{"id":3760,"date":"2023-09-09T17:00:00","date_gmt":"2023-09-09T17:00:00","guid":{"rendered":"http:\/\/ci02c8f5ccf0002582"},"modified":"2023-09-09T17:00:00","modified_gmt":"2023-09-09T17:00:00","slug":"chainalysis-denounces-bitcoin-core-contributor-as-unqualified","status":"publish","type":"post","link":"https:\/\/bitcoinmagazine.com\/technical\/chainalysis-denounces-bitcoin-core-contributor-as-unqualified","title":{"rendered":"Chainalysis Denounces Bitcoin Core Contributor As \u201cUnqualified\u201d"},"content":{"rendered":"<div id=\"bsf_rt_marker\"><\/div><p>If you haven\u2019t had a good laugh at Chainalysis\u2019 attempts to defend the use of its blockchain forensics software for law enforcement purposes in light of recent court proceedings, now may be the time.<\/p>\n<p>After having to <a href=\"https:\/\/bitcoinmagazine.com\/technical\/chainalysis-investigations-lead-is-unaware-of-scientific-evidence\">admit<\/a> to the lack of scientific evidence for the accuracy of its software and the publication of an expert report <a href=\"https:\/\/bitcoinmagazine.com\/technical\/chainalysis-the-theranos-of-blockchain-forensics\">describing<\/a> the use of Chainalysis\u2019 heuristics as \u201creckless\u201d, Chainalysis finds itself trying to evade an audit of its software\u2019s source code.<\/p>\n<p>Chainalysis\u2019 source code is requested by the defense in the case US vs. Sterlingov, an early Bitcoin adopter currently awaiting trial for the alleged operation of the custodial bitcoin mixer Bitcoin Fog, to reproduce the software\u2019s findings in light of the lack of corroborating evidence.<\/p>\n<p>Sterlingov\u2019s defense defines access to Chainalysis\u2019 source code as \u201ccritical to Mr. Sterlingov\u2019s due process rights given the fact neither the Government nor Chainalysis is able to produce any evidence involving Chainalysis Reactor\u2019s error rates, rate of false positives, or rate of false negatives. Nor can the Government or Chainalysis produce a single scientific peer-reviewed paper attesting to the accuracy of their software. Nor has any independent audit or model validation been performed on Chainalysis Reactor.\u201d<\/p>\n<p>\u201cMoreover\u201d, the notice continues, \u201cthe Defense\u2019s expert witness Ciphertrace\u2019s Jonelle Still\u2019s expert report documents numerous issues with the Chainalysis Reactor software and concludes that it should not be used in a federal criminal trial.\u201d<\/p>\n<p>Chainalysis now <a href=\"https:\/\/storage.courtlistener.com\/recap\/gov.uscourts.dcd.232431\/gov.uscourts.dcd.232431.185.0_1.pdf\" target=\"_blank\" rel=\"noopener\">argues<\/a> that Bitcoin Core contributor Bryan Bishop, the expert witness produced by Sterlingov\u2019s defense to audit Chainalysis\u2019 source code, is \u201cunqualified&#8221; for the job due to his lack of a computer science degree, stating that \u201che does not appear to be a reliable software engineer, let alone a reliable evaluator of software.\u201d On the contrary, the Bitcoin developer community has found Bishop qualified and reliable enough to serve as one of two moderators of the bitcoin-dev mailinglist since 2015.<\/p>\n<p>The bitcoin-dev mailing list is an email distribution list to discuss latest technological advancements in bitcoin protocol development and adjacent fields. Its participants include cryptographer and HashCash inventor Adam Back, cryptographer and ex-Bitcoin Core maintainer Pieter Wuille, as well as a range of well respected and prolific contributors in Bitcoin development.<\/p>\n<p>The bitcoin-dev mailinglist is moderated based on a number of factors, all of which Bishop evaluates before approving posts to the list. These factors include speculation, non-technical concerns, and rehashing settled topics without new data. <\/p>\n<p>Bishop\u2019s own contributions to the list include the <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/bitcoin-dev\/2017-April\/014025.html\" target=\"_blank\" rel=\"noopener\">evaluation of signature schemes<\/a>, the <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/bitcoin-dev\/2016-August\/013042.html\" target=\"_blank\" rel=\"noopener\">evaluation of multisig key signing operations<\/a> performed via hardware wallets, and the evaluation of security concerns regarding <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/bitcoin-dev\/2015-May\/007879.html\" target=\"_blank\" rel=\"noopener\">block size increases<\/a> and <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/bitcoin-dev\/2015-November\/011688.html\" target=\"_blank\" rel=\"noopener\">merge mining<\/a>.