On Sun, Jul 8, 2018, 19:23 Erik Aronesty via bitcoin-dev <bitcoin-dev@lists.linuxfoundation.org> wrote:
Pretty sure these non interactive sigs are more secure.

Schnorr signatures are provably secure in the random oracle model assuming the discrete logarithm problem is hard in the used group.

What does "more secure" mean? Is your construction secure with weaker assumptions?

-- 
Pieter