RE: An overview of blockchain privacy mechanisms and how Zerocoin in Zcoin $XZC (not Zcash) stacks up
Hi @pivx! Thanks for chiming in. Saw the GUI you made for Zerocoin which is pretty neat.
Also good to hear that you would be making all of your developments open source. We have some pretty nice improvements and important fixes in libzerocoin which you might want to take a look at once we release so we can all benefit from the space.
I'm assuming you are still using RSA accumulators in your Zerocoin setup and still require the RSA modulus N ? Where would you be taking the parameters of the accumulator trapdoor p,q from?
If this is the case, then leakage of p,q will definitely lead to forgery of coins but it would NOT break anonymity unless you're not using RSA accumulators in your Zerocoin setup, in which case we would be very curious what you are using in its stead.
Relevant part of Zerocoin paper:
http://zerocoin.org/media/pdf/ZerocoinOakland.pdf