zkay: Specifying and Enforcing Data Privacy in Smart Contracts
Samuel Steffen, Benjamin Bichsel, Mario Gersbach, Noa Melchior, Petar Tsankov, Martin T. Vechev
摘要
Privacy concerns of smart contracts are a major roadblock preventing their wider adoption. A promising approach to protect private data is hiding it with cryptographic primitives and then enforcing correctness of state updates by Non-Interactive Zero-Knowledge (NIZK) proofs. Unfortunately, NIZK statements are less expressive than smart contracts, forcing developers to keep some functionality in the contract. This results in scattered logic, split across contract code and NIZK statements, with unclear privacy guarantees. To address these problems, we present the zkay language, which introduces privacy types defining owners of private values. zkay contracts are statically type checked to (i) ensure they are realizable using NIZK proofs and (ii) prevent unintended information leaks. Moreover, the logic of zkay contracts is easy to follow by just ignoring privacy types. To enforce zkay contracts, we automatically transform them into contracts equivalent in terms of privacy and functionality, yet executable on public blockchains. We evaluated our approach on a proof-of-concept implementation generating Solidity contracts and implemented 10 interesting example contracts in zkay. Our results indicate that zkay is practical: On-chain cost for executing the transformed contracts is around 1M gas per transaction ( 0.50US$) and off-chain cost is moderate.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper9
- ZeeStar: Private Smart Contracts by Homomorphic Encryption and Zero-knowledge ProofsSamuel Steffen, Benjamin Bichsel, Roger Baumgartner, Martin T. VechevS&P 2022 · 被引用 64 次
- Qanaat: A Scalable Multi-Enterprise Permissioned Blockchain System with Confidentiality GuaranteesMohammad Javad Amiri, Boon Thau Loo, Divy Agrawal, Amr El AbbadiVLDB 2022 · 被引用 26 次
- Zapper: Smart Contracts with Data and Identity PrivacySamuel Steffen, Benjamin Bichsel, Martin T. VechevCCS 2022 · 被引用 17 次
- Behavioral simulation for smart contractsSidi Mohamed Beillahi, Gabriela F. Ciocarlie, Michael Emmi, Constantin EneaPLDI 2020 · 被引用 15 次
- Understanding Solidity Event Logging Practices in the WildLantian Li, Yejian Liang, Zhihao Liu, Zhongxing YuFSE 2023 · 被引用 13 次
它引用的顶会 Paper9
- Hawk: The Blockchain Model of Cryptography and Privacy-Preserving Smart ContractsAhmed E. Kosba, Andrew Miller, Elaine Shi, Zikai Wen 等S&P 2016 · 被引用 2,201 次
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin 等USENIX Security 2018 · 被引用 1,175 次
- Securify: Practical Security Analysis of Smart ContractsPetar Tsankov, Andrei Marian Dan, Dana Drachsler-Cohen, Arthur Gervais 等CCS 2018 · 被引用 1,108 次
- Arbitrum: Scalable, private smart contractsHarry A. Kalodner, Steven Goldfeder, Xiaoqi Chen, S. Matthew Weinberg 等USENIX Security 2018 · 被引用 353 次
- Bolt: Anonymous Payment Channels for Decentralized CurrenciesