<img src="https://steemitimages.com/DQmb1nZtQbXzJsVfzFgwXkKnjKfKW3QEYxgEG8p7u2wDKD2/image.png"> ### Repository https://github.com/kingswisdom/SteemMessenger Merged request: https://github.com/kingswisdom/SteemMessenger/pull/18 ### About the project Steem Messenger aims to cover a need in our **ecosysteem**, the need for a chat on Steem. We aim to do it ***securely***. We want to build the ultimate chat application for the Steem blockchain. Designed for privacy, with the clever use of the Private Memo Key to authenticate yourself into the Messenger's network, you'll soon be able to safely engage with everybody on the Steem social network without needing anything more than your recipient username. We use the Steem blockchain as a Decentralized Public Key Infrastructure (DPKI), meaning the Steem blockchain is our contact book, with usernames and they public keys associated to them. We also add a local encrypted wallet (another missing component of steem) to store user keys, like the memo private key. ### New Features #### Scrypt Benchmark and Parameters choice [Scrypt](https://en.wikipedia.org/wiki/Scrypt) is a password-based key derivation function that help increase the security of the usage of users password. It hardens the job of an attacker trying to crack your password, specially against GPUs. GPUs are well suited for cracking password because they have more computing units to run the same function and they are easier to scale than CPUs. Using Scrypt greatly decreases the advantage of using GPUs for attackers. This is the reason why it was interesting for mining, although cryptocurrencies like Litecoin used very weak parameters. So we evaluate the default parameters and benchmark our library to see how much we could increase the default parameters while staying well under the 10s for the first login. We use https://github.com/bestiejs/benchmark.js/ First download benchmark.js, platform.js and lodash.js. Second bundle the benchmmark js for the browser: ``` browserify tests.js -o bundle.js ``` Now fire ```index.html``` in your browser and look in the console for the result. Some results: Settings: VM with 2 cpus, 3GB of RAM running Ubuntu Using directly ```node tests.js``` (outside of the browser) ``` ======================== starting Benchmark ======================== default x 0.38 ops/sec ±14.89% (6 runs sampled) => average time 2.651413617 seconds power15 x 0.24 ops/sec ±1.35% (5 runs sampled) => average time 4.1795559346 seconds power16 x 0.12 ops/sec ±1.62% (5 runs sampled) => average time 8.406441287000002 seconds power17 x 0.06 ops/sec ±5.65% (5 runs sampled) => average time 17.863167007 seconds power18 x 0.03 ops/sec ±2.32% (5 runs sampled) => average time 36.5808561954 seconds Fastest is default ``` In Firefox I get: ``` ======================== starting Benchmark ======================== default x 0.72 ops/sec ±7.56% (6 runs sampled) => average time 1.3905 seconds power15 x 0.33 ops/sec ±18.72% (5 runs sampled) => average time 3.0620000000000003 seconds power16 x 0.18 ops/sec ±7.46% (5 runs sampled) => average time 5.6842 seconds power17 x 0.08 ops/sec ±14.08% (5 runs sampled) => average time 12.9344 seconds power18 x 0.10 ops/sec ±2.06% (5 runs sampled) => average time 10.2472 seconds Fastest is default ``` I recommended ```N=2^16, r=8, p=1```. I would like to increase in the future ```N``` to ```2^18``` (remember the default is ```2^14```). An attacker will certainly not use Javascript code to attack so we are only making her job easier if we can not wait a bit longer to use our keys. *I will write a complete article on password state of the art and wallet encryption in a future post/ on the project wiki. Some sources:* * [scrypt