Actively Secure Half-Gates with Minimum Overhead Under Duplex Networks
Hongrui Cui, Xiao Wang, Kang Yang, Yu Yu
Abstract
Actively secure two-party computation (2PC) is one of the canonical building blocks in modern cryptography. One main goal for designing actively secure 2PC protocols is to reduce the communication overhead, compared to semi-honest 2PC protocols. In this paper, we make significant progress in closing this gap by proposing two new actively secure constant-round 2PC protocols, one with one-way communication of bits per AND gate (for -bit computational security and any statistical security) and one with total communication of bits per AND gate (for -bit statistical security). In particular, our first protocol essentially matches the one-way communication of semi-honest half-gates protocol. Our optimization is achieved by three new techniques:
-
The recent compression technique by Dittmer et al. (Crypto 2022) shows that a relaxed preprocessing is sufficient for authenticated garbling that does not reveal masked wire values to the garbler. We introduce a new form of authenticated bits and propose a new technique of generating authenticated AND triples to reduce the one-way communication of preprocessing from bits to bits per AND gate for -bit statistical security.
-
Unfortunately, the above compressing technique is only compatible with a less compact authenticated garbled circuit of size bits per AND gate. We designed a new authenticated garbling that does not use information theoretic MACs but rather dual execution without leakage to authenticate wire values in the circuit. This allows us to use a more compact half-gates based authenticated garbled circuit of size bits per AND gate, and meanwhile keep compatible with the compression technique. Our new technique can achieve one-way communication of bits per AND gate.
-
In terms of total communication, we notice that the communication overhead of the consistency checking method by Dittmer et al. (Crypto 2022) can be optimized by adding one-round of interaction and utilizing the Free-XOR property. This reduces the online communication from bits down to bits per AND gate. Combined with our first contribution, this yields total amortized communication of bits.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext d66d5fbd-9570-48ab-a2da-764784e994fcCited by top-tier papers3
- Lightweight Authentication of Web Data via Garble-Then-ProveXiang Xie, Kang Yang, Xiao Wang, Yu YuUSENIX Security 2024 · 17 citations
- Ironman: Accelerating Oblivious Transfer Extension for Privacy-Preserving AI with Near-Memory ProcessingChenqi Lin, Kang Yang, Tianshi Xu, Ling Liang et al.MICRO 2025 · 4 citations
- LightShark: Actively Secure Machine-Learning Inference Based on Lightweight Authenticated Distributed Comparison FunctionChenkai Zeng, Qi Feng, Debiao He, Min LuoCCS 2026
Builds on20
- Efficient Two-Round OT Extension and Silent Non-Interactive Secure ComputationElette Boyle, Geoffroy Couteau, Niv Gilboa, Yuval Ishai et al.CCS 2019 · 238 citations
- Global-Scale Secure Multiparty ComputationXiao Wang, Samuel Ranellucci, Jonathan KatzCCS 2017 · 220 citations
- Authenticated Garbling and Efficient Maliciously Secure Two-Party ComputationXiao Wang, Samuel Ranellucci, Jonathan KatzCCS 2017 · 212 citations
- Wolverine: Fast, Scalable, and Communication-Efficient Zero-Knowledge Proofs for Boolean and Arithmetic CircuitsChenkai Weng, Kang Yang, Jonathan Katz, Xiao WangS&P 2021 · 205 citations
- Mystique: Efficient Conversions for Zero-Knowledge Proofs with Applications to Machine LearningChenkai Weng, Kang Yang, Xiang Xie, Jonathan Katz et al.USENIX Security 2021 · 161 citations
Related papers
- Authenticated BitGC for Actively Secure Rate-One 2PCHanlin Liu, Xiao Wang, Kang Yang, Yu YuCRYPTO 2025 · 5 citations
- Row Reduction Techniques for n-Party GarblingKelong Cong, Emmanuela Orsini, Erik Pohle, Oliver ZajoncCRYPTO 2025 · 1 citation
- Authenticated Garbling from Simple CorrelationsSamuel Dittmer, Yuval Ishai, Steve Lu, Rafail OstrovskyCRYPTO 2022 · 26 citations
- Highly Efficient Actively Secure Two-Party Computation with One-Bit Advantage BoundYi Liu, Junzuo Lai, Peng Yang, Qi Wang et al.S&P 2025
- More Efficient MPC from Improved Triple Generation and Authenticated GarblingKang Yang, Xiao Wang, Jiang ZhangCCS 2020 · 5 citations
