A Small Subgroup Attack on Bitcoin Address Generation

We show how a small subgroup confinement-like attack may be mounted on the Bitcoin addresses generation protocol, by inspecting a special subgroup of the group associated to point multiplication. This approach does not undermine the system security but highlights the importance of using fair random...

Full description

Bibliographic Details
Main Authors: Massimiliano Sala, Domenica Sogiorno, Daniele Taufer
Format: Article
Language:English
Published: MDPI AG 2020-09-01
Series:Mathematics
Subjects:
Online Access:https://www.mdpi.com/2227-7390/8/10/1645