It is exhausting to make predictions in regards to the future, however as of at this time, no one has proposed adopting an identical MimbleWimble Extension Block in Bitcoin. Given the skepticism that earlier extension block proposals have been obtained with, I’d be shocked if such a proposal acquired vital traction on Bitcoin.
The best way I perceive the proposal, the MimbleWimble Extension Block (MWEB) is coupled to the on-chain transaction physique through a pegging mechanism. Funds will be moved into the MWEB by paying a particular on-chain handle and withdrawn from the MWEB by effecting a fee from that handle.
Contained in the extension block, transactions are created through the MimbleWimble protocol. MimbleWimble transactions should be crafted interactively involving each the sender and receiver, however making use Pedersen commitments the values of inputs and outputs are hidden to anybody however the events crafting the transaction. Instantly after building, transaction inputs and outputs kind an identical graph construction as on-chain Bitcoin transactions. Nonetheless, the minimal MimbleWimble transactions are particularly designed to permit for transaction cut-through: transactions will be aggregated non-interactively facilitated by some Elliptic Curve magic and on account of Pedersen Commitments being homomorphic, which prunes any intermediate outputs that already acquired spent within the mixture. (E.g. if there are two transactions (A1⇒B1+A2) and (A2⇒C1+A3) they may get aggregated to (A1⇒B1+C1+A3) pruning the creation and spending of output A2.) As MimbleWimble transactions will be aggregated even throughout blocks, the chainstate reduces to a remaining kernel per transaction, the peg-in inputs and the at the moment spendable outputs. On the draw back, MimbleWimble transactions are very restricted of their scripting capabilities.
In outcome, an attacker can be taught extra in regards to the transaction graph by actively monitoring the transaction relay, however a passive monitor catching up later would successfully solely see an enormous coinjoin that’s the mixture impact of all earlier transactions with hidden quantities.
I solely skimmed the MWEB proposal to brush up on particulars. I counsel verifying any info on this publish in case you have greater than a passing curiosity.