New Ethereum talks, every Monday. The week's conference uploads by event, in your inbox.

Loading player…

Shutter Network | Privacy Is Normal - Loring Harkness | ETHDam III - 2025

CryptoCanalTue, Oct 7, 2025, 12:00 AM

Welcome to the 3rd Edition of ETHDam, hosted May 9–11, 2025 in Amsterdam. This year, we brought together the brightest minds in privacy, security, and AI for a unique 48-hour hackathon + conference combo. 🌷 https://www.ethdam.com// 🌷 ------------------ Shutter Network | Privacy Is Normal: Everyday Applications of Decentralized Commit-and-Reveal Encryption - Loring Harkness | ETHDam III - 2025 🎤 About the Speaker: - BA in Ethics, LLM Laws - Background in financial inclusion in emerging markets in SE Asia - Got into crypto in 2021 after military coup in Myanmar - Currently Head of Commercial at brainbot gmbh - Working on Shutter Network and Paddle Battle - Focused on credible neutrality, privacy, and public goods 𝕏 Follow: https://x.com/LoringHarkness https://www.shutter.network/ https://x.com/ShutterNetwork ------------------ About ETHDam & CryptoCanal ETHDam is powered by CryptoCanal, an education and events platform rooted in Amsterdam, expanding into Rotterdam and Zürich. Keep up with us to see updates on future events: https://www.cryptocanal.org/ Follow CryptoCanal on X: https://twitter.com/CryptoCanal Join CryptoCanal TG Community: https://t.me/CryptoCanalCommunity Join CryptoCanal Discord: https://discord.com/invite/XJVjpCqQBz CryptoCanal unites crypto enthusiasts committed to making a positive impact. Unapologetically political, we prioritize education, events, and services while championing cypherpunk values like privacy, sovereignty, and censorship resistance. ------------------ 🎥 Credits: Intro / outro by babyPRO - https://babypro.art/ ETHDam Photography by Paulus – https://concretestate.eu/ MC of ETHDam - James Campbell - he builds decentralized, end-to-end encrypted, privacy tools. Come and say hello on Farcaster https://farcaster.xyz/theref ------------------ Special thanks to our partners who made ETHDam possible: 🌹 Hackathon – Bouquet: Oasis Network https://oasisprotocol.org/ 🌷 Hackathon – Petal: Circles https://aboutcircles.com 💛 Conference – Gold: Zano https://zano.org/ Dash https://www.dash.org/ Bitvavo https://bitvavo.com/en 🩶 Conference – Silver: Igra Labs https://igralabs.com/hero 💛 Conference – Copper: Lido https://lido.fi/ DeTrip https://detrip.travel/ Cake Wallet https://cakewallet.com/ The Grid https://thegrid.id/ Calimero Network https://calimero.network/ 0xbow https://0xbow.io/ Mina https://minaprotocol.com/ JobStash https://jobstash.xyz/ Cyber Capital https://www.cyber.capital/ POAP https://poap.xyz/ Acronym Foundation (Supported our Top 10 Hackers) https://acronymfoundation.org/ 🌱 Sponsor: EF Ecosystem Support Program https://esp.ethereum.foundation ------------------ 0:00 – Surf's Up: Kicking Off with Privacy and Humor 1:20 – What Is Shutter & Threshold Encryption? 1:48 – A Papal History Lesson: The Original Conclave 3:04 – The Origins of Secret Ballots and Governance Reform 5:07 – Threshold Encryption Explained (But Not Too Nerdy) 6:27 – Real Use Case: Sealed Bid Treasury RFPs 10:33 – Claiming Alpha: Shutter Predict and Encrypted Forecasts 13:48 – Surviving the Threat: MEV as Organized Theft 16:17 – Encrypted Transactions in the Public Mempool 17:29 – Building with Shutter: API & Call to Action

Transcript

Welcome to East to Ethan to Ethan to East to East. Okay, guys, before he introduces me, I just have a request. Um, when I say the word excellent, I need you to use your best surfer skater voice and go, "No way." Can you do that? No way.

Oh, yeah. Perfect. That's excellent. No way. Really?

That's the loudest you can be. They barely pick it up on the mic, dude. All right, we're back on time. Can you believe it? I can't.

Uh uh. Next up, we have Privacy is Normal uh with Lauren Harkness. Thank you very much. Thank you. Give it up for me.

Yeah, give it up for me. I'm gonna uh channel my inner Steve Balmer. Developers, developers, developers. Bit connect. Yes.

Okay. Um Ethan actually stole the title of my presentation. Uh privacy is normal. I think I came up with that first. Uh, my name is Lauren Harkness and I'm here with Shutter Network and Shutter is a protocol which does commit and reveal threshold encryption.

Now, I'm not going to nerd out on you and be super technical. Instead, I'm going to take you on an excellent adventure. No way. Yes way. So join me as we traveled through time and space to the year 1268.

