ZK9: Non-malleability of zkSNARKs - Michal Zajac (Nethermind)

Zero Knowledge
Zero Knowledge
156 بار بازدید - پارسال - This was recorded at the
This was recorded at the ZK9 - Zero Knowledge Summit 9 on April 4 2023 in Lisbon.

https://www.zksummit.com/

Title: Non-malleability of zkSNARKs
Speaker: Michal Zajac (Nethermind)
Description: The basic security notion of zkSNARKs is knowledge-soundness which, informally speaking, guarantees that, in isolation, a prover producing a valid proof must know the corresponding witness. In contrast, there exist real-world deployments and cryptographic applications of zkSNARKs that require a stronger property called simulation extractability (SE, for brevity). Intuitively, this notion considers attackers that can see proofs for some statements and may use this information in order to produce a proof for some other statement without knowing the witness. Interestingly, simulation extractability implies that proofs are non-malleable, a relevant property in practical applications. Most zkSNARKs in the literature are only proven to be knowledge-sound. In some cases, this is due to the fact that their proofs may indeed be malleable. In other cases, the lack of a SE security proof is due to the fact that it is a challenging task that may require more investigation.
In this talk we will show real-life use-cases that require non-malleability of ZKPs and argue that virtually every zkSNARK we use, e.g. Plonk, Marlin, FRI-based protocols, is SE out-of-the-box. We will also identify the key properties that make the zkSNARK simulation-extractable.
If you like what we do:


* Subscribe to our podcast newsletter - https://zeroknowledge.substack.com
* Follow us on Twitter @zeroknowledgefm - Twitter: zeroknowledgefm
* Join us on Telegram - https://zeroknowledge.fm/telegram
* Catch us on Youtube - https://zeroknowledge.fm/
* Head to the ZK Community Forum - https://community.zeroknowledge.fm/
* Support our Gitcoin Grant - https://zeroknowledge.fm/gitcoin-gran...
پارسال در تاریخ 1402/01/25 منتشر شده است.
156 بـار بازدید شده
... بیشتر