4

I knows quantum computer breaks elliptic curve math but what about ring signature? thanks

samwellj
  • 3,215
  • 4
  • 17
  • 32

1 Answers1

5

"Normal" ring signatures aren't broken (meaning the true signer is revealed) by QC, but their security certainly is (unforgeability). However, the traceable version Monero uses (for double-spending prevention) is indeed able to be broken (meaning public key linked to key image and thus signer revealed) due to the existence of a key image.

Luigi
  • 2,472
  • 12
  • 14