22 entries in 0.425s
a111: Logged on 2017-04-27 22:46 phf: it is not in fact phf who posted this nonsense but an adversary, a
sybil attack is in progress!
phf: it is not in fact phf who posted this nonsense but an adversary, a
sybil attack is in progress!
☟︎ phf: come to think of it
sybil is not the right word in this case, on application level there's no psuedonymity and you only talk to people in wot. on transport level an attacker can construct a valid looking (struct layout wise) pgp packet, which in my naive spec implementation is handed over to gnupg. now you have a bunch of potential
attack vectors here, but assuming there's no memory attacks in gnupg, race conditions in gpgme,
adlai: testingthisstuff: also fyi, even the tor developers admit to the ease (~$1M) with which a large-scale
sybil attack can be mounted against the network
mircea_popescu: also hanbot has it : idempotence IS fundamental to bitcoin. but unlike shit like
sybil attack, or pgp, which were scarcely used or thought about before we came around,
mike_c: I'm sticking by it. Once you know what a
sybil attack is, this is a good venue to learn why what you know isn't quite right.
mike_c: Adlai: my point wasn't that we're a bunch of geniuses, more that there are better venues to learn something in depth like what is a
sybil attack.
mike_c: mircea_popescu: maybe not. could be a much dumber reason. "It's all one node just with 600 addresses. This is what happens when you fucking pay people to
sybil attack the network."
Adlai: dev behind popular open-source-closed-dev spv wallet is also behind a
sybil attack to correlate transactions with jurisdictions... so that's why local trader is so cheap!
kolinko: what I meant is - if you have a system of 15 parties, each one of them signing messages with their own gpg keys, that can be quite secure against the
sybil attack. the attacker would have to steal keys of 8 independent parties.
kolinko: well,
sybil attack is really only a problem in systems that rely on anonymous parties
mircea_popescu: which is a degenerate form taken by
sybil attack in the degenerate wot that escrow is
artifexd: I have not. A
sybil attack is something that I thought I understood.