SuperPack: Dishonest Majority MPC with Constant Online Communication
Daniel Escudero, Vipul Goyal, Antigoni Polychroniadou, Yifan Song, Chenkai Weng
Abstract
In this work we present a novel actively secure dishonest majority MPC protocol, SuperPack, whose efficiency improves as the number of honest parties increases. Concretely, let and consider an adversary that corrupts out of parties. SuperPack requires field elements of online communication per multiplication gate across all parties, assuming circuit-dependent preprocessing, and assuming circuit-independent preprocessing. In contrast, most of the previous works such as SPDZ (Damgrd et al, ESORICS 2013) and its derivatives perform the same regardless of whether there is only one honest party or a constant (non-majority) fraction of honest parties. A notable exception is due to Goyal et al (CRYPTO 2022), which achieves field elements assuming circuit-independent preprocessing. Our work improves this result substantially by a factor of at least in the circuit-independent preprocessing model.
Practically, we also compare our work with the best concretely efficient online protocol Turbospeedz (Ben-Efraim *et al*, ACNS 2019), which achieves $2(1-\epsilon)n$ field elements per multiplication gate among all parties. Our online protocol improves over Turbospeedz as $n$ grows, and as $\epsilon$ approaches $1/2$.
For example, if there are $90\%$ corruptions ($\epsilon=0.1$), with $n=50$ our online protocol is $1.5\times$ better than Turbospeedz and with $n=100$ this factor is $3\times$, but for $70\%$ corruptions ($\epsilon=0.3$) with $n=50$ our online protocol is $3.5\times$ better, and for $n=100$ this factor is $7\times$.
Our circuit-dependent preprocessing can be instantiated from OLE/VOLE. The amount of OLE/VOLE correlations required in our work is a factor of $\approx \epsilon n/2$ smaller than these required by Le Mans (Rachuri and Scholl, CRYPTO 2022) leveraged to instantiate the preprocessing of Turbospeedz.
Our dishonest majority protocol relies on packed secret-sharing and leverages ideas from the honest majority TurboPack (Escudero *et al*, CCS 2022) protocol to achieve concrete efficiency for any circuit topology, not only SIMD.
We implement both SuperPack and Turbospeedz and verify with experimental results that our approach indeed leads to more competitive runtimes in distributed environments with a moderately large number of parties.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 6d927931-aae1-4982-a44a-e14078080394Cited by top-tier papers2
- MD-ML: Super Fast Privacy-Preserving Machine Learning for Malicious Security with a Dishonest MajorityBoshi Yuan, Shixuan Yang, Yongxiang Zhang, Ning Ding et al.USENIX Security 2024 · 22 citations
- Scalable Collaborative zk-SNARK and Its Application to Fully Distributed Proof DelegationXuanming Liu, Zhelei Zhou, Yinghao Wang, Yanxin Pang et al.USENIX Security 2025
Related papers
- TurboPack: Honest Majority MPC with Constant Online CommunicationDaniel Escudero, Vipul Goyal, Antigoni Polychroniadou, Yifan SongCCS 2022 · 25 citations
- Sharing Transformation and Dishonest Majority MPC with Packed Secret SharingVipul Goyal, Antigoni Polychroniadou, Yifan SongCRYPTO 2022 · 31 citations
- Weakly Super-Invertible Matrices and Constant Communication Dishonest Majority MPCAlexander Bienstock, Kevin YeoEUROCRYPT 2025 · 1 citation
- Two-Thirds Honest-Majority MPC for Malicious Adversaries at Almost the Cost of Semi-HonestJun Furukawa, Yehuda LindellCCS 2019 · 34 citations
- Asterisk: Super-fast MPC with a FriendBanashri Karmakar, Nishat Koti, Arpita Patra, Sikhar Patranabis et al.S&P 2024 · 17 citations
