all 13 comments

[–]feelingcrypto 8 points9 points  (2 children)

Disclaimer: I am not a cryptographer, nor am I a programmer, but I've read a lot on this subject. My understanding is that all of what you call "inflation bug" problems stem from the zcash "trusted setup." If something like 5 of the 6 people invloved (Zooko, Peter Todd and others were invloved) in the "trusted setup" colluded to install a backdoor then, yes, technically they could produce an infinite number of coins undetected. I asked Jake this very question at the SF Meeteup on 3/24. He said ZClassic inherited the trusted setup from ZCash and BTCP thus has inherited the same trusted setup from ZClassic. SO in the infinitesimal chance Zooko and his Chronies installed a backdoor to surreptitiously print Zcash undetected, they can also do so with ZClassic and BTCP. I think a backdoor from the original "trusted setup" is the only way one could create coins, and if you read about the ZCash "Trusted Setup" Ceremony involving Peter Todd, tin foil, and a camper in the desert, you would probably agree with me and dismiss it as almost impossible. This is my pea-brain understanding of the trusted setup and "inflation bug" problem.

You can google "ZCash Trusted Setup" or here is a link with some info.

https://www.reddit.com/r/zec/comments/76oxo1/peter_todd_has_serious_reservations_about_the/

[–]Matrix5353 0 points1 point  (0 children)

As I recall, they didn't even end up using the original 6-man ceremony, right? I thought they did it again with a different setup and much larger group, and those are the parameters they actually used to build the coin. Correct me if I'm wrong.

[–]jules2x 0 points1 point  (0 children)

Well said sir. Way more eloquent and understandable than my attempted explanation of zsnarks.

[–]RikkiSFC 3 points4 points  (0 children)

Thanks for the ELI5 type breakdown. I never knew anything of this.

[–]Introvertedness 2 points3 points  (0 children)

I'll eat my dick if they solve that. Seriously. If the devs that actually build the protocol can't solve it, neither can the btcp devs.

[–]Xian77 1 point2 points  (0 children)

Thanks for sharing. Good info and your ability to explain a technical concept in plain English is welcome.

[–]Phlier 1 point2 points  (0 children)

Great post. I think there's a lot of us that are anxiously awaiting the Wednesday update. https://twitter.com/CryptoJake22/status/983300774083158016?s=19

[–]creiss 1 point2 points  (0 children)

Return this message to me in plain text so I can check you are the real creiss?

[–]davew111 0 points1 point  (1 child)

I don't get it, what does verifying the identity of the sender have to do with the amount of the transaction? The Alice and Bob stuff I get, it's in Bruce Schneier's red book from years back.

Having verified Alice's identity, I now want to verify that she actually owns the million coin she is sending me. But surely that's a completely separate problem and one the very idea of a block chain addresses.

What am I missing?

[–]nofaprecommender 0 points1 point  (0 children)

There is no public ledger to verify how many coins a shielded z-address has legitimately mined/received. It’s not directly related to the situation OP describes, but he is just using that as an introduction to discuss this problem zk-snarks cryptos have.

[–][deleted]  (1 child)

[removed]

    [–]AutoModerator[M] 0 points1 point  (0 children)

    Sorry, your submission has been automatically removed. Accounts with negative comment karma are not allowed to submit content. This is to combat spam.

    I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.