The world back then was crazy. There was conflict in the Holy Land. Rome was uh overrun by thieves. Um the pope had just passed away and there was a a conclave to elect a new pope. Because Rome was such a cesspool, the 20 cardinals came here to the picturesque hillside town in Vitterbo, just north of Rome.

And there they set out to elect a new pope. But things did not go well. There were political rivals. There were different factions. No one could agree on a new pope.

Even worse, people were not playing fair and the process was not credibly neutral. Some of the cardinals actually forged ballots, others bribed the officials. There were backroom deals. The whole process ended up taking 2 years and 9 months. And the town's people in Vitterbo became so frustrated with the cardinals that they actually locked them inside the papal uh palace.

That's where we get the name conclave, conclave with key. Okay. They also restricted their rations to mere bread and water. And at one point, they even removed the roof overhead, exposing the cardinals to the elements in order to speed up the decision-making process. Fortunately, Pope Gregory I 10th was actually uh a very good pope and introduced a number of governance reforms and tools to make the process more fair and credibly neutral.

One thing was secret ballots. So the cardinals would write their name down on a piece of paper and also write the name of the person they would like to elect Pope. They would fold the paper in half and they would deposit it into one of these gold and silver urns. Now all of the ballots were collected before the urns were opened. And then there were three officials.

And I know that they were enjoyers of governance because they're called the three scrutiners. Yes, they were crypto bros. Uh the three scrutiners would each do their own independent count and in parallel release the results. That way it was verified not just once but three times. So let's go back to the future.

The year is 2025 and the world is a crazy place. There's conflict in the Holy Land. Rome is still a den of thieves. Sorry, Romans. Um, and the governance process, which is used at the conclave, is still used to this day.

Uh, congratulations to Pope Leo the 14th. Well done, by the way. USA. you. No.

Um, why did I tell you this story about the payable conclave? It's because this is kind of a uh mechanical way of doing commit and reveal threshold encryption. And if I were doing a normal crypto talk, I might tell you in intricate painful detail about how it works. I would tell you that with commit and reveal threshold encryption that all the players encrypt information and then commit to it. Then they would wait until a specified time period or event has passed and then a distributed group of nodes would collaborate to generate a decryption key and then anyone could take that key, decrypt the information and publish the results.

But I'm not going to do that. If I was doing a normal crypto presentation, I might talk about the game theory behind commit and reveal threshold encryption and I would tell you that it promotes credible neutrality by eliminating information asymmetries in simultaneous move games. But I'm not going to do that. Or I might tell you about some obscure benefit which the system yields like preventing frontr running realtime censorship and manipulation. Or I might tell you that it prevents privileged actors and trusted centralized third parties.

Am I going to do that? No. Instead, I know that you have problems and so I'm going to help you solve them. I'm going to talk about everyday use cases of commit and reveal threshold encryption. Things which are important to you.

Things like managing a treasury, winning friends, and influencing people. And most importantly, surviving. So, let's go on another excellent adventure. Yes way. Okay, let's start off with managing a treasury.

So this could be a corporate treasury or it could be a DAO treasury, right? Dow governance is tough. Okay. So let's imagine that you just did an ICO for tens of millions of dollars and you are seeing green. You have enough money to build your protocol, go to market, get no, you're never going to get users.

Um but you have a lot of runway. So, one of the worst thing that happens when you have a lot of money is people start coming out of the woodwork asking you for money. You have centralized exchanges who are willing to list your token for an arm and a leg. You have market makers who are willing to provide liquidity and structure the markets. And you have third-party developers who are happy to take some of the development work off your shoulders.

and you go very quickly from seeing green to seeing red. Now this is a problem which many of us have faced. So how do we solve it? Well, one way is with sealed bid RFPs or requests for proposals and this is not something that crypto invented. This has been used for decades by large corporations and government departments.

And in fact, seven years ago, the OECD published a working paper about public procurement, and they compared sealed bid RFPs to open bid RFPs. And they found that sealed bid RFPs are actually more fair and more competitive and yield savings to the company or government that organizes them. 17% on average, in fact. And this can add up to tens of thousands, hundreds of thousands, or millions of dollars of savings for a company or a DAO. So, how do we do this?

Well, launching soon, we're going to have the Shutter Sealed Bid RFP platform where your DAO can create a competitive RFP. All you need to do is hop on our platform, add the title, a description, but most importantly, you need to add the submission deadline, and then the reveal deadline. After you publish it on our platform, you can publish it on Twitter, on forums, wherever you like, and the vendors will go to work. The vendors will submit their bids, but they're not going to submit them by sending you an email or by posting on your forum. They're going to go onto this platform and they're going to put in their name, the service that they're providing, and how much uh it's going to cost.

