From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Tue, 23 Dec 2025 10:27:34 -0800 Received: from mail-qv1-f57.google.com ([209.85.219.57]) by mail.fairlystable.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.94.2) (envelope-from ) id 1vY76b-0001Sl-GG for bitcoindev@gnusha.org; Tue, 23 Dec 2025 10:27:34 -0800 Received: by mail-qv1-f57.google.com with SMTP id 6a1803df08f44-88a3a4af701sf135312526d6.1 for ; Tue, 23 Dec 2025 10:27:33 -0800 (PST) ARC-Seal: i=2; a=rsa-sha256; t=1766514447; cv=pass; d=google.com; s=arc-20240605; b=L0HScXVAMmSKPC/YUQZMJMgfPpevmsziQZ5qp+ksiDWTODajt2l/ef3tBfbLlmpKh8 V24KtvyKW9UZGELns3rRHjuuDH6hWd73IwS7MtAl8mgCUunDkcYMU+hbuVfrcJ+mvmEw +vpyHw24JRhyeU1mLt8OmS0Nap79wgZxEfyg0HBcVQQfxg+wjPpFiZdWC0aVfVV0/p4T WiM0A5Cx/9fDQ5H1h/cLixRZVoIEHV/H2pHcG/duT2DTjB8+UlFcifvcUPU39ZhVvYVC BSgQpANgNEGsWawmm+/d4JvIT5/BTunRfEkEpf9yHF9sU1FD1yuCJWxzFdrzvK5phFPn QLCQ== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:sender:dkim-signature; bh=++LIhBv/6zNk+POE5PU1eVAn4PTzEKNhCuRQzcC1co8=; fh=epnoYEQwHeI5Rch+2Dy7x+yJTgNuB6nOPLCmOwTN3L8=; b=KKsk/pe/BkHrgQLIcYB+qisQh6pMzxyqc/dib3Q4KA+7jFO0jsqL7FzQu/317SHC3j aTvHxhJ4n3L8i1aFfnWiz6oDe3dzM6LS6FZPz507Nt0HAcpYXfp2NLARMCX96RwyBCFn 9YbN1lEv9EFlUdAHIoEedjm17By5G6Hmb+ByNMjJ98jF5hvZcM/VHodYNPz2ilxFWM12 c9AGkR3Vp6fRZsfuNU351qOkHuaTgsJoRkLY5qqen6ZTunJ5ydkUHoUo8p1l7eAO7TEc 3yzQhnZCqmCOr8YzIH++sXswsLkP0VEWe/TzXvNIp1Bts2TgRdE6PZOcyXWaK3+k3/Sh 76sw==; darn=gnusha.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@q32-com.20230601.gappssmtp.com header.s=20230601 header.b="l/mjJwFS"; spf=pass (google.com: domain of earonesty@gmail.com designates 2a00:1450:4864:20::633 as permitted sender) smtp.mailfrom=earonesty@gmail.com; dara=pass header.i=@googlegroups.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1766514447; x=1767119247; darn=gnusha.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:sender:from:to:cc:subject:date:message-id :reply-to; bh=++LIhBv/6zNk+POE5PU1eVAn4PTzEKNhCuRQzcC1co8=; b=W3Nz/J9tMAAe7rqxk0PKUWF8nbO18DIZju/ssnMFjnVgFPiFrxxH9h217RiTI7pgm8 yZG+Xb0zQzhnSdmrbSBv2h9rcOW8TSEld5IGvhOjHst6cOvujKgnn8ceALzy6Ly58W4v 6JD1incrp8sEIM5YloTEsHZo/S3mrVoiNccsHNXy1qG4P37rudOwp9LOhcuBMv7+qAtw ZUV0hucSeAgE5xZa4ojObvikRMMHGP3QJjarUpIc1KxVZKXyB+VsOTUbObACd2oT0PcW P9+zCFuwDRe6NJ5UzSVipmCLbIZ9kuvItsfWu87gV35pJNHZvV9o1HtSOkwdG1lbE6P2 UUaA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766514447; x=1767119247; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:x-gm-gg:x-beenthere:x-gm-message-state :sender:from:to:cc:subject:date:message-id:reply-to; bh=++LIhBv/6zNk+POE5PU1eVAn4PTzEKNhCuRQzcC1co8=; b=bNskMA8y2e+5XIy/ZF+RgL7DwZQnT1IYbunFynReGTZn7K5agZg8eFNf8BruSBvwts WQpiyR+mnRKdVBQbtwb66tiOxRimz8mu1o0wpk6OrmkN4EqRK4Af+MXiypLis2/prtt8 LkaICe16b9HorFDn+A8KhIeAVzGp2W0HDTzCoFAhnY+JwydLVVeHpKC9DGIUGYLGxUA5 DR+b6dsw1ArrxiN3DeD1ChRpiIeftI3cxx0HZ+Ma3MxDxKo8ITm0eo2Ez+r5EYkw2Ruq FaJJZaaKXa+KK2dIg9GSRDPZNLrV5cecZhfPZew4RDPmuwDDZljf9W8y44UIX3ohZkp2 Lbmw== Sender: bitcoindev@googlegroups.com X-Forwarded-Encrypted: i=2; AJvYcCVW/U70tkDdFVb7dXtrZpEqRbG3BvOB3E3vjmN2mvQ9D+yNtQENZM0uDIy0jCq6NrdAfQnw45aRdHcR@gnusha.org X-Gm-Message-State: AOJu0Yz3gDCP5p1me9NEtkF5a7bUqjy+MzN9VEtpXE+duoPFVd5sDpxm BgF+j7pNMMHsUUWH5DqeUb1MA3ixguy9T5L2o6WxlyUzHKEL1pKP8jpL X-Google-Smtp-Source: AGHT+IH1A19WIXeDKPiPkIj6/IH307cUX2e9Je7oHKNWYzzQ7ZpcCglHynKr3/sSN5t3tbSfgPOFrA== X-Received: by 2002:a0c:c24a:0:b0:880:54ac:79f8 with SMTP id 6a1803df08f44-88d84c16d56mr212759426d6.48.1766514447221; Tue, 23 Dec 2025 10:27:27 -0800 (PST) X-BeenThere: bitcoindev@googlegroups.com; h="AWVwgWYu5T2y9XeQbo7mbH5BMCe+DPOwvLRXaUzThNiSG069+w==" Received: by 2002:ac8:5753:0:b0:4ed:76f4:e4bb with SMTP id d75a77b69052e-4f1ced8da37ls215276101cf.2.