Skip to content

Use a strong recovery commitment, not only the 32-bit fingerprint #27

Description

@BenWestgate

Medium design concern. Restore authentication currently relies on the four-byte BIP32 master fingerprint. That is useful as a human diagnostic, but 32 bits is too weak as the sole active authorization value against a deliberately chosen collision.

Remediation: store and verify an independent public commitment with at least 128 bits of collision resistance before descriptor import. Keep the BIP32 fingerprint as a display aid.

Parent: #20

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

enhancementNew feature or requestgate: adversarial reviewResolve, merge, or explicitly defer before the next full adversarial review.questionFurther information is requestedwontfixThis will not be worked on

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions