Cointime

Download App
iOS & Android

Privacy Coins Primer: Overview, Pros and Cons, Legal Status and How They Work

Validated Media

Introduction

Contrary to the popular narrative, cryptocurrencies are not completely anonymous in nature. Cryptocurrencies like Bitcoin are actually pseudo-anonymous. This means that though the transacting parties can transact between themselves without revealing their identities, their transactions are still visible on the public blockchain. Third-party firms such as blockchain analytics companies can easily trace these transactions on the public blockchain, which can, in turn, lead them to the attached crypto wallet addresses. These wallet addresses can be linked to the real-world identities of the wallet holders.

Therefore, transacting parties risk having their data revealed and their account transaction logs traced back to them. Privacy coins seek to solve this problem. Essentially, privacy coins have two key characteristics. Firstly, privacy coins provide anonymity by hiding the identity of the transacting party. Secondly, privacy coins also focus on untraceability, preventing third parties or computer systems from following a transaction trail.

Privacy coins have garnered a lot of attention from regulators and law enforcement agencies because of their ability to facilitate money laundering and terrorist financing activities. The FATF’s Ethnically or Racially Motivated Terrorism Financing report pointed out that cryptocurrencies such as privacy coins are increasingly being used by extreme right-wing terrorists who have been gradually shut out of the traditional payment systems.

What are privacy coins?

Privacy coins are a class of cryptocurrencies that aim to facilitate complete anonymization and privacy in blockchain transactions by obscuring the origin and destination of funds. A few of the techniques employed by privacy coins to obfuscate user information include hiding the user’s real wallet balance and addresses, and mixing multiple transactions with each other to evade blockchain chain analysis. Privacy coins run on decentralized ledgers maintained by a network of anonymous validators.

Pros and cons of privacy coins

Pros

  • Anonymity:  Privacy coins offer anonymity to the users by concealing the identity, transaction history, and wallet balance of the users. Lack of anonymity makes crypto users susceptible to data breaches and leaks, for example, some exchanges may without the consent of the user collect their data and develop transaction trackers. Further, governments of various countries also collect information and statistics related to the ownership and transfer of crypto assets. 
  • Additionally, a lack of anonymity may also make crypto owners more susceptible to bad actors such as hackers. For instance, large bitcoin transactions may be publicized on Twitter accounts like @Whale_Alert,  bad actors may misuse this information to trace associated wallet addresses and discover more information about the holder.
  • They make it harder for third party organizations like blockchain analytics firms to track users funds.

Cons

  • Transactions involving privacy coins have a higher transaction processing fee.
  • They can be used for illegal activities such as money laundering because they obfuscate the source of funds and makes it easier for the bad actors to stay anonymous.
  • More and more ransomware actors are demanding payments in privacy coins For example, the criminal hacking group DarkSide, in the Colonial Pipeline attack demanded payment in both Bitcoin and Monero. Another hacking group REvil, in its supply-chain attack against Kaseya, only accepted Monero as payment.

How do privacy coins work?

To effectively preserve anonymity and untraceability, privacy coins employ a variety of different strategies. The most popular of which include stealth addresses, ring signatures, CoinJoin and zk-SNARKs.

Stealth addresses: Privacy coins that use stealth addresses require users to generate new addresses for each transaction. Basically, the senders will use a one-time address for every transaction, even if multiple transactions are done with the same recipient. Doing so ensures that the third-party entities aren’t able to link any future transactions to the receiver’s wallet address used in the previous transaction. For instance, Monero employs dual-key stealth address protocol (DKSAP), obligates the sender to create random one-time addresses for every transaction on behalf of the recipient. The recipient, on the other hand, can publish just one address, yet have all of his/her incoming payments go to a unique address on the blockchain, which uses a cryptographic technique to ensure that this unique address cannot be linked back to either the recipient's published address or any other transactions' addresses. 

CoinJoin:  The CoinJoin mixer combines transactions from multiple users to create a single transaction. CoinJoin then divides that single transaction into multiple small transactions and sends relevant amounts to each recipient. Therefore, each recipient receives coins from a combination of senders instead of one.

Zero-Knowledge Succinct Non - Interactive Argument of Knowledge (zk-SNARKs): zk-SNARKS is a form of cryptographic tool, through which the crypto holders can prove a transaction’s validity without divulging critical identifying information such as names and wallet addresses of the transacting parties. Z-cash — one of the most popular privacy coins — is powered by zk-SNARKs.

Ring signatures: In a blockchain transaction, the sender has to verify every transaction using a digital signature. Ring signatures are cryptographic tools that combine the digital signatures of one user in the ring signature scheme with that of others in the scheme. The higher the number of additional parties in the scheme, the harder it is for someone to connect it to each individual sender.

Are privacy coins illegal?

Jurisdictions such as South Korea, Japan, and Australia have made the use and possession of privacy coins illegal. Further, top privacy coins like Dash (DASH), Monero (XMR), and Zcash (ZEC) have been delisted by multiple leading trading platforms including Bittrex, CoinCheck, Coinbase and ShapeShift. 

