Bitcoin Forum
November 07, 2024, 12:54:01 PM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Are addresses generated from a single Electrum seed linkable?  (Read 1043 times)
Bizmark13 (OP)
Sr. Member
****
Offline Offline

Activity: 462
Merit: 250



View Profile
February 07, 2015, 10:35:42 AM
 #1

For example, if a single Electrum seed was used to deterministically generate address A and address B, would it be possible to somehow link the two addresses together and deduce that they are both owned by the same individual? (Of course this is assuming that both addresses are kept separate with no mixing of coins occurring between them.)
dabura667
Sr. Member
****
Offline Offline

Activity: 475
Merit: 252


View Profile
February 07, 2015, 10:47:20 AM
 #2

No.

My Tip Address:
1DXcHTJS2DJ3xDoxw22wCt11FeAsgfzdBU
redsn0w
Legendary
*
Offline Offline

Activity: 1778
Merit: 1043


#Free market


View Profile
February 07, 2015, 10:47:59 AM
 #3

For example, if a single Electrum seed was used to deterministically generate address A and address B, would it be possible to somehow link the two addresses together and deduce that they are both owned by the same individual? (Of course this is assuming that both addresses are kept separate with no mixing of coins occurring between them.)

No I don't think , there is a good privacy.
btchris
Hero Member
*****
Offline Offline

Activity: 672
Merit: 504

a.k.a. gurnec on GitHub


View Profile WWW
February 07, 2015, 02:36:40 PM
 #4

For example, if a single Electrum seed was used to deterministically generate address A and address B, would it be possible to somehow link the two addresses together and deduce that they are both owned by the same individual? (Of course this is assuming that both addresses are kept separate with no mixing of coins occurring between them.)

Assuming, of course, that your adversary does not have access to your master public key, deducing that the two addresses were produced from the same seed is roughly as difficult (mathematically) as stealing bitcoin from those addresses. It would involve solving four SHA256 preimages and the two discrete logarithms (which is what secures transaction signatures in bitcoin), and would in the process give the attacker access to your master private key as well.

If it were possible, there'd be far worse problems to be worrying about....
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!