Re: [Cryptography] A discussion about secret sharing or multi-sig

> What are your thoughts on this? Would it be efficient? Or it would
> be more efficient to deliver n messages separately instead of
> encapsulating? Both methods require the storage of m public keys
> and verifying individual signatures for n times.

There's an idea called 'cross-input signature aggregation' which
uses Schnorr signatures to allow multiple signatures to be combined
into a single signature (in a more efficient way than concatenation
of signatures!).

Pieter Wuille discusses it here:


