vbuterinEthereum - Vitalik Buterin[S] 9 points an hour ago
Basically, this allows for the creation of anonymizing mixers on top of Ethereum, which have the benefit of:
Beware of the following two caveats:
source:
https://www.reddit.com/r/ethereum/comments/3tappe/early_alpha_monerolike_linkable_ring_signatures/
Basically, this allows for the creation of anonymizing mixers on top of Ethereum, which have the benefit of:
- Making currency transactions more privacy-preserving, particularly if you send through multiple "mixers"
- Allowing for privacy-preserving identity systems, where if party B trusts/has KYCd/has verified actors with pubkeys P[1], P[2], P[3], then A can convince B that A is one of those three identities but without showing which one
- Anonymized blockchain-based voting (but not-coercion-resistant; unfortunately I think nothing on blockchains is)
Beware of the following two caveats:
- This has totally not been security-reviewed; it has some test cases here but that's about it, this is still very very raw.
- If actually using this in production, make sure to avoid accidentally turning the ether address that you use to pay transaction fees into a de-anonymization vector.
source:
https://www.reddit.com/r/ethereum/comments/3tappe/early_alpha_monerolike_linkable_ring_signatures/