wikipedia](https://en.wikipedia.org/wiki/Scrypt) * ethereum wallet (2^18): https://ethereum.stackexchange.com/questions/37150/ethereum-wallet-v3-format * filippo explanation: https://blog.filippo.io/the-scrypt-parameters/ * ethereum wallet cracker : https://stealthsploit.com/2018/01/04/ethereum-wallet-cracking-pt-2-gpu-vs-cpu/ * https://www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2015/march/enough-with-the-salts-updates-on-secure-password-schemes/ #### Choose SJCL library It is hard to do proper cryptography in Javascript. With NodeJS, you get some functions but they usually come from different libraries and it is a better practice to rely on one cryptographic library. We also have the issue that the code needs to work on the client side and not all libraries/function work with ```browserify```. We choose the [sjcl](http://bitwiseshiftleft.github.io/sjcl/) library because it has no dependecies, was written by cryptographers, is also used by [steem js libcrypto](https://github.com/steemit/libcrypto-js), support various enconding(base64url) and cryptographic functions (AES GCM). Here is what the decryption function looks like now: ``` /** * Decryption of AES-GCM. * @param {string} decryptionKey A base64url encoded symmetric key. Error if it is not the right key * @param {string} data string. Make sure that data is a printable (base64url if possible) string. * @return {string} The flat json ciphertext. */ Crypto.decrypt = function(decryptionKey,data){ try{ var rawDecryptionKey = sjcl.codec.base64url.toBits(decryptionKey); //convert base64url to base64 data = data.replace(/-/g,'+').replace(/_/g,'/') var plaintext = sjcl.decrypt(rawDecryptionKey, data); return plaintext; }catch(err) { //either the raw dercyption key is not base64url //either the decryption fail: which is because //the decryption key is not the good one //or/and the authentication tag is wrong return err; } } ``` In the **next version**, we will try to upgrade the remaining security functions, like scrypt or random number generation, that do not rely yet on SJCL. #### cryptography migration The Steem.memo.encode/decode function does two things: 1) (asymmetric) key exchange to generate a shared secret using the sender memo key and the recipient memo key. This is [Diffie–Hellman key exchange](https://en.wikipedia.org/wiki/Diffie%E2%80%93Hellman_key_exchange). 2) (symmetric) uses the shared secret with AES in mode CBC to encrypt/decrypt the message. We ran run into two problems: 1) asymmetric cryptography is significantly slower than the symmetric counterpart. So this will be the main bottleneck. It is a bad idea to redo this operation every time we need to send a message. In Steem-Messenger, we encrypt messages between sender and recipient, then this message is encrypted by the sender for the server, then decrypted by the server, and again encrypted by the server for the recipient. This means, if we use the ```steem.memo.encode/decode``` function, that we will do two asymetric operations per messages because of the encryption and super-encryption. This was really slow in the previous version. We now store as much as possible the shared secret. Note that this is mainly a client side problem. 