And then what they're going to do is encrypt it. At the end of the bidding process, when the submission deadline has passed, then all of the vendors bids are decrypted and revealed at the same time. And this has two really important benefits. One is that vendors cannot see one another's bids. So they can't play games or frontr run each other or use information asymmetry to their advantage.

And also the DAO, the organization doesn't see the vendor's bids before everyone else. So there's no way for them to play favorites and to leak vendor information to their preferred vendor. Okay, let's talk about winning friends and influencing people. I know all of you are on crypto Twitter and you should move to Farcaster, but one of our favorite games that we like to play on social media is basically showing that we have alpha, that we knew something before everyone else. And a really cool way of doing this is with dropping hashes.

So let's say I'm a security researcher and I find a vulnerability at Google. What I can do is I can write up a paper with all of my findings and I can generate a hash and then I can publish my hash on Twitter or Farcaster, a place where it's publicly visible and it cannot be changed like this. And then what I do is I release my findings privately to Google and let them have the opportunity to fix the vulnerability and publish their solution. But now I've got a problem because nobody knows that I knew that information before Google. So what I can do is I can then publish the paper and tell people how to compute the hash.

And if the hashes match, then everyone knows that I had that information before Google published it. In other words, I had the alpha. Another thing we like to do on crypto Twitter is uh we like to pretend that we're clairvoyant that we can see into the future. And so you get really annoying posts uh like this one uh or predictions like this one from Arthur Hayes who said that Bitcoin would reach $1 million by 2028. And this is super frustrating because talk is cheap and we want people not just to have predictions but to uh plant the flag uh and make their predictions serious.

So we created shutddter predict uh which does encrypted predictions and here you can have your prediction. My prediction is that ETH will hit 20,000 by the end of 2025 and it should be revealed on January 1st, 2026. Right? So what I do is I state my prediction and the reveal time. Then I encrypt it to generate cipher text.

I then commit to it and I post it on Twitter. Now, one of the really cool things about Shutter Predict is that on January 1st, 2026 at noon, Shutter Predict will actually quote tweet this tweet with the decrypted prediction that I have done now. So basically this is a super quick and easy way for me to make a prediction which I cannot with uh change which I cannot block in the future uh which will be revealed automatically and then published on Twitter. So if you have alpha, use shutter predict. Last survive.

Crypto is all about surviving. And I hate to tell you, but every single person in this room is being stalked by an international organization of criminals. They have 1 million agents operating in 66 countries worldwide. and they have stolen more than $1.5 billion dollars in the past four years.

Am I talking about Lazarus and North Korea? No, I'm talking about Ethereum. I'm talking about our beloved uh world computer, our beloved infinite garden. And I see some of you, you're bristling. You've got your backup.

You're ready to come up on stage and fight me. Well, I have bad news for you. All of us are participants in this system. All of us co-create Ethereum together. So, it's not just our convoluted transaction supply chain.

It's not just malicious mebots like Jared at subway.eth. It's actually you and me, everyone who holds ETH, everyone who runs a node, everyone who develops on Ethereum. If you are not fighting tooth and nail to eliminate malicious ME, you are condoning and participating in organized theft at a massive scale. And I encourage you at every opportunity, call out malicious me and the people who enable it.

Um, and let's rid Ethereum of malicious me once and for all. And there are tools where you can learn about malicious MEV. Uh shout out to Igenfi um that publishes detailed explanations of uh common exploits of ME scanner that publishes weekly updates on the amount of MEV uh stolen each week. But as I mentioned, $1.5 billion dollars have been stolen from normal crypto users, people like you and me, in the past four years by malicious MEV bots.

So if we want to say that Ethereum is fair and credibly neutral, we need to do a better job of upholding our own values, of crypto's core values, of Ethereum's core values. And one way we can do that is with encrypted transactions in the public mem pool. And if you're familiar with Ethereum's transaction supply chain, it's actually a pretty simple process. The user submits a transaction and using an encrypting RPC and the shutter keeper network, we encrypt the transaction and add it to the public memool. Now, MEV bots can see that there is a transaction, but they can't see the contents of the transaction.

And as a result, there's no way for MEV bots to frontr run or sandwich attack that transaction simply because they don't know the contents. They're blind. Then the builder confirms the transaction in the order in the block. at which point the validator and the keepers uh collaborate to decrypt the contents of the transaction and it gets added to the chain as normal. This is a very simple way to prevent malicious MEV while still allowing benign ME and also not introducing addi additional centralization.

So, this has been a brief introduction to commit and reveal threshold encryption and everyday use cases for it. If you're interested in learning more, you can head over to shutddter.network. And if you're a developer who would like to use commit and reveal threshold encryption in any off-chain application or any onchain DAP, you can actually utilize the new shutter API and get started in just a couple of hours. Thank you very much.

Unfortunately, we don't have time for questions, but will you be available outside? Amazing. Thank you so much. Thank you.

Automatic transcript — names and jargon may be misspelled.