Live data from Hacker News

Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

eprint.iacr.org

41–50 of 72 posts

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#41
post #28

Proof of Stake not only replicates the same dynamics that Bitcoin was designed to eliminate (more wealth -> more power in system) but also can only be made secure against a maximum of ⅓ byzantine actors, compared to Proof of Work's superior ½. As for using it for Layer 1 systems, Andrew Poelstra nailed it in his conclusion [0]: "We showed that by depending only on resources within the system, proof of stake cannot be…

Fundamentally Proof-of-Work relies on the laws of thermodynamics and mathematics to secure the network. Fundamentally Proof-of-Stake relies on a high-level abstract game theory of social interactions between selfish players. One of these is not like the other.

Yep, one's destroying the planet and the other isn't.

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#42

Important paper here because almost all the next gen blockchains will be using POS. Ethereum is trying to switch mid-flight (yikes) but others like Cardano have incorporated it foundationally. If you're a no-coiner or Bitcoin maximalist, none of this really matters. But if you accept the premise that the future of financial infrastructure is moving towards decentralized, blockchain based systems, then a secure, scala…

> Ethereum is trying to switch mid-flight (yikes) but others like Cardano have incorporated it foundationally.

Why yikes? If its a legacy transition, with a flight plan and testing, then it should be fine.

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#43
post #18

Earlier quoted context omitted.

There's a difference. You can't physically centralize energy production. Local energy price will increase when more energy is used. This ensures that no one can get in a position of control. In PoS, it's possible to get > 50% ownership, and it's game over.

Aren't 65% of all bitcoin miners in China? Couldn't the CCP sabotage the network at any time? Say, a month before the launch of their digital currency? https://cbeci.org/mining_map

This specific visualization is limited to 37% of the hash power on the network. It's possible that it is a representative sample, but I don't think we can assume that.

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#44

While Cardano is interesting, I believe IOTA's implementation of a ledger using a directed acyclic graph is much more interesting/scalable. In addition IOTA's focus on micro-transactions / the machine economy seems like a no brainer and something that cryptocurrencies generally neglect..

Has IOTA gotten rid of its centralized server that 'approves' transactions?

Have they figured out how to stop spamming from making the network unusable?

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#45

While Cardano is interesting, I believe IOTA's implementation of a ledger using a directed acyclic graph is much more interesting/scalable. In addition IOTA's focus on micro-transactions / the machine economy seems like a no brainer and something that cryptocurrencies generally neglect..

Lol.

IOTA is a scam.

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#46
post #18
post #9

Earlier quoted context omitted.

Not sure if you are claiming that BTC currently solves the "more wealth -> more power in system" problem but it clearly doesn't. The current state of affairs is more wealth -> more ASICS R&D and infrastructure budget -> more hash power -> more power in the system.

There's a difference. You can't physically centralize energy production. Local energy price will increase when more energy is used. This ensures that no one can get in a position of control. In PoS, it's possible to get > 50% ownership, and it's game over.

That is true, but its easy to centralize private ASIC designs or in a more extreme case the underlying chip fabs. If TSMC wanted to control the Bitcoin network they'd have a fair shot given they have by far and away the best fabrication technology for high performance chips

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#47
post #42

Important paper here because almost all the next gen blockchains will be using POS. Ethereum is trying to switch mid-flight (yikes) but others like Cardano have incorporated it foundationally. If you're a no-coiner or Bitcoin maximalist, none of this really matters. But if you accept the premise that the future of financial infrastructure is moving towards decentralized, blockchain based systems, then a secure, scala…

> Ethereum is trying to switch mid-flight (yikes) but others like Cardano have incorporated it foundationally. Why yikes? If its a legacy transition, with a flight plan and testing, then it should be fine.

Well, as one example, what happens to all the miners and their infrastructure? Seems like they get hung out to dry.

Second, the technical complexity involved seems challenging. I'm not a dev, and I'm not saying it's impossible, but making substantial core changes on a live, decentralized system running all sort of layer two infrastructure seems really dicey.

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#48
post #9

Earlier quoted context omitted.

Not sure if you are claiming that BTC currently solves the "more wealth -> more power in system" problem but it clearly doesn't. The current state of affairs is more wealth -> more ASICS R&D and infrastructure budget -> more hash power -> more power in the system.

This doesn't work for ETH1, which is PoW, but memory hard, which ties the network to GPUs over ASICs due to the cost structure of producing ASICs. It is cheaper to buy an off the shelf GPU than it is to buy an ASIC. You also have to factor in the fact that the latest GPUs are not necessarily the best ROI. If you can get lower speed GPUs for a fraction of the cost, then your return on that is much faster. Of course, t…

> It is cheaper to buy an off the shelf GPU than it is to buy an ASIC.

Ahh I guess all the people making/buying ETH mining ASICs must be out of their minds then? First result I found: https://www.coindesk.com/linzhi-rollout-long-awaited-ethereu...

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#49

Proof of Stake not only replicates the same dynamics that Bitcoin was designed to eliminate (more wealth -> more power in system) but also can only be made secure against a maximum of ⅓ byzantine actors, compared to Proof of Work's superior ½. As for using it for Layer 1 systems, Andrew Poelstra nailed it in his conclusion [0]: "We showed that by depending only on resources within the system, proof of stake cannot be…

There's a couple things wrong here: > Proof of Stake not only replicates the same dynamics that Bitcoin was designed to eliminate (more wealth -> more power in system) There is no legitimate sense in which PoS _is_ an instance of "rich have more power and get richer" but PoW is not. In fact, PoW is _worse_ than PoS in this regard, because PoW has economies of scale (if someone with a $100k investment earns $10k/year,…

Oooh. Its the man himself!

Curious about what you think about ourboros/cardano! Pros cons vs eth?

Re: Ouroboros: A Provably Secure Proof-of-Stake Blockchain Protocol [pdf] (2019)

#50
post #24

Earlier quoted context omitted.

> only be made secure against a maximum of ⅓ byzantine actors What is the threat model here, and in particular what is the outcome of a successful attack? For example, if the only "power in the system" the attacker has is the ability to prevent transactions from occurring, then the attacker is damaging the value of their own coins. The honest majority could, as a last resort, also decide to manually fork the currency…

There are concerns (or concern trolls) about an attacker buying old keys for almost nothing, trashing the chain, then profiting by shorting. And there are concerns that the honest majority can't figure out how to switch to the honest fork.

>And there are concerns that the honest majority can't figure out how to switch to the honest fork.

If that's always an option why bother with proof of stake in the first place? Just let it do whatever and switch to the "correct" fork once in a while!

Post reply on HN