TLDR: Any form of digital cash using Pedersen Commitments as cryptographic primitive is not private. Pedersen Commitments force some architectural decisions that make any form of digital cash that uses PCs as cryptographic primitive to hide amounts inherently traceable because PCs allow the construction of a transaction graph, despite hidden amounts.

    https://techleaks24.substack.com/p/why-pedersen-commitments-are-obsolete

    Posted by zeroboundss

    6 Comments

    1. coinfeeds-bot on

      tldr; The article discusses the limitations of Pedersen Commitments (PCs) in privacy coins, highlighting their inability to update or re-randomize encrypted balances without the creator’s blinding factor. This leads to privacy vulnerabilities such as co-spend analysis and decoy filtering. El Gamal commitments are presented as a superior alternative, offering homomorphic encryption, re-randomization, and compatibility with both UTXO and account models. The DeroHE protocol exemplifies the advantages of El Gamal, marking a significant advancement in privacy coin technology.

      *This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.

    Leave A Reply
    Share via