Hello all! I will use ATE pairing on BN254 for blind signatures. Also my app needs SPEKE protocol for password authentication. I saw that the BN254 curve is marked as unsafe on safecurves.cr.yp.to due some factors. Can I safely use this curve also for the SPEKE with Q1 only and checking the point on the curve before mult?
Van Gegel.
_______________________________________________ Curves mailing list Curves@moderncrypto.org https://moderncrypto.org/mailman/listinfo/curves