2) Since we are off the chain, we do not have any signature on the message. This means that recipient cannot verify authenticity and integrity of the messages. On Steem, you usually sign the operation, whether you write a comment with your posting key or send a transfer with your active key. ```Steem.memo.encode``` does not cover this need because it uses AES in the CBC mode. We decide to switch to [the mode GCM](https://en.wikipedia.org/wiki/Galois/Counter_Mode) which provide an authentication tag with the ciphertext. ``` /** * Encryption using AES-GCM. The choices were CCM, GCM, and OCB2. I need to check the other 2. * @param {string} encryptionKey A base64url encoded symmetric key * @param {string} data string. Make sure that data is a printable (base64url if possible) string. * @return {string} The flat json ciphertext. */ Crypto.encrypt = function (encryptionKey,data){ try{ var rawEncryptionKey = sjcl.codec.base64url.toBits(encryptionKey); var ciphertext = sjcl.encrypt(rawEncryptionKey, data, {mode : "gcm"}); var rawct = sjcl.json.decode(ciphertext); var rawOutput = {iv:sjcl.codec.base64url.fromBits(rawct.iv), mode : "gcm", cipher :"aes", ct:sjcl.codec.base64url.fromBits(rawct.ct)}; var output = sjcl.json.encode(rawOutput); return output; }catch(err) {//should happen only if the encryption key is not base64url return err; } } ``` We then update our core functions to use the our new cryptographic choices: * user to user message encryption. This greatly improves file encryption performance. * user to server (and vice-versa) socket encryption. * wallet storage #### Various fixes Previous version ran two round of Scrypt which was rather unnecessary. The salt was also fixed, which is defeating the purpose of using a salt. Wallet update was re-using the same *initializing vector* This is bad for stream (mode) encryption because: ``` CT1 = M1 xor KEY CT2 = M2 xor KEY => CT1 xor CT2 = M1 xor KEY xor M2 xor KEY = M1 xor M2 ``` There are ways to get some of the contents of both messages form their xor. This was a small issue because the function was not used yet. The fix was simple, the update function just use the create function. We also moved from base58 to base64url. I am not sure if it is necessary to use base64url instead of just base64 but for now I am sticking to it. #### Next features We are looking into the [Signal protocol](https://en.wikipedia.org/wiki/Signal_Protocol) to securely add group chat and voice/video calls. We are also exploring how we can extend the scope of the wallet to store more keys and do in-chat token transfer. #### GitHub Account https://github.com/cryptohazard
post_id | 64,254,037 |
---|---|
author | cryptohazard |
permlink | steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates |
category | utopian-io |
json_metadata | {"image":["https:\/\/steemitimages.com\/DQmb1nZtQbXzJsVfzFgwXkKnjKfKW3QEYxgEG8p7u2wDKD2\/image.png"],"app":"steemit\/0.1","links":["https:\/\/github.com\/kingswisdom\/SteemMessenger","https:\/\/github.com\/kingswisdom\/SteemMessenger\/pull\/18","https:\/\/en.wikipedia.org\/wiki\/Scrypt","https:\/\/github.com\/bestiejs\/benchmark.js\/","https:\/\/ethereum.stackexchange.com\/questions\/37150\/ethereum-wallet-v3-format","https:\/\/blog.filippo.io\/the-scrypt-parameters\/","https:\/\/stealthsploit.com\/2018\/01\/04\/ethereum-wallet-cracking-pt-2-gpu-vs-cpu\/","https:\/\/www.nccgroup.trust\/us\/about-us\/newsroom-and-events\/blog\/2015\/march\/enough-with-the-salts-updates-on-secure-password-schemes\/","http:\/\/bitwiseshiftleft.github.io\/sjcl\/","https:\/\/github.com\/steemit\/libcrypto-js","https:\/\/en.wikipedia.org\/wiki\/Diffie%E2%80%93Hellman_key_exchange","https:\/\/en.wikipedia.org\/wiki\/Galois\/Counter_Mode","https:\/\/en.wikipedia.org\/wiki\/Signal_Protocol","https:\/\/github.com\/cryptohazard"],"tags":["utopian-io","development","steem","security","cryptography"],"format":"markdown"} |
created | 2018-10-14 21:13:48 |
last_update | 2018-10-14 21:13:48 |
depth | 0 |
children | 13 |
net_rshares | 41,462,905,529,681 |
last_payout | 2018-10-21 21:13:48 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 40.500 SBD |
curator_payout_value | 13.268 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 9,660 |
