Bitcoin Sighash Preimage: Input Values and Fee Theft
BIP143 bakes input values into the sighash preimage, making fee-theft via value misrepresentation cryptographically impossible. Mechanism and worked example.
№ 002BitcoinTaproot's Fix for Bitcoin Witness Malleability
Taproot commits every spending script into the output's public key at creation, closing the script-substitution gap SegWit left open.
№ 003BitcoinBitcoin Taproot Internal Key Commitment Explained
Taproot's internal key commitment binds script paths at construction, making retroactive invention mathematically impossible. The precise mechanism, examined.
№ 004BitcoinBitcoin Script Clean Stack Rule and Taproot Witness Discount
How Bitcoin's clean stack rule shapes Taproot witness discount calculations, with a concrete worked example of script weight and fee math.
№ 005BitcoinBitcoin Weight Units and SegWit Fee Rates Explained
Weight units split transactions into base and witness data, priced at 4:1. The math behind sat/vB, vbytes, and why SegWit inputs cost ~40% less.
№ 006BitcoinBitcoin's Quadratic Hashing Bug: SegWit's Fix Explained
Bitcoin's sighash algorithm scaled as N² with input count, creating a live attack vector. The mechanics, the 2015 megatransaction, and how BIP143 closed it.
№ 007BitcoinBitcoin's Quadratic Sighash Bug, Explained
Before SegWit, a single crafted transaction could stall nodes for minutes. The mechanism, the real attack surface, and what BIP143 actually changed.
№ 008BitcoinHow SegWit Changed Bitcoin Transaction ID Calculation
SegWit didn't just shrink fees. It fixed a subtle flaw in how Bitcoin transaction IDs are built. Here's the exact mechanism, explained clearly.