-pod-prod-07-us; Tue, 23 Dec 2025 10:27:22 -0800 (PST) X-Received: by 2002:a05:620a:400a:b0:8b2:eefb:c898 with SMTP id af79cd13be357-8c08fab37b5mr2275123185a.69.1766514442488; Tue, 23 Dec 2025 10:27:22 -0800 (PST) Received: by 2002:a05:6504:2396:b0:2d1:a602:e60f with SMTP id a1c4a302cd1d6-2d87ea71186msc7a; Sat, 20 Dec 2025 21:06:00 -0800 (PST) X-Received: by 2002:a05:6512:1191:b0:598:f262:15ec with SMTP id 2adb3069b0e04-59a17de3167mr2609309e87.26.1766293557682; Sat, 20 Dec 2025 21:05:57 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1766293557; cv=none; d=google.com; s=arc-20240605; b=hcYhJ8kL/SrcFILvM2XfNn9vbTsQR9ipL4VhU2XHBWX3sZpxQjQNLcC6pDphPvm+LD uCmgCPL4hi/VlquZtHEI5Ck/z4NSY+KnWcr5XNjTuYgcun9QhmVZNxOqxg0UM6Odci/R i6z6HoJJ/3nybIqItScwLIj4JJnzdAjmWOc5OcB4TFUu6O8rnIWv4YRNLifALf94Jpdu Epl6zrp1HVD6uvnru/AvryB2QIK1Q3CEqHWW6XI6fS8yc5FrZh+NzAr10II9ua6AH97p QGrzPhFmVclply5cZwhS4qQT73de+jRUSEIehhTjvLoNoaYFWQ+HFVQB1QUan2vFcUhD T23Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=KUuTxUFd48IfDySTI99ig5dR6igWte3rfd2s45S7t44=; fh=oW5/5oUmRRMvy96u/Fl5uZTynMYP3W/WShfBcMiH4EY=; b=ClL0XLqsJ5E1kPCjxSFwRBBf+q73FGct70eFUx4f/I8Wu1m9TxX4RQeUBN+rRTp+Mp 3KprLGKC2f6Y8DvTsScyaicio6XBhmP5fBP6faYdV2jB81QrxVbi3StYNcCSIhJmfK5z jRULOqxYnCB/apHBgIwcWgtnMI3RR0lPZSMrMM4O4MP+TU51OhgP8VosaJFXVZ4EDgVq Ldap8cyhmlDHea6fm1gkSp3iIeuyxcOKhMoa8KWf0eUONDGsMBIAU/OBDZtciCkrrOzx v6gOaPeTMd5vEDe1OYCkiO8hS+Va8NsCK9wnSzaIoiWoK+wKWHtNui5oNoxTGruXl/jA UTgA==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@q32-com.20230601.gappssmtp.com header.s=20230601 header.b="l/mjJwFS"; spf=pass (google.com: domain of earonesty@gmail.com designates 2a00:1450:4864:20::633 as permitted sender) smtp.mailfrom=earonesty@gmail.com; dara=pass header.i=@googlegroups.com Received: from mail-ej1-x633.google.com (mail-ej1-x633.google.com. [2a00:1450:4864:20::633]) by gmr-mx.google.com with ESMTPS id 2adb3069b0e04-59a186137b6si135347e87.5.2025.12.20.21.05.57 for (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Sat, 20 Dec 2025 21:05:57 -0800 (PST) Received-SPF: pass (google.com: domain of earonesty@gmail.com designates 2a00:1450:4864:20::633 as permitted sender) client-ip=2a00:1450:4864:20::633; Received: by mail-ej1-x633.google.com with SMTP id a640c23a62f3a-b79f8f7ea43so685932266b.2 for ; Sat, 20 Dec 2025 21:05:57 -0800 (PST) X-Gm-Gg: AY/fxX7U0sR8iCzV/IxDUnivDXtVjZArq8L5FYpLn3Icfi/sBqGTde9gpNFpXpxik/c ezEMJ0icsfdTlsQAb8oLBmc3FlVgFrHiZNQBGqwcyqVhm08kSFDCdpB6fANwHiJYRC55HF9Pvbe i/xqXmCpEfRx5HzJDp+YVX48QIz0p7C9OKCpbocGmRT4p38z0eMYpjkkMq06Zpixv7bxRJS8AvX lYyzQpaIaSFJZhDTFjNWblTmxI06XSNdc+zDArSPduz4vvDiwskKKqnVbM6ETD/AoaQ1rt3QXKe 9HKXtv/VRKtq4h/crgrXk5Ww6evdv8c19beHn4ra2lM7SYTr+3xGYQemARMgB2Ww6Q== X-Received: by 2002:a17:907:8e95:b0:b76:7e0e:4246 with SMTP id a640c23a62f3a-b8036ecbbb2mr715334166b.12.1766293556429; Sat, 20 Dec 2025 21:05:56 -0800 (PST) MIME-Version: 1.0 References: <7edb8e8f-064b-4409-9c6d-b4361c1e7df7n@googlegroups.com> In-Reply-To: <7edb8e8f-064b-4409-9c6d-b4361c1e7df7n@googlegroups.com> From: Erik Aronesty Date: Sat, 20 Dec 2025 21:05:45 -0800 X-Gm-Features: AQt7F2rITaS9nKPEfJsLELhw9DqvrCCdWpHgHHkv3iEbMrS201bY4QvWolitCAA Message-ID: Subject: Re: [bitcoindev] Major BIP 360 Update To: Hunter Beast Cc: Bitcoin Development Mailing List Content-Type: multipart/alternative; boundary="00000000000000068306466f44ec" X-Original-Sender: erik@q32.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@q32-com.20230601.gappssmtp.com header.s=20230601 header.b="l/mjJwFS"; spf=pass (google.com: domain of earonesty@gmail.com designates 2a00:1450:4864:20::633 as permitted sender) smtp.mailfrom=earonesty@gmail.com; dara=pass header.i=@googlegroups.com Precedence: list Mailing-list: list bitcoindev@googlegroups.com; contact bitcoindev+owners@googlegroups.com List-ID: X-Google-Group-Id: 786775582512 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Score: -0.7 (/) --00000000000000068306466f44ec Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable This is amazing! I have always been concerned about the exposure of public keys (mostly because of the greater potential for implementation bugs, not quantum). Between BIP360 and something like TXHASH, it's possible to make quantum safe scripts and multi-step commit-reveal vaults that don't relay solely on signatures at all. And we can do so while closing broader security issues (allowing people to more easily mine for implementation flaws), and expanding capabilities with lightweight, proven tech. I would personally love to move BIPs 360,119,346 forward as a comprehensive "quantum-readiness" plan. These can keep Bitcoin safe and vaulted behind commitments and hashes... until the industry stabilizes on PQ signatures and an appropriately hardened, efficient, proven and reliabile library, like libsecp256k1 is for ECC. That is likely to take much longer, especially considering how recently SIKE was broken, and the structural correlations found in SPHINCS. On Fri, Dec 19, 2025, 6:32=E2=80=AFPM Hunter Beast wrote: > After reviewing community feedback, Ethan Heilman and I have enlisted the > help of a third co-author, Isabel Foxen Duke > , in an editorial role to lead and execute > a clean sheet rewrite of BIP 360. > > Because previous revisions introduced meaningful technical changes, we > determined that a full rewrite, rather than incremental edits, was > warranted to improve clarity, internal coherence, and to better articulat= e > our intentions for managing potential quantum-related risks. > > Consistent with its previous version, this proposal does not introduce > post-quantum signature schemes. Instead, BIP 360 proposes the addition of= a > new output type with the key path spend removed, which is thus protected > from hypothetical breaks of Elliptic Curve Cryptography (ECC). > > We have renamed this proposed output type "Pay-to-Tapscript-Hash (P2TSH)" > for clarity, and believe its adoption is an important first step in > protecting Bitcoin from potential threats to ECC, via quantum computers o= r > any other cryptanalytic advancements. > > Additionally, the proposal now includes test vectors in Python and Rust. > With gratitude, we hope you=E2=80=99ll review these changes in the BIP Re= po > or at BIP360.org > . We look forward to ongoing community feedback, and > new ideas in our efforts to Make Bitcoin Quantum Resistant. > > Thank you for your time, > Hunter Beast > > -- > You received this message because you are subscribed to the Google Groups > "Bitcoin Development Mailing List" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to bitcoindev+unsubscribe@googlegroups.com. > To view this discussion visit > https://groups.google.com/d/msgid/bitcoindev/7edb8e8f-064b-4409-9c6d-b436= 1c1e7df7n%40googlegroups.com > > . > --=20 You received this message because you are subscribed to the Google Groups "= Bitcoin Development Mailing List" group. To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoindev+unsubscribe@googlegroups.com. To view this discussion visit https://groups.google.com/d/msgid/bitcoindev/= CAJowKgK_kccO3SEfCZCJ6V2CCumE8%2BA5Ks5U31dgAoF_KcjP5A%40mail.gmail.com. --00000000000000068306466f44ec Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable
This is amazing!=C2=A0 I have always been concerned about= the exposure of public keys (mostly because of the greater potential for i= mplementation bugs, not quantum).=C2=A0

Between BIP360 and something like TXHASH, it's possible to ma= ke quantum safe scripts and multi-step commit-reveal vaults that don't = relay solely on signatures at all.=C2=A0 And we can do so while closing bro= ader security issues (allowing people to more easily mine for implementatio= n flaws), and expanding capabilities with lightweight, proven tech.

I would personally love to move= BIPs 360,119,346 forward as a comprehensive "quantum-readiness" = plan.=C2=A0=C2=A0

These = can keep Bitcoin safe and vaulted behind commitments and hashes... until th= e industry stabilizes on PQ signatures and an appropriately hardened, effic= ient, proven and reliabile library, like libsecp256k1 is for ECC.=C2=A0 Tha= t is likely to take much longer, especially considering how recently SIKE w= as broken, and the structural correlations found in SPHINCS.





=







=


<= div dir=3D"auto">

On Fri, Dec 19, 2025, 6:32=E2=80=AFPM Hunter Beast <hunt= er@surmount.systems> wrote:

After r= eviewing community feedback, Ethan Heilman and I have enlisted the help of = a third co-author, Isabel Foxen D= uke, in an editorial role to lead and execute a clean sheet rewrite o= f BIP 360.

Because previous revisions introduced meaningful te= chnical changes, we determined that a full rewrite, rather than incremental= edits, was warranted to improve clarity, internal coherence, and to better= articulate our intentions for managing potential quantum-related risks.

Consistent with its previous version, this proposal does not introduce= post-quantum signature schemes. Instead, BIP 360 proposes the addition of = a new output type with the key path spend removed, whic= h is thus protected from hypothetical breaks of Elliptic Curve Cryptography= (ECC).

We have renamed this proposed output type = "Pay-to-Tapscript-Hash (P2TSH)" for clarity, and believe its ad= option is an important first step in protecting Bitcoin from potential thre= ats to ECC, via quantum computers or any other cryptanalytic advancements.<= /span>

Additionally, the proposal now includes test vectors in Python and R= ust.

With gratitude, we hope you=E2=80=99ll review these changes in th= e BIP Repo<= span style=3D"font-size:11pt;font-family:Arial,sans-serif;color:rgb(0,0,0);= background-color:transparent;font-variant-numeric:normal;font-variant-east-= asian:normal;font-variant-alternates:normal;vertical-align:baseline"> or at= = BIP360.org. We look forward to ongoing = community feedback, and new ideas in our efforts to Make Bitcoin Quantum Re= sistant.

Thank you for your time,
Hunter Beast

--
You received this message because you are subscribed to the Google Groups &= quot;Bitcoin Development Mailing List" group.
To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoindev+unsubscribe@googlegroups.com.=
To view this discussion visit h= ttps://groups.google.com/d/msgid/bitcoindev/7edb8e8f-064b-4409-9c6d-b4361c1= e7df7n%40googlegroups.com.

--
You received this message because you are subscribed to the Google Groups &= quot;Bitcoin Development Mailing List" group.
To unsubscribe from this group and stop receiving emails from it, send an e= mail to bitcoind= ev+unsubscribe@googlegroups.com.
To view this discussion visit https://groups.google.com/d/= msgid/bitcoindev/CAJowKgK_kccO3SEfCZCJ6V2CCumE8%2BA5Ks5U31dgAoF_KcjP5A%40ma= il.gmail.com.
--00000000000000068306466f44ec--