Ethereum Privacy Protocol Takes Foot Off Brake With Entirely Immutable Contracts

Published at: May 24, 2020

Fledgling Ethereum anonymization protocol Tornado.cash has launched completely immutable smart contracts — rendering the protocol “unstoppable” from May 21.

While the project has extolled the virtues of immutability and declared that “code is law,” many within the Ethereum (ETH) community are advising against depositing funds into the protocol.

Tornado.cash opts for complete immutability

Tornado notes that “[t]here are pros and cons” to its dedication to immutability, declaring heightened decentralization and the inability for smart contracts to be altered as positive virtues of the protocol.

However, the developers concede that “the tornado.cash team is also not able to protect the users from bugs anymore.” In the post announcing the transition to full immutability, the firm also recommends that users consider seeking insurance coverage on their funds.

Despite removing their hands from the version of the Tornado.cash protocol, its developers will turn their attention to building the next major version of the project, hoping to “replicate Zcash features onto Ethereum mainnet.”

Immutability versus vulnerability

Crypto analyst David Gerard criticized Tornado.cash’s fixation on immutability, describing the protocol as “a sitting duck for attackers, where security holes literally can’t be fixed.”

“[I]t seems Ethereum developers have already forgotten Ethereum’s first really huge disaster, The DAO,” Gerard added.

“Get to work, kids — there's a mixer to exploit!”

Tornado.cash has frequently garnered controversy since launching, receiving significant criticism from the Ethereum community after launching nine months ago.

In response to comments on Reddit, the project’s homepage has since been donned with a warning alerting potential users that it is “an experimental software” that is to be “use[d] at your own risk.”

Tags
Related Posts
Digital ruble must ensure privacy, not anonymity: Russia’s central bank
Elvira Nabiullina, the head of the Bank of Russia, argued that there is a line between anonymity and privacy regarding the circulation of an upcoming digital ruble. Speaking at a press conference on Oct. 23, Nabiullina said that Russia’s digital ruble will not have the same level of anonymity as cash. However, the bank expects to strengthen user privacy, Nabiullina promised, stating: “Still, we shouldn’t confuse the anonymity with confidentiality of digital ruble transactions. Indeed, there will not be the same level of anonymity that is supported by cash transactions. But confidentiality is expected to be enhanced.” Nabiullina elaborated that …
Regulation / Oct. 23, 2020
Orchid’s OXT Price Slips Over 20% After Launch for Trading on Coinbase Pro
American blockchain and software development firm Orchid Labs has launched its privacy network alongside its native token OXT. According to a blog post on Dec. 16, Orchid’s digital currency OXT was immediately available for trading on major United States-based cryptocurrency exchange Coinbase Pro. According to an announcement, OXT will be available in Coinbase’s supported jurisdictions, with the exception of New York State. Coinbase Pro started accepting OXT deposits on Dec. 13. OXT token allows one to buy and sell VPN services or provide bandwidth As previously reported, Orchid provides a decentralized virtual private network (VPN) for anonymous communication and virtual …
Ethereum / Dec. 18, 2019
Metamask Browser Extension Default Settings Broadcast ETH Addresses to Visited Websites
Leading Ethereum (ETH) browser extension Metamask reportedly broadcasts ETH addresses to all websites a user visits in its default settings, a GitHub issue submitted on March 20 states. Metamask is a browser extension featured in the Brave browser — compatible with Mozilla Firefox, Google Chrome and Opera — that enables its users to interact with Ethereum-based decentralized applications (DApps). According to the aforementioned GitHub issue, Metamask broadcasts its users’ ETH address to all the websites visited in its default settings, with the post specifying that the ETH addresses are shown in data objects contained in message broadcasts as opposed to …
Ethereum / March 23, 2019
Big Four Auditor EY Launches Zero-Knowledge System for Private Transactions on Ethereum
“Big Four” auditor Ernst and Young has launched the prototype of a system that enables secure and private transactions to take place on the Ethereum (ETH) public network, according to a press release Oct. 30. The system, dubbed EY Ops Chain Public Edition (PE), uses zero-knowledge proof (ZKP) technology, an alternative algorithm for authenticating distributed ledger entries, in which transacting parties provide proof of validity, but all other information remains encrypted, including their identities. The prototype is aimed at enterprises that wish to keep their transaction records private without having to resort to a permissioned, private network. Paul Brody, EY’s …
Adoption / Oct. 31, 2018
Samsung SDS to Use Zero-Knowledge Proofs on Business Blockchain
Samsung SDS, the IT arm of tech giant Samsung, has integrated QEDIT’s zero-knowledge proof solution (ZKP) to its Nexledger blockchain. By applying ZKP, Samsung SDS intends to provide a higher level of privacy for users of its enterprise blockchain platform Nexledger, QEDIT said in a press release on Nov. 14. To apply the technology, Samsung SDS has signed a memorandum of understanding with Israeli privacy-enhancing technology provider QEDIT in Seoul. According to the announcement, the agreement was signed by Jeanie Hong, senior VP at Samsung SDS’ blockchain division, and Jonathan Rouach, CEO and co-founder of QEDIT. Based on ZCP cryptography, …
Blockchain / Nov. 14, 2019