<\/p>\n<p>As a respected expert in the field, Bishop has <a href=\"https:\/\/lists.linuxfoundation.org\/pipermail\/bitcoin-dev\/2016-August\/012921.html\" target=\"_blank\" rel=\"noopener\">participated<\/a> in lengthy discussions on elliptic curve cryptography, ECDSA signature schemes, Schnorr signature schemes, BLS signature schemes, signature aggregation schemes, post-quantum cryptography, quantum mining, and scrypt password hashing. <\/p>\n<p>As a Bitcoin Core contributor, Bishop has contributed to the ongoing development of <a href=\"https:\/\/river.com\/learn\/what-is-op-vault-in-bitcoin\/\" target=\"_blank\" rel=\"noopener\">vaults<\/a>, which are mechanisms to improve the security of custody. This particular contribution has been named in Chainalysis\u2019 response to installing Bishop as an expert witness, citing a notice on Bishop\u2019s GitHub repository, which reads: \u201cWARNING: This is not production-ready code. Do not use this on bitcoin mainnet or any other mainnet.\u201d<\/p>\n<p>While Chainalysis appears to claim that Bishop\u2019s notice proves his inferiority as a software developer, the installment of security notices for experimental code is common practice among engineers. Chainalysis\u2019 interpretation of the notice can only lead us to believe that the prosecution is actively attempting to mislead the court \u2013 or that they flat out don\u2019t know how engineering works.<\/p>\n<p>Highlighting Bishop\u2019s role as CTO and co-founder of Wyoming based Custodia Bank as a critical fact, Chainalysis attempts to taint Bishop\u2019s reputation of 20 years in software engineering by citing Custodia\u2019s denied application as a member of the Federal Reserve System. This leads Chainalysis to argue that \u201cMr. Bishop has a massive incentive to abuse his access to Chainalysis in order to attempt to figure out why he could not in his previous efforts develop software to effectively mitigate money laundering and terrorism financing risks\u2014what stopped his prior bank from getting a license to operate by the Federal Reserve.\u201d<\/p>\n<p>What Chainalysis fails to highlight is that the <a href=\"https:\/\/www.federalreserve.gov\/newsevents\/pressreleases\/files\/orders20230324a1.pdf\" target=\"_blank\" rel=\"noopener\">very letter of denial<\/a> cited names the inefficiency of Chainalysis services to map funds to real-world identities as one of the reasons to deny Custodia\u2019s application in light of AML concerns:<\/p>\n<p>\u201cWhile there are private companies that investigate transactions on crypto-asset blockchains solely based on public information, such as from the blockchain or social media, without customer identification information, the services are highly imperfect. Law enforcement and specialist blockchain analytics firms, like Chainalysis, can learn information about a wallet and its holder, including whether the wallet may be associated with illicit activity or other wallets identified as suspicious or sanctioned; however, it can be difficult, relying on blockchain analysis alone, to establish the real-world identity of the person with ownership or control of a wallet with available information at the time of the transaction. Even following an investigation, such information can be difficult to establish, particularly if blockchain obfuscation techniques are used.\u201d<\/p>\n<p>The attempted denouncing of Bishop as an expert witness fit to audit Chainalysis\u2019 code based on his prior experience is particularly rich in the face of Chainalysis\u2019 own experts being unable to tell bytes from bits; a fundamental of computer science taught as first lessons in undergrad engineering degrees.<\/p>\n<p>In short, Chainalysis is worried that an audit of Chainalysis\u2019 source code by the defendant, defense council, or the suggested expert would cause \u201cirreparable harm to Chainalysis\u2019 business.\u201d We can only wonder why. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Chainalysis attempts to render Bitcoin Core contributor Bryan Bishop as \u201cunqualified\u201d to audit Chainalysis\u2019 source code as the surveillance firm\u2019s own experts stumble cluelessly around the blockchain. <\/p>\n","protected":false},"author":2528,"featured_media":3761,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[35],"tags":[857,856,213,59],"class_list":{"0":"post-3760","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technical","8":"tag-chainalysis","9":"tag-chainanalysis","10":"tag-legal","11":"tag-opinion"},"author_data":{"id":2528,"name":"L0La L33Tz","nicename":"l0la-l33tz","avatar_url":"https:\/\/bitcoinmagazine.com\/wp-content\/uploads\/2025\/03\/cropped-1p9qrztI_400x400-1-96x96.jpg"},"featured_image_url":"https:\/\/bitcoinmagazine.com\/wp-content\/uploads\/2024\/11\/2019-had-most-cryptocurrency-exchange-attacks-ever.jpg","_links":{"self":[{"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/posts\/3760","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/users\/2528"}],"replies":[{"embeddable":true,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/comments?post=3760"}],"version-history":[{"count":0,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/posts\/3760\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/media\/3761"}],"wp:attachment":[{"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/media?parent=3760"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/categories?post=3760"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bitcoinmagazine.com\/wp-json\/wp\/v2\/tags?post=3760"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}