Hello all!
I will use ATE pairing on BN254 for blind signatures.
Also my app needs SPEKE protocol for password authentication.
I saw that the BN254 curve is marked as unsafe on safecurves.cr.yp.to due some 
factors.
Can I safely use this curve also for the SPEKE with Q1 only and checking the 
point on the curve before mult?

Van Gegel.

_______________________________________________
Curves mailing list
Curves@moderncrypto.org
https://moderncrypto.org/mailman/listinfo/curves

Reply via email to