Fix bug where any old signature can be used #58
Labels
effort:much
Difficult task
priority:high
Task is important and needs to get done asap
security
Related to security of the protocol
At the moment it's possible to just insert any old signatures. One could even grab existing signatures from past transactions; the verifier would not be able to tell the difference. This means the protocol is broken, in a sense, because the prover does not need to have access to the private key of an address in order to claim it's funds. There are a few possible ways to resolve this:
The text was updated successfully, but these errors were encountered: