Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Validators: uses Ethereum address for proof of possession #1494

Merged
merged 11 commits into from
Oct 31, 2019

Conversation

kobigurk
Copy link
Contributor

Description

Currently, the proof of possession is used with the BLS public key, opening the possibility for front-running attacks. This changes the behaviour such that the Ethereum address is used.

Tested

Runs end-to-end tests with the new method.

Other changes

Upgrades to the latest Blake2x-based hashing algorithm in bls-zexe.

Related issues

Backwards compatibility

Not backwards compatible.

@codecov
Copy link

codecov bot commented Oct 27, 2019

Codecov Report

Merging #1494 into master will decrease coverage by 0.01%.
The diff coverage is n/a.

Impacted file tree graph

@@            Coverage Diff             @@
##           master    #1494      +/-   ##
==========================================
- Coverage   73.75%   73.73%   -0.02%     
==========================================
  Files         277      277              
  Lines        7418     7418              
  Branches      660      954     +294     
==========================================
- Hits         5471     5470       -1     
- Misses       1835     1836       +1     
  Partials      112      112
Flag Coverage Δ
#mobile 73.73% <ø> (-0.02%) ⬇️
Impacted Files Coverage Δ
packages/mobile/src/tokens/saga.ts 89.85% <0%> (-1.19%) ⬇️
packages/mobile/src/invite/EnterInviteCode.tsx 82.43% <0%> (-0.24%) ⬇️
packages/mobile/src/home/WalletHome.tsx 89.53% <0%> (-0.13%) ⬇️

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 51c359d...b2ef55a. Read the comment docs.

Copy link
Contributor

@nategraf nategraf left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

👍

yarn.lock Show resolved Hide resolved
Copy link
Contributor

@kevjue kevjue left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@kevjue kevjue assigned kobigurk and unassigned kevjue Oct 30, 2019
@kobigurk kobigurk merged commit 6cf95b7 into master Oct 31, 2019
@kobigurk kobigurk deleted the kobigurk/pop_eth_address branch October 31, 2019 15:09
aaronmgdr added a commit that referenced this pull request Nov 2, 2019
* master: (62 commits)
  Fix e2e on CI (#1537)
  Allow a specified address to disable/enable the Exchange  (#1467)
  Avoid re-encrypting key files with yarn keys:encrypt command (#1560)
  Support protocol hotfixing (#613)
  Point e2e tests back (#1562)
  Refactor to Accounts.sol (#1392)
  Add selectIssuers Transaction (#1327)
  [Wallet] Get React Native Hot Reloading Working (#1551)
  Unify to prefix messages for signing (#1473)
  [Wallet] Improve error handling around account creation and keystore ops (#1497)
  Add CI test for checking licenses and misc package.json cleanup (#1550)
  [Wallet] Implement SMS invite on iOS (#1541)
  CI: brings back to master (#1554)
  Validators: uses Ethereum address for proof of possession (#1494)
  Validate Attestation Requests (#1468)
  Rename hosted node references to forno (#1511)
  Bump rubyzip from 1.2.3 to 1.3.0 in /packages/mobile (#1508)
  Added txpool family to geth apis. Sorted geth cmd options (#1462)
  [Wallet] Fix yarn dev command for running android (#1534)
  [Wallet] iOS info plist changes and version bump (#1539)
  ...

# Conflicts:
#	yarn.lock
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Validators SBAT submit their BLS signed ethereum address as proof-of-possession
3 participants