-
gingeropolous
i wonder how much damage fake inputs would do to heuristics
-
sarang
gingeropolous: you mean generating extra zero-value outputs in transactions?
-
sarang
This idea has come up from time to time, for sure
-
sarang
Looks like the PoPETs page limits are much better for CLSAG
-
sarang
and I could submit there without having to remove anything
-
sarang
Next deadline isn't until August though :/
-
sarang
I should be able to post a revision on IACR later today
-
sarang
Should there be some kind of posting about that?
-
Isthmus
@gingeropolous HUSH does this IIRC
-
Isthmus
There's an important ratio to consider if implementing this in a decoy-based system
-
Isthmus
You could define it a few ways (per txn, per unit time, etc) but the gist is ratio of # outputs created to # outputs showing up in ring signatures
-
sarang
Also depends on what heuristics you care about
-
sarang
Updated CLSAG preprint:
eprint.iacr.org/2019/654
-
sarang
(same link as before)
-
sarang
-
gingeropolous
sarang, not even generating zero value outputs, but making a "ring signature" for an input where 0/11 are the real input
-
sarang
Not much of a signature anymore =p
-
sarang
Since you no longer need to know any private keys
-
moneromooo
And you need to private key to generate the key image, or the check will fail, and your ring will be known to be fake.
-
iDunk
How about sending 0 amount outputs back to yourself instead of to a random address and use those (if such an amount can be "spent") ?
-
iDunk
Or, it that's feasible, use such an output in sweep_single ?
-
iDunk
(As a second ring)
-
scoobybejesus
if there's a fee paid somehow, seems legit
-
UkoeHB_
sending more than one output to yourself at a time can be risky
-
UkoeHB_
since loops might be created when you spend them
-
sarang
yeah
-
Isthmus
Hmm that's fascinating. So the input amount from an entire ring could be 0
-
Isthmus
And zero fee txns are allowed (just not propagated)
-
Isthmus
So could we theoretically have a 1-in/1-out transaction where the input is a dummy output with 0 XMR, the fee is 0, and the output is empty? (a miner would have to put it in the block themselves)
-
sarang
That would balance
-
Isthmus
pointless but interesting
-
sarang
^ the motto of a lot of mathematics Isthmus =p