
TLDR: Any form of digital cash using Pedersen Commitments as cryptographic primitive is not private. Pedersen Commitments force some architectural decisions that make any form of digital cash that uses PCs as cryptographic primitive to hide amounts inherently traceable because PCs allow the construction of a transaction graph, despite hidden amounts.
https://techleaks24.substack.com/p/why-pedersen-commitments-are-obsolete
Posted by zeroboundss
6 Comments
tldr; The article discusses the limitations of Pedersen Commitments (PCs) in privacy coins, highlighting their inability to update or re-randomize encrypted balances without the creator’s blinding factor. This leads to privacy vulnerabilities such as co-spend analysis and decoy filtering. El Gamal commitments are presented as a superior alternative, offering homomorphic encryption, re-randomization, and compatibility with both UTXO and account models. The DeroHE protocol exemplifies the advantages of El Gamal, marking a significant advancement in privacy coin technology.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.
any tldr available for the title?
So which cryptocurrencies use pedersen?
[removed]
FYI: This article [has been censored in r/Monero](https://np.reddit.com/r/Monero/s/W2YsU4yv04)
Which crypto does not use Pedersen commitments then? Just curious.