Why does Ethereum use secp521k? In secp521k's favor, it's not trivially subject to being a deliberately bad choice from the NSA as, say P-256 is.

On the other hand, binary curves seem to be falling out of favor, and rigidly-chosen curves like curve25519 and its larger cousins are faster and seem to raise a lot fewer security concerns.


Sign In or Register to comment.