log☇︎
844700+ entries in 0.493s
dexX7: verified with stock btc client + some php lib that i'm using to resolve (msg, sig) -> addr
dexX7: the other two are invalid
BingoBoingo: Maybe the problem isn't the signature or the message. Maybe Bitcoin Address signing is just fucked.
mircea_popescu: so that's a third.
dexX7: is the address that is resolved for this msg/signature
BingoBoingo: mircea_popescu: Maybe. You'd think they could at least verify things right.
BingoBoingo: Jere_Jones: At the most charitable where there isn't a collision it ought probably assumed at a minimum Bitcoin address signing merely sucks and is poorly implemented. If you are the sort who goes for minimums.
mircea_popescu: i tell uyou, the brainwallet implementation is borkt.
Jere_Jones: I'm not showing that message verigying with 1LvCunts
BingoBoingo: mircea_popescu: Maybe. Maybe it is just some odd intersection and I need to go back to adding giberish at the end of everything I sign.
mircea_popescu: i bet you 1LC9GzYK1zjrG9zAvMPExcwHTP8aPYPMyY could not have signed the same message.
BingoBoingo: The problem is that 1LC9GzYK1zjrG9zAvMPExcwHTP8aPYPMyY could have signed the same message. Maybe it could have signed a more malicious message. Fuck. Just because elliptic curves are sexy doesn't mean they should be used everywhere.
BingoBoingo: dexX7: plug the message and signature here http://www.thedrinkingrecord.com/contact-and-credentials/ into http://brainwallet.org/#verify
dexX7: mind to give out some samples like messages + signatures for both addresses?
mircea_popescu: use a proper process to turn privkey into pubkey then hash that and see what you get.
BingoBoingo: Maybe I should go to #bitcoin-dev or wherever the muppets live and troll them up a bit with this.
mircea_popescu: i think you're jumping to conclusions.
Jere_Jones: I can help you but you need the private key.
BingoBoingo: 1LC9GzYK1zjrG9zAvMPExcwHTP8aPYPMyY apparently is an imposter for my beloved 1LvCuntsJyFFQsLuJhBXBPokbQa7SAyMr4 address in the message signed on my contacts and credentials page. I'm trying more messages at the moment, but it looks like GPG is going to have to save the day.
Jere_Jones: If you have the private key, turn that into the other public key and see if that gives you the address you're looking for.
mircea_popescu: retry with the original method.
mircea_popescu: because they're broken lol
BingoBoingo: mircea_popescu: The key wasn't generated on a web based service, but a web based service turned the public key into an unexpected address.
mircea_popescu: they're shit. i could never get them to make usable addresses.
mircea_popescu: you using a web based service to make the keys ?
BingoBoingo: mircea_popescu: Jere_Jones It is just a standard Bitcoin address's underlying public key. mircea_popescu I'm not sure what to think anymoar. I will say fuck vanitygen.
Jere_Jones: BingoBoingo, are you saying the same 256 bit public key ran through RIPEMD160 gave you two different answers?
mircea_popescu: the first would be a collision. the second would be a case of 4+5 being sometimes 8, sometimes 9
mircea_popescu: multiple privates might hash to the same one address, but that's insanely rare.
mircea_popescu: BingoBoingo that's not possible.
Jere_Jones: I imagined it to be exceedingly rare though.
BingoBoingo: Fucking NSA bullshit undermining the Integrity of Mathematics.
BingoBoingo: pankkake: This isn't GPG. It is RIPEMD 160 being able to assign a public key two (maybe more) bitcoin addresses.
Jere_Jones: BingoBoingo: Bitcoin addresses are hashed public keys, right? The private key that corresponds to that public key actually has two public keys. A compressed version and a noncompressed version.
pankkake: that's why people should give the full fingerprint
pankkake: it happened to me too
mircea_popescu: try and reproduce the behaviour first.
BingoBoingo: mircea_popescu: Yeah. I'm working on a report. The report will probably be in the form of a post titled "Fuckity Fuck Fuck" as I GPG sign a revocation of a certain address's message signing privileges.
mircea_popescu: ty ty
nanotube: mircea_popescu> im just here to collect the praise. admonitions go to asciilifeform :D <- in that case... good idea, that cardano thing! :)
BingoBoingo: So... I think math is broke. Apparently the public key for one of my addresses can hash into a different addresss.
jurov: nosuchagency can provide it.. as a marketing tool
jurov: and i don't see how would devote hours to try cracking all submitted keys like the researchers did
jurov: ^ the web checker would be no better than these certifications
jurov: As many of 10,000 of these smartcards may provide little or no cryptographic protection despite receiving two internationally recognized certifications.
