Struct schnorrkel::vrf::Malleable
source · pub struct Malleable<T: SigningTranscript>(pub T);
Expand description
VRF SigningTranscript for malleable VRF outputs.
Warning We caution that malleable VRF outputs are insecure when used in conjunction with HDKD, as provided in dervie.rs. Attackers could translate malleable VRF outputs from one soft subkey to another soft subkey, gaining early knowledge of the VRF output. We think most VRF applications for which HDKH sounds suitable benefit from using implicit certificates instead of HDKD anyways, which should also be secure in combination with HDKD. We always use non-malleable VRF inputs in our convenience methods.
Tuple Fields§
§0: T
Trait Implementations§
source§impl<T> VRFSigningTranscript for Malleable<T>where
T: SigningTranscript,
impl<T> VRFSigningTranscript for Malleable<T>where
T: SigningTranscript,
Auto Trait Implementations§
impl<T> Freeze for Malleable<T>where
T: Freeze,
impl<T> RefUnwindSafe for Malleable<T>where
T: RefUnwindSafe,
impl<T> Send for Malleable<T>where
T: Send,
impl<T> Sync for Malleable<T>where
T: Sync,
impl<T> Unpin for Malleable<T>where
T: Unpin,
impl<T> UnwindSafe for Malleable<T>where
T: UnwindSafe,
Blanket Implementations§
source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
source§default unsafe fn clone_to_uninit(&self, dst: *mut T)
default unsafe fn clone_to_uninit(&self, dst: *mut T)
🔬This is a nightly-only experimental API. (
clone_to_uninit
)