂▂▂▃▅▆█ L E A D █▆▅▃▂▂▂▂▂▂▂▂▂▂▂▂
World's Simplest and Safest Decentralized Cryptocurrency Wallet!
▬▬▬▬▬▬▬ • STORE • SEND • SPEND • SWAP • STAKE • ▬▬▬▬▬▬
hill
Member
**
Offline Offline

Activity: 68
Merit: 10


View Profile
February 20, 2014, 12:09:01 PM
Last edit: November 16, 2014, 02:53:31 PM by hill
 #7

Interested!

Good Luck For Everyone!
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!