SaberhagenTheNameless on Nostr: Dero has been broken for awhile. It uses ElGamal instead of Pedersen commitments so ...
Dero has been broken for awhile. It uses ElGamal instead of Pedersen commitments so is not "perfectly hiding" amounts like Monero. They also make false claims about having Fully Homomorphic Encryption when they are only Partial. I would be very wary. I'm biased obviously, but these are just facts.
Deanonymization of the Dero Network:
https://gist.github.com/kayabaNerve/b754e9ed9fa4cc2c607f38a83aa3df2a
https://gist.github.com/kayabaNerve/d1b20f48f0d54f8d1beccf74de13e940#deros-privacy
Deanonymization of the Dero Network:
https://gist.github.com/kayabaNerve/b754e9ed9fa4cc2c607f38a83aa3df2a
https://gist.github.com/kayabaNerve/d1b20f48f0d54f8d1beccf74de13e940#deros-privacy