author_reputation | 17,113,283,041,617 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
arcange | 0 | 24,748,393,062 | 4% | ||
raphaelle | 0 | 1,904,090,864 | 4% | ||
sensation | 0 | 325,107,440 | 100% | ||
doughtaker | 0 | 27,653,285,956 | 100% | ||
wargof | 0 | 352,601,460 | 10% | ||
espoem | 0 | 12,465,064,882 | 10% | ||
pataty69 | 0 | 14,274,327,412 | 25% | ||
baloox | 0 | 471,984,761 | 10% | ||
vladimir-simovic | 0 | 128,275,639,300 | 100% | ||
utopian-io | 0 | 40,153,962,572,652 | 28% | ||
emrebeyler | 0 | 33,856,416,853 | 2.5% | ||
newsrx | 0 | 75,410,863 | 6.41% | ||
lpv | 0 | 770,766,288 | 2.5% | ||
iptrucs | 0 | 6,362,307,991 | 15% | ||
elex17 | 0 | 138,468,588 | 10% | ||
fabinhocrypto | 0 | 192,013,924 | 10% | ||
mvanyi | 0 | 1,547,487,882 | 100% | ||
duke77 | 0 | 349,773,043 | 5% | ||
amosbastian | 0 | 48,081,517,167 | 25.28% | ||
tdre | 0 | 14,022,942,791 | 100% | ||
jjay | 0 | 419,792,327 | 100% | ||
oups | 0 | 5,006,213,063 | 10% | ||
voltagrou | 0 | 2,069,043,812 | 20% | ||
vianney | 0 | 213,620,499 | 20% | ||
curiousshibby | 0 | 210,514,303 | 10% | ||
osazuisdela | 0 | 641,411,530 | 20% | ||
leguidecrypto | 0 | 983,797,990 | 10% | ||
kelos | 0 | 174,332,965 | 25% | ||
simplymike | 0 | 64,603,167,054 | 45% | ||
zcool | 0 | 187,081,853 | 10% | ||
thesport | 0 | 97,257,270 | 25% | ||
statsexpert | 0 | 1,148,443,803 | 20% | ||
lartist-zen | 0 | 171,649,907 | 10% | ||
imcore | 0 | 938,145,466 | 10% | ||
naruitchi | 0 | 1,198,871,215 | 10% | ||
enlighted | 0 | 90,568,319 | 25% | ||
cryptofrench | 0 | 420,481,169 | 10% | ||
ryuna.siege | 0 | 208,917,398 | 100% | ||
fanbasefr | 0 | 731,317,208 | 10% | ||
albatar | 0 | 134,982,368 | 10% | ||
renac | 0 | 71,379,010 | 10% | ||
heros | 0 | 143,279,643 | 20% | ||
mightypanda | 0 | 53,259,484,302 | 45% | ||
truthly | 0 | 163,968,201 | 100% | ||
mops2e | 0 | 279,515,920 | 10% | ||
bhaski | 0 | 2,011,547,230 | 25% | ||
bullinachinashop | 0 | 3,881,189,663 | 100% | ||
steem-ua | 0 | 849,206,639,326 | 6.41% | ||
curbot | 0 | 3,852,743,688 | 10% | ||
linknotfound | 0 | 556,000,000 | 100% |
Hi, I checked the [PR](https://github.com/kingswisdom/SteemMessenger/pull/18) and didn't find any of your commits (under your github account ID @cryptohazard) in the last 14 days and therefore I am afraid that this will not be moderated. Please could you read the [utopian guidance](https://join.utopian.io/guidelines/). Thank you for your understanding. ---- Need help? Write a ticket on https://support.utopian.io/. Chat with us on [Discord](https://discord.gg/uTyJkNm). [[utopian-moderator]](https://join.utopian.io/)
post_id | 64,254,642 |
---|---|
author | justyy |
permlink | re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181014t213150378z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","links":["https:\/\/github.com\/kingswisdom\/SteemMessenger\/pull\/18","https:\/\/join.utopian.io\/guidelines\/","https:\/\/support.utopian.io\/","https:\/\/discord.gg\/uTyJkNm","https:\/\/join.utopian.io\/"],"tags":["utopian-io"],"users":["cryptohazard"]} |
created | 2018-10-14 21:31:51 |
last_update | 2018-10-14 21:46:33 |
depth | 1 |
children | 5 |
net_rshares | 7,396,831,075,234 |
last_payout | 2018-10-21 21:31:51 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 7.219 SBD |
curator_payout_value | 2.401 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 526 |
author_reputation | 2,041,737,944,669,531 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
happyukgo | 0 | 483,320,944 | 25% | ||
superbing | 0 | 1,785,464,847 | 25% | ||
dailystats | 0 | 4,512,909,411 | 25% | ||
utopian-io | 0 | 7,343,684,225,869 | 5.13% | ||
organicgardener | 0 | 2,483,534,970 | 25% | ||
penghuren | 0 | 274,368,543 | 100% | ||
dailychina | 0 | 5,001,611,271 | 25% | ||
mightypanda | 0 | 28,731,974,231 | 25% | ||
turtlegraphics | 0 | 2,410,977,925 | 25% | ||
fastandcurious | 0 | 1,392,974,499 | 35% | ||
witnesstools | 0 | 2,323,574,484 | 25% | ||
ilovecoding | 0 | 2,239,226,741 | 25% | ||
steemfuckeos | 0 | 1,506,911,499 | 25% |
Hi, the guidance says: > To be considered for potential reward, Bug Fixes and New Features should be submitted via Pull Requests. The Pull Request should have been merged within the past 14 days. We have been working on the code for quite some time and we finish the new version now. From the rules, it is the date of the pull request that is relevant, not the commits. I mean we are two working on this projects and the work from the main developper (and project owner) got accepted in utopian: https://steemit.com/utopian-io/@kingswisdom/steem-messenger-v0-0-5-safestorage-safesocket-last-update-before-release-and-many-more.
post_id | 64,278,698 |
---|---|
author | cryptohazard |
permlink | re-justyy-re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t083504360z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","links":["https:\/\/steemit.com\/utopian-io\/@kingswisdom\/steem-messenger-v0-0-5-safestorage-safesocket-last-update-before-release-and-many-more"],"tags":["utopian-io"]} |
created | 2018-10-15 08:35:06 |
last_update | 2018-10-15 08:35:06 |
depth | 2 |
children | 3 |
net_rshares | 0 |
last_payout | 2018-10-22 08:35:06 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 628 |
author_reputation | 17,113,283,041,617 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
Yes, I can see that, but it is @kingswisdom who opened up the PR (and he did most of the contribution as far as I can see from the list) and merged it. As you said, the main developer has a post accepted already.
post_id | 64,279,203 |
---|---|
author | justyy |
permlink | re-cryptohazard-re-justyy-re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t084842766z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","users":["kingswisdom"],"tags":["utopian-io"]} |
created | 2018-10-15 08:48:42 |
last_update | 2018-10-15 08:48:42 |
depth | 3 |
children | 2 |
net_rshares | 19,921,965,137 |
last_payout | 2018-10-22 08:48:42 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.018 SBD |
curator_payout_value | 0.002 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 212 |
author_reputation | 2,041,737,944,669,531 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
happyukgo | 0 | 461,467,998 | 25% | ||
superbing | 0 | 1,705,697,217 | 25% | ||
dailystats | 0 | 4,333,425,520 | 25% | ||
cheneats | 0 | 271,105,666 | 90% | ||
dailychina | 0 | 4,774,975,405 | 25% | ||
turtlegraphics | 0 | 2,296,545,503 | 25% | ||
witnesstools | 0 | 2,216,646,938 | 25% | ||
ilovecoding | 0 | 2,105,402,386 | 25% | ||
motherboy | 0 | 321,862,237 | 5.41% | ||
steemfuckeos | 0 | 1,434,836,267 | 25% |
Thank you for your review, @justyy! So far this week you've reviewed 4 contributions. Keep up the good work!
post_id | 64,563,687 |
---|---|
author | utopian-io |
permlink | re-re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181014t213150378z-20181019t222615z |
category | utopian-io |
json_metadata | {"app":"beem\/0.20.1"} |
created | 2018-10-19 22:26:15 |
last_update | 2018-10-19 22:26:15 |
depth | 2 |
children | 0 |
net_rshares | 0 |
last_payout | 2018-10-26 22:26:15 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 109 |
author_reputation | 152,913,012,544,965 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
Just got the opinions from CM and he said it is fine, so I will review your contribution in 12 hours. Thanks and sorry for any inconvenience.
post_id | 64,280,341 |
---|---|
author | justyy |
permlink | re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t091418413z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","tags":["utopian-io"]} |
created | 2018-10-15 09:14:18 |
last_update | 2018-10-15 09:14:18 |
depth | 1 |
children | 1 |
net_rshares | 19,165,606,062 |
last_payout | 2018-10-22 09:14:18 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.017 SBD |
curator_payout_value | 0.003 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 141 |
author_reputation | 2,041,737,944,669,531 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
happyukgo | 0 | 458,237,441 | 25% | ||
superbing | 0 | 1,691,026,526 | 25% | ||
dailystats | 0 | 4,297,266,547 | 25% | ||
dailychina | 0 | 4,734,137,242 | 25% | ||
turtlegraphics | 0 | 2,276,968,387 | 25% | ||
witnesstools | 0 | 2,197,727,270 | 25% | ||
ilovecoding | 0 | 2,087,856,276 | 25% | ||
steemfuckeos | 0 | 1,422,386,373 | 25% |
Sorry too. I thought I knew it would work without issue because I have seen other projects accepted before. That is why I was a bit surprise. thanks for reviewing.
post_id | 64,281,545 |
---|---|
author | cryptohazard |
permlink | re-justyy-re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t094513190z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","tags":["utopian-io"]} |
created | 2018-10-15 09:45:15 |
last_update | 2018-10-15 09:45:15 |
depth | 2 |
children | 0 |
net_rshares | 0 |
last_payout | 2018-10-22 09:45:15 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 163 |
author_reputation | 17,113,283,041,617 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
Thank you for your contribution. I can see huge efforts have been put to ensure the messages transferred on the steem blockchain are safe. So how do you overcome the problem that the messages may be forged (are not geniue) if you don't sign the messages? Also, since on steem block chains are producing blocks every 3 seconds - and there is a 3 second comment limit, if a user has typed so fast how do you solve this problem? Your contribution has been evaluated according to [Utopian policies and guidelines](https://join.utopian.io/guidelines), as well as a predefined set of questions pertaining to the category. To view those questions and the relevant answers related to your post, [click here](https://review.utopian.io/result/3/2312222). ---- Need help? Write a ticket on https://support.utopian.io/. Chat with us on [Discord](https://discord.gg/uTyJkNm). [[utopian-moderator]](https://join.utopian.io/)
post_id | 64,290,965 |
---|---|
author | justyy |
permlink | re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t131341594z |
category | utopian-io |
json_metadata | {"tags":["utopian-io"],"links":["https:\/\/join.utopian.io\/guidelines","https:\/\/review.utopian.io\/result\/3\/2312222","https:\/\/support.utopian.io\/","https:\/\/discord.gg\/uTyJkNm","https:\/\/join.utopian.io\/"],"app":"steemit\/0.1"} |
created | 2018-10-15 13:13:42 |
last_update | 2018-10-15 13:13:42 |
depth | 1 |
children | 1 |
net_rshares | 27,635,576,396 |
last_payout | 2018-10-22 13:13:42 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.025 SBD |
curator_payout_value | 0.002 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 917 |
author_reputation | 2,041,737,944,669,531 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
happyukgo | 0 | 457,512,731 | 25% | ||
mys | 0 | 1,258,033,783 | 1.23% | ||
pixelfan | 0 | 1,133,912,370 | 0.54% | ||
superbing | 0 | 1,678,388,836 | 25% | ||
dailystats | 0 | 4,279,307,249 | 25% | ||
interfecto | 0 | 845,652,235 | 17% | ||
dailychina | 0 | 4,706,609,718 | 25% | ||
reazuliqbal | 0 | 5,359,838,414 | 8% | ||
turtlegraphics | 0 | 2,260,890,630 | 25% | ||
witnesstools | 0 | 2,182,043,551 | 25% | ||
ilovecoding | 0 | 2,061,265,719 | 25% | ||
steemfuckeos | 0 | 1,412,121,160 | 25% |
This is why we don't put the messages on the blockchain. You also have the issue that the blockchain would store your conversations forever, even if they are encrypted. So what do we use steem for? Just for the keys. That way you and I can check each other memo keys directly on the blockchain. Then everything else use a good old database. We are planning to release it live pretty soon I hope. That way people will test and we will have feedback and a lot of bugs most likely.
