Hello all!
I will use ATE pairing on BN254 for blind signatures.
Also my app needs SPEKE protocol for password authentication.
I saw that the BN254 curve is marked as unsafe on safecurves.cr.yp.to due some 
Can I safely use this curve also for the SPEKE with Q1 only and checking the 
point on the curve before mult?

Van Gegel.

Curves mailing list

Reply via email to