Loading video...

Video Failed to Load

Go Home

Next work-in-progress improvement to the SeedSigner image entropy flow: * FORCE the process to collect all 50 live preview frames (they're hashed in as additional entropy). * Make sure they're all unique. * Make sure they're not a blank color (all black, white, purple, etc).

20,757 views • 1 month ago •via X (Twitter)

22 Comments

Keith Mukai's profile picture
Keith Mukai1 month ago

As my image entropy writeup notes, the current implementation can skip past the live preview frames. They're meant to add some bulk to the input entropy on top of what the higher-res final image provides.

Keith Mukai's profile picture
Keith Mukai1 month ago

But the same reassurance has to be reiterated: Image entropy through EVERY historical release WORKS FINE as-is. As long as you can see whatever you're aiming at on screen (not blacked out, not blasted white), the camera is providing thousands of times more data than you need.

Keith Mukai's profile picture
Keith Mukai1 month ago

This PR is about going on the offensive: making image entropy more bulletproof. Your EYES are still the most valuable gatekeepers, but this builds considerable musclepower alongside you.

₿it⚡️Dov's profile picture
₿it⚡️Dov1 month ago

@SeedSigner This is good, like it. Several frames will harden the process and eliminate most possibilities of human flaw in capture

Keith Mukai's profile picture
Keith Mukai1 month ago

@SeedSigner Yep. Current process: works great, but someone determined to screw it up can. After my new PRs: sorry, you get millions of bits of entropy or we abort.

Texas ₿itcoin ₿erserker 🎲 🎲 🎲's profile picture
Texas ₿itcoin ₿erserker 🎲 🎲 🎲1 month ago

@SeedSigner Great common sense improvements! Bravo! 🙌

Keith Mukai's profile picture
Keith Mukai1 month ago

@SeedSigner Yeah, the analysis I did on the whole image entropy process was super useful to really probe the worst-case scenarios. This is the 2nd of 5 planned PRs to further harden the whole process. Really excited for it all to get rolled out!

𝕃𝕦𝕜𝕖 🄳🄲🄰🎲🔑's profile picture
𝕃𝕦𝕜𝕖 🄳🄲🄰🎲🔑1 month ago

@SeedSigner Very cool 😎🆒, Any news about the dice rolls? Could they be increased in

Gaius Musonius's profile picture
Gaius Musonius1 month ago

@sesi_the_man @SeedSigner Good content!

Alex_A 🇦🇺🏃⚡️'s profile picture
Alex_A 🇦🇺🏃⚡️1 month ago

@SeedSigner that is cool 👍

Аnja Dragovic ⚡'s profile picture
Аnja Dragovic ⚡1 month ago

@SeedSigner

The Raven of Wall Street BIP-110's profile picture
The Raven of Wall Street BIP-1101 month ago

@sesi_the_man @SeedSigner Good improvement, that was the biggest flag I noticed last week. And Thank you.

Keith Mukai's profile picture
Keith Mukai1 month ago

@sesi_the_man @SeedSigner It's weirdly exciting to close the door on these degenerate "you basically have to be TRYING to fuck up" corner cases.

Rajadão Tropical's profile picture
Rajadão Tropical1 month ago

@SeedSigner Amazing man! Thank for all the great work put on this!

Juanca's profile picture
Juanca1 month ago

@SeedSigner love it

Orka's profile picture
Orka1 month ago

@SeedSigner Awsome

Javier Noir's profile picture
Javier Noir1 month ago

@SeedSigner This is why open source matters. Bug found, raw captures published, fix already in progress. Try getting that from a closed-source wallet 🔥

zeg's profile picture
zeg1 month ago

@SeedSigner but it still all comes down to potential flaw(s) in sha256?

Keith Mukai's profile picture
Keith Mukai1 month ago

@SeedSigner Dice rolls (the way we and Coldcard and others implement it) requires two sha256 steps. Picking words out of a jar requires one sha256 step. Same for coin flips. There's no escaping it.

Kevin's profile picture
Kevin1 month ago

@SeedSigner 🔥🔥 leta go !!

MK's profile picture
MK1 month ago

@sesi_the_man @SeedSigner It should stop image entropy rather force the user to roll the dice 🎲 and bring their entropy. Bitcoins fundamental never trust anything only verify.

Keith Mukai's profile picture
Keith Mukai1 month ago

@sesi_the_man @SeedSigner The code is completely FOSS (and it's quite simple) so there is no trust, no magical RNG to depend on. The code absolutely needs lots of critical Team Red kind of eyes / AI on it. But it's about verifying the process. Not trust.

Related Videos