What Is the FROST Signature Scheme

[Applause] Cross is the threshold signature scheme You have maybe like 10 participants and Now like any five of them or any eight Of them or you know whatever whatever Parameters you want uh if you have a Quorum of them they are able to kind of Interactively fill in the gaps for the Missing Participants and they're able to produce A single signature so now just like with Mus you have one key one signature but Now the signature represents a quorum of People so you have this Quorum kind of Policy and what's cool is you can Nest These um or at least we've been working Very hard to make these nestable so the Individual keys in a frost can Themselves be frosted and so you can Have kind of these arbitrarily Complicated um policies signing policies That are all represented by a single key And to r a signature was a single key Everybody needs to do this interactive Protocol in the background but all of The complexity here is kind of offloaded To the sign Themselves and so the blockchain doesn't Care about the complexity the blockchain Just sees one key one signature and they Can't tell if there's a normal single Key wallet they can't tell whether it's A two2 lightning Channel they can't tell If it's a two3 escrow they can't tell if

It's some like more complicated thing is The idea behind Frost but as you might Imagine the complexities of of this Interactive protocol are even worse for Frost then for musig right and musig you Kind of worry about all this kind of Misbehavior in Frost you could imagine That you need seven of 10 signers but Then you have an e signer shows up and Just starts griefing things and you Still want the protocol to work right You want to make sure that that even if You can't necessarily tell who's Misbehaving somehow you eventually Figure it out and you're able to get Like as long as you have seven honest Parties you can somehow weed out all the Dishonest ones and then produce a valid Signature and that's a lot of the work That we've been doing uh over the last Year three four years um has been to a Protocol that's resilient to all these Different failure Modes

