CCS2023

On the Security of KZG Commitment for VSS

Atsuki Momose, Sourav Das, Ling Ren

3 citations

Abstract

The constant-sized polynomial commitment scheme by Kate, Zaverucha, and Goldberg (Asiscrypt 2010), also known as the KZG commitment, is an essential component in designing bandwidth-efficient verifiable secret-sharing (VSS) protocols. We point out, however, that the KZG commitment is missing two important properties that are crucial for VSS protocols.