The crypto exchanges that are registered in jurisdictions with strict KYC/AML regulations are obligated to collect identifying information of their users, which is not always possible with privacy coins. To avoid being slapped with fines, fees, and outright bans by regulators, exchanges simply choose not to list the privacy coin. Another reason behind delisting is ensuring compliance with the FATF Travel Rule requirement which requires crypto businesses to obtain, hold, and exchange the required originator and beneficiary when transmitting funds

Comments

All Comments

Recommended for you

  • Cyvers Alerts: Cryptocurrency scams steal $3.6 billion in 2024

    According to Cyvers Alerts system monitoring, the "Ponzi scheme" scam in the cryptocurrency field stole $3.6 billion in 2024, with most of it happening on Ethereum. These scams are cunning, using trust to lure victims into false cryptocurrency investments and then making their funds disappear. With a 40% increase in online threats this year, it is clear that the cryptocurrency field needs stronger defenses and more acute awareness to fight back.

  • Decentralized AI platform Nodepay completes $7 million in second round of financing

    decentralized AI platform Nodepay has completed its second round of financing, raising $7 million. Investors include IDG Capital, Mythos, Elevate Ventures, IBC, Optic Capital, Funders.VC, Etherscan founder Matthew Tan, and CoinHako co-founder and CEO Yusho Liu.

  • ZachXBT: Scam tokens issued after Yat Siu’s X account was stolen, originating from the same address as Kick & Vanar incident

    according to ZachXBT, Yat Siu, co-founder of Animoca, may have been deceived by the same phishing email that targeted more than 10 X accounts of hackers, because the fraudulent tokens were deployed in the same address as Kick & Vanar CEO ATO.

  • Chillguy creator X's account was briefly stolen and has been restored to control, calling on the community to be vigilant against abnormal content

    Phillip Bankss, the creator of Chillguy's image, stated that his X account was stolen. Although he has regained control, hackers may have set up some scheduled tweets, or the account may not be completely safe yet. He called on the community to notify him promptly if they discover any abnormal content for him to handle.

  • German parliament passes Financial Market Digitalization Act

    According to a report by Ledger Insights, the German parliament (Bundestag) has passed the "Financial Market Digitalization Act" (Finanzmarktdigitalisierungsgesetz or FinmadiG) this week. The parliament responded to industry demands to ensure legislation is in place before MiCAR comes into full effect on December 30th.

  • Odos DAO: Phishing email attacks related to the "ODOS Loyalty Program" have appeared, reminding users to be vigilant

    Odos DAO posted on X platform, stating that they have noticed phishing email attacks related to the "ODOS Loyalty Program" in the community and reminded users to be cautious. Odos DAO and ODOS will not send emails to users. All official communication is only conducted through verified Twitter accounts. Do not click on any suspicious links.

  • Report: 165 security incidents have occurred in the Web3 field so far in 2024, with losses exceeding US$2.3 billion

    According to a report summarizing key security trends in 2024 by Cyvers, Web3 network threats will increase sharply in 2024, resulting in losses of over 2.3 billion US dollars and a total of 165 security incidents. Although the loss amount is 40% higher than in 2023 (1.69 billion US dollars), it is still 1.42 billion US dollars lower than in 2022 (3.78 billion US dollars). It is worth noting that 1.3 billion US dollars of stolen funds were recovered this year.

  • Phishing ad links impersonating Virtuals Protocol appear in Google search results

    according to Scam Sniffer, there are currently phishing ads impersonating Virtuals Protocol appearing in Google search results. If users click on these links to connect their wallets and sign transactions, these fraudulent ads may steal users' assets. Users should be careful to identify and prevent theft.

  • ZachXBT: Suspected insiders made $3.8 million in profits on RTR

    On August 10th, Chain Detective ZachXBT posted on social media that 4 addresses made a profit of $3.8 million in the RTR sell-off, with the 9G1ELG and GHoW2 addresses belonging to the same person and receiving 500 SOL in new funds within minutes after the TGE. Previously, it was reported that Restore The Republic (RTR) had its TGE on the evening of August 8th, with rumors circulating in the community that it was related to a new project by the Trump family. The RTR token reached a high of $0.156 on August 9th at midnight. Afterwards, Eric Trump, the current Executive Vice President of the Trump Organization and son of Donald Trump, warned on social media to "be careful of false tokens" and that the only official Trump project has yet to be announced and will be announced on Twitter first. After the statement was released, RTR quickly dropped by about 95%, with a trading volume of $164 million within just 15 hours of its creation.

  • The U.S. Internal Revenue Service has released a new draft of the crypto tax form, which no longer requires filling in wallet addresses and transaction IDs

    The US Internal Revenue Service (IRS) released an updated draft version of tax form 1099-DA for cryptocurrency brokers and investors to report certain transaction income. The public has 30 days to provide feedback to the IRS on this version. Starting in 2026, cryptocurrency investors who use brokers (currently mainly Coinbase and Kraken, among others) will receive 1099-DAs from these brokers to report certain cryptocurrency sales and trades as taxable events to the IRS. IRS officials say this form will "bring more convenience and clarity" to users who pay US cryptocurrency taxes.