mircea_popescu: im just here to collect the praise. admonitions go to asciilifeform :D
nanotube: mircea_popescu: http://arstechnica.com/security/2013/09/fatal-crypto-flaw-in-some-government-certified-smartcards-makes-forgery-a-snap/ <- make sure your s.nsa product isn't stupid like this. :)
mircea_popescu: well they said theirs don't explode right ?
mircea_popescu: it is possible the unit just works with whatever power it's being fed.
jurov: good PSU's can supply more than rated but still something's fishy
mircea_popescu: good AC should be able to pump out something in the .1 to 1 MW per floor
jborkl: considering they bought 850 w power supplies, as per the photos
jborkl: I wonder how the KNC hosting center is holding up to 900 w per unit? Reptilla should take trip to the sauna in there
mircea_popescu: this is turning into quite the argument
ozbot: And now I shall be off scarfing smoked salmon and fresh apple pie seasoned with free market tears, o
kakobrekla: you can test if the blown cap can set it on fire
jborkl: hmm, well maybe not then
mircea_popescu: also a bitch to extinguish
mircea_popescu: it has a slight but present fire hazard and is toxic if it burns.
mircea_popescu: make sure you know what you're doing with that.
jurov: i'm no expert.. supposedly it works with normal pc (except hdd), but 1kW is prolly too much
mircea_popescu: so then 900 watt 440 gh is indeed in spec neh ?
jborkl: I thinnk I am going to dnk a blade in mineral oil and see how it does on temps - just for the hell of it
jborkl: ight be too
jborkl: I would have to look at it and see what would fit it, otherwise that could get really expensive - it also might too big of a system to cool it
jborkl: Mineral oil is so expensive, I have thought about it many times-
mircea_popescu: i forget what the spec was supposed to be
jborkl: "KNC support just emailed me back saying that 440 ghash (what 50btc reports), 900 watts from the wall, and chip temps of 65-72c in a 58F room are 'within spec'...Not awesome."
jurov: heh right on track
jurov: OP says below it's not a scam cuz they did close the acct
kakobrekla: does the css look good?
mircea_popescu: Account has been terminated.
mircea_popescu: We kindly ask you to withdraw your Bitcoins to a wallet outside of Bitstamp.net. If you do not withdraw your Bitcoins in 24 hours as instructed in the previous paragraph, please provide us with a valid bank account held in your name in a reply to this Account Termination Notice so Bitstamp can proceed with your Account termination and send you the currencies credited to your Account within 14 business days after your
mircea_popescu: "Bitcoins will be transferred only after conversion into a currency."
mircea_popescu: but this changes little really.
mircea_popescu: course, electricity is a monopoly in most places for good physical reasons, so i guess the btc to watt thing will be one of the later parts.
Namworld: Wish everyone did that
mircea_popescu: recently i had a wire fail to a supplier, and they were "well, send me bitcoin ?"
KRS1: but what about the Nigerian Sperm bank?
mircea_popescu: asciilifeform i expect we will have brtc to watts.
asciilifeform: KRS1: nah, that's at #urbit
asciilifeform: i was thinking more along the lines of btc to watts, rather than dollars
mircea_popescu: asciilifeform the reason it can't work in reverse gear is that fiat is worthless.
asciilifeform: mircea_popescu: if only this worked in reverse gear.
mircea_popescu: yes, they are.
KRS1: so take fiat out of the equation..are bitcoins actually worth anything then? I dont know of anything you can do with them besides get some goods and services, best case.
mircea_popescu: the 2nd way is... also mining. through miner production.
mircea_popescu: this was always the case to date.
mircea_popescu: anyway, i guess few are aware, but as per genius satoshi design the main way to move cash into bitcoin is mining
KRS1: one of the only tools people have to move cash in/out of the system
mircea_popescu: it's a venture circuit scam thing, which is homologuous.
asciilifeform: mircea_popescu: 1st time i heard of dwolla, the consonant cluster made me think it was a nigerian spam bank.
KRS1: Dwolla says Virtual Currency customers/merchants are 0.1 percent of their customer base..Hmm.
KRS1: someone needs to show them that lesson
Namworld: If they want something not virtual, they can just hold physical gold and silver or such thing.
Namworld: People just need to learn their bank account statements are just as virtual.
Namworld: Key to use and url to submit appears as plaintext in the compile.
KRS1: I think so, but they're still working with exchanges like campbx.
mircea_popescu: KRS1 didn't they do this like... 3 times already ?
KRS1: Effective October 28, 2013 at 4pm CT, Dwolla will be withdrawing its service offerings to virtual currency exchanges and virtual currency related services.