post_id | 64,340,335 |
---|---|
author | cryptohazard |
permlink | re-justyy-re-cryptohazard-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181016t082108874z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","tags":["utopian-io"]} |
created | 2018-10-16 08:21:12 |
last_update | 2018-10-16 08:21:12 |
depth | 2 |
children | 0 |
net_rshares | 377,280,224 |
last_payout | 2018-10-23 08:21:12 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 481 |
author_reputation | 17,113,283,041,617 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
cheneats | 0 | 178,806,822 | 90% | ||
motherboy | 0 | 198,473,402 | 3.68% |
#### Hi @cryptohazard! Your post was upvoted by @steem-ua, new Steem dApp, using UserAuthority for algorithmic post curation! Your post is eligible for our upvote, thanks to our collaboration with @utopian-io! **Feel free to join our [@steem-ua Discord server](https://discord.gg/KpBNYGz)**
post_id | 64,291,627 |
---|---|
author | steem-ua |
permlink | re-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t132413z |
category | utopian-io |
json_metadata | {"app":"beem\/0.20.7"} |
created | 2018-10-15 13:24:15 |
last_update | 2018-10-15 13:24:15 |
depth | 1 |
children | 1 |
net_rshares | 0 |
last_payout | 2018-10-22 13:24:15 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 291 |
author_reputation | 23,203,609,903,979 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
post_id | 64,340,383 |
---|---|
author | cryptohazard |
permlink | re-steem-ua-re-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181015t132413z-20181016t082220376z |
category | utopian-io |
json_metadata | {"app":"steemit\/0.1","tags":["utopian-io"]} |
created | 2018-10-16 08:22:21 |
last_update | 2018-10-16 08:22:21 |
depth | 2 |
children | 0 |
net_rshares | 373,962,711 |
last_payout | 2018-10-23 08:22:21 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 7 |
author_reputation | 17,113,283,041,617 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
cheneats | 0 | 175,669,008 | 90% | ||
motherboy | 0 | 198,293,703 | 3.68% |
Hey, @cryptohazard! **Thanks for contributing on Utopian**. We’re already looking forward to your next contribution! **Get higher incentives and support Utopian.io!** Simply set @utopian.pay as a 5% (or higher) payout beneficiary on your contribution post (via [SteemPlus](https://chrome.google.com/webstore/detail/steemplus/mjbkjgcplmaneajhcbegoffkedeankaj?hl=en) or [Steeditor](https://steeditor.app)). **Want to chat? Join us on Discord https://discord.gg/h52nFrV.** <a href='https://steemconnect.com/sign/account-witness-vote?witness=utopian-io&approve=1'>Vote for Utopian Witness!</a>
post_id | 64,642,077 |
---|---|
author | utopian-io |
permlink | re-steem-messenger-v0-0-6-deep-dive-in-the-cryptography-updates-20181021t081512z |
category | utopian-io |
json_metadata | {"app":"beem\/0.20.1"} |
created | 2018-10-21 08:15:15 |
last_update | 2018-10-21 08:15:15 |
depth | 1 |
children | 0 |
net_rshares | 0 |
last_payout | 2018-10-28 08:15:15 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 SBD |
curator_payout_value | 0.000 SBD |
pending_payout_value | 0.000 SBD |
promoted | 0.000 SBD |
body_length | 594 |
author_reputation | 152,913,012,544,965 |
root_title | "Steem Messenger V0.0.6 : Deep dive in the cryptography updates" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 SBD |
percent_steem_dollars | 10,000 |