|
|
|
|
|
by px43
1045 days ago
|
|
Okay, so what's the attack scenario here? Imagine we live in a future where Worldcoin is ubiquitous, all the hardware/software is open source. Several orb operators exist in every city in the world, and operators have a non-trivial amount of WLD tokens staked to ensure good behavior. Misbehaving orbs have their keys and subkeys revoked at the first sign of illicit usage. Maybe a criminal kidnaps 10 people, then steals an orb, and uses those 10 iriscodes to register 10 new credentials on the network. How much profit would you expect to come to the criminal before their credentials are revoked? Is there another attack you're thinking of? |
|
This is a lot of work. Just steal the iriscodes. If they're used for re-issuance, they're being stored and transferred. If they are not directly used, there is a hash-like reduction that can be exploited.
For sake of argument, though, let's assume perfect security. Infallible security. All the way through. Congratulations, you've turned every pair of eyeballs into an oil spigot. When the Taliban or ISIS carves through a town, instead of beheading the leaders and taking their treasures, they take everyones' irises. Every authoritarian state would require scans of its citizens so payment could be routed through (read: stolen by) it, a requirement they would back up with violence.