--- Log opened Wed May 06 00:00:14 2020 01:10 -!- SashaRose [b29758b5@gateway/web/cgi-irc/kiwiirc.com/ip.178.151.88.181] has joined #secp256k1 01:12 -!- SashaRose [b29758b5@gateway/web/cgi-irc/kiwiirc.com/ip.178.151.88.181] has quit [Client Quit] 03:25 < elichai2> Is it true that any 256bit number has a ~50% of being a valid X coordinate? 04:50 -!- jonatack_ [~jon@37.166.24.197] has joined #secp256k1 04:53 -!- jonatack [~jon@37.164.75.174] has quit [Ping timeout: 256 seconds] 05:02 -!- jonatack_ [~jon@37.166.24.197] has quit [Quit: jonatack_] 05:17 -!- jonatack [~jon@37.166.24.197] has joined #secp256k1 05:21 -!- jonatack_ [~jon@134.19.179.195] has joined #secp256k1 05:21 -!- jonatack [~jon@37.166.24.197] has quit [Ping timeout: 272 seconds] 05:21 -!- jonatack_ [~jon@134.19.179.195] has quit [Client Quit] 05:22 -!- jonatack [~jon@134.19.179.195] has joined #secp256k1 05:32 < real_or_random> elichai2: yes, half of the non-zero scalars are valid x coords 06:44 < sipa> more precisely, it has ((N-1)/2)/(2^256) chance of being a valid X coordinate 06:48 < real_or_random> I wonder if f(random curve C in our field, x) = is x a valid x-coordinate on C is a PRF 06:49 < real_or_random> so can you predict other x-coords after seeing a few x-coords? I guess that's hard. not sure if anyone looked seriously into the hardness 06:51 < sipa> so the curve equation is the "key" ? 06:51 < real_or_random> right 06:52 < real_or_random> may be an efficient PRF inside a circuit 06:54 < real_or_random> it's just one bit but you could use H(x, 1), ... H(x, n) instead of x directly, and it's possible to compute the hashes outside the circuit 06:56 < sipa> feels related to the quadratic residuosity prf 07:07 < real_or_random> oh indeed 08:30 -!- benma [~benma@unaffiliated/benma] has joined #secp256k1 08:36 -!- x1ddos [~alex@213.144.147.16] has joined #secp256k1 10:22 -!- benma [~benma@unaffiliated/benma] has quit [Ping timeout: 260 seconds] 16:54 -!- jonatack [~jon@134.19.179.195] has quit [Ping timeout: 246 seconds] 16:56 -!- jonatack [~jon@37.173.38.62] has joined #secp256k1 19:17 -!- x1ddos [~alex@213.144.147.16] has quit [Ping timeout: 272 seconds] 21:24 -!- stackingcore21 [~stackingc@2604:a880:2:d0::1bda:1001] has quit [Remote host closed the connection] 21:24 -!- stackingcore21 [~stackingc@2604:a880:2:d0::1bda:1001] has joined #secp256k1 --- Log closed Thu May 07 00:00:14 2020