Designated-Verifier SNARGs with One Group Element
Gal Arnon, Jesko Dujmovic, Yuval Ishai
摘要
We revisit the question of minimizing the proof length of designated-verifier succinct non-interactive arguments (dv-SNARGs) in the generic group model. Barta et al. (Crypto 2020) constructed such dvSNARGs with inverse-polynomial soundness in which the proof consists of only two group elements. For negligible soundness, all previous constructions required a super-constant number of group elements. We show that one group element suffices for negligible soundness. Concretely, we obtain dv-SNARGs (in fact, dv-SNARKs) with 2−τ soundness where proofs consist of one element of a generic group G and O(τ) additional bits. In particular, the proof length in group elements is constant even with 1/|G| soundness error. In more concrete terms, compared to the best known SNARGs using bilinear groups, we get dvSNARGs with roughly 2x shorter proofs (with 2−80 soundness at a 128-bit security level). We are not aware of any practically feasible proof systems that achieve similar succinctness, even fully interactive or heuristic ones. Our technical approach is based on a novel combination of techniques for trapdoor hash functions and group-based homomorphic secret sharing with linear multi-prover interactive proofs.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
引用它的顶会 Paper1
问问它们各自怎么用它相关 Paper
- On Succinct Arguments and Witness Encryption from GroupsOhad Barta, Yuval Ishai, Rafail Ostrovsky, David J. WuCRYPTO 2020 · 被引用 18 次
- Pairing-Based SNARGs with Two Group ElementsGal Arnon, Jesko Dujmovic, Eylon YogevCRYPTO 2026
- Boosting Batch Arguments and RAM DelegationYael Kalai, Alex Lombardi, Vinod Vaikuntanathan, Daniel WichsSTOC 2023 · 被引用 42 次
- SNARGs for P from Sub-exponential DDH and QRJames Hulett, Ruta Jawale, Dakshita Khurana, Akshayaram SrinivasanEUROCRYPT 2022 · 被引用 41 次
- Adaptively Sound Zero-Knowledge SNARKs for UPSurya Mathialagan, Spencer Peters, Vinod VaikuntanathanCRYPTO 2024 · 被引用 17 次
