Matches in SemOpenAlex for { <https://semopenalex.org/work/W3195852009> ?p ?o ?g. }
- W3195852009 startingPage "595" @default.
- W3195852009 abstract "Non-interactive zero-knowledge proofs of knowledge for general NP statements are a powerful cryptographic primitive, both in theory and in practical applications. Recently, much research has focused on achieving an additional property, succinctness, requiring the proof to be very short and easy to verify. Such proof systems are known as zero-knowledge succinct non-interactive arguments of knowledge (zk-SNARKs), and are desired when communication is expensive, or the verifier is computationally weak. Existing zk-SNARK implementations have severe scalability limitations, in terms of space complexity as a function of the size of the computation being proved (e.g., running time of the NP statement’s decision program). First, the size of the proving key is quasilinear in the upper bound on the computation size. Second, producing a proof requires “writing down” all intermediate values of the entire computation, and then conducting global operations such as FFTs. The bootstrapping technique of Bitansky et al. (STOC ’13), following Valiant (TCC ’08), offers an approach to scalability, by recursively composing proofs: proving statements about acceptance of the proof system’s own verifier (and correctness of the program’s latest step). Alas, recursive composition of known zk-SNARKs has never been realized in practice, due to enormous computational cost. Using new elliptic-curve cryptographic techniques, and methods for exploiting the proof systems’ field structure and nondeterminism, we achieve the first zk-SNARK implementation that practically achieves recursive proof composition. Our zk-SNARK implementation runs random-access machine programs and produces proofs of their correct execution, on today’s hardware, for any program running time. It takes constant time to generate the keys that support all computation sizes. Subsequently, the proving process only incurs a constant multiplicative overhead compared to the original computation’s time, and an essentially-constant additive overhead in memory. Thus, our zk-SNARK implementation is the first to have a well-defined, albeit low, clock rate of “verified instructions per second”." @default.
- W3195852009 created "2021-08-30" @default.
- W3195852009 creator A5028305118 @default.
- W3195852009 creator A5049555551 @default.
- W3195852009 creator A5051930744 @default.
- W3195852009 creator A5058111762 @default.
- W3195852009 date "2014-01-01" @default.
- W3195852009 modified "2023-09-24" @default.
- W3195852009 title "Scalable Zero Knowledge via Cycles of Elliptic Curves." @default.
- W3195852009 cites W100863554 @default.
- W3195852009 cites W104728622 @default.
- W3195852009 cites W112550803 @default.
- W3195852009 cites W117420330 @default.
- W3195852009 cites W1424543055 @default.
- W3195852009 cites W1483726862 @default.
- W3195852009 cites W1486898453 @default.
- W3195852009 cites W1490994218 @default.
- W3195852009 cites W149470655 @default.
- W3195852009 cites W1504441476 @default.
- W3195852009 cites W1518871948 @default.
- W3195852009 cites W1525538795 @default.
- W3195852009 cites W1538440442 @default.
- W3195852009 cites W1540469777 @default.
- W3195852009 cites W1547407391 @default.
- W3195852009 cites W1553871775 @default.
- W3195852009 cites W1572593068 @default.
- W3195852009 cites W1576470039 @default.
- W3195852009 cites W1584915320 @default.
- W3195852009 cites W1589034595 @default.
- W3195852009 cites W1592482282 @default.
- W3195852009 cites W1603256047 @default.
- W3195852009 cites W1606363966 @default.
- W3195852009 cites W1637905077 @default.
- W3195852009 cites W1751074114 @default.
- W3195852009 cites W175430765 @default.
- W3195852009 cites W1801647650 @default.
- W3195852009 cites W1836725053 @default.
- W3195852009 cites W1846967348 @default.
- W3195852009 cites W1890128745 @default.
- W3195852009 cites W1921672120 @default.
- W3195852009 cites W1930567086 @default.
- W3195852009 cites W1966714372 @default.
- W3195852009 cites W1970580817 @default.
- W3195852009 cites W1970808997 @default.
- W3195852009 cites W1972792640 @default.
- W3195852009 cites W1979485530 @default.
- W3195852009 cites W1981326822 @default.
- W3195852009 cites W1981455414 @default.
- W3195852009 cites W1992402139 @default.
- W3195852009 cites W2008272678 @default.
- W3195852009 cites W2009994177 @default.
- W3195852009 cites W2016602956 @default.
- W3195852009 cites W2018746447 @default.
- W3195852009 cites W2019816098 @default.
- W3195852009 cites W2021553056 @default.
- W3195852009 cites W2028358228 @default.
- W3195852009 cites W2028372707 @default.
- W3195852009 cites W2043007983 @default.
- W3195852009 cites W2046569422 @default.
- W3195852009 cites W2049982182 @default.
- W3195852009 cites W2053086236 @default.
- W3195852009 cites W2055083041 @default.
- W3195852009 cites W2060770809 @default.
- W3195852009 cites W2065422049 @default.
- W3195852009 cites W2067047774 @default.
- W3195852009 cites W2067700169 @default.
- W3195852009 cites W2070030672 @default.
- W3195852009 cites W2070678975 @default.
- W3195852009 cites W2073210531 @default.
- W3195852009 cites W2073220364 @default.
- W3195852009 cites W2074221157 @default.
- W3195852009 cites W2074594718 @default.
- W3195852009 cites W2079913403 @default.
- W3195852009 cites W2082222018 @default.
- W3195852009 cites W2083222410 @default.
- W3195852009 cites W2089477764 @default.
- W3195852009 cites W2094556471 @default.
- W3195852009 cites W2097493047 @default.
- W3195852009 cites W2101158185 @default.
- W3195852009 cites W2107561538 @default.
- W3195852009 cites W2114296987 @default.
- W3195852009 cites W2120631585 @default.
- W3195852009 cites W2138736975 @default.
- W3195852009 cites W2140797111 @default.
- W3195852009 cites W2140972824 @default.
- W3195852009 cites W2144238522 @default.
- W3195852009 cites W2158501005 @default.
- W3195852009 cites W2158553589 @default.
- W3195852009 cites W2166670067 @default.
- W3195852009 cites W2169657197 @default.
- W3195852009 cites W2171337840 @default.
- W3195852009 cites W2296489817 @default.
- W3195852009 cites W2398446928 @default.
- W3195852009 cites W2402869180 @default.
- W3195852009 cites W2403062104 @default.
- W3195852009 cites W259957856 @default.
- W3195852009 cites W2613956024 @default.
- W3195852009 cites W2950563120 @default.
- W3195852009 cites W2951337103 @default.