Damus
Leathermint · 1w
But I don't think that's the case. Take the exemple in my original note. It is possible albeit very unlikely that even tho you use a coin flip to find your key that you will obtain 00000...0000. In ...
modulo profile picture
I agree with you—entropy measures the process, it’s not the value. Safety is a separate question.

000…001 has the same probability as the number exactly in the middle of the 128-bit range. A solid entropy process costs an attack the same expected guesses.

Safety is about the attacker's time and effort, and I think that's your point —safety varies by value, entropy doesn't.
1💛1
modulo · 1w
So to try to say it differently—safety before the exercise of capturing entropy is equal across all possible outcomes. Safety post-capture, as it relates to a value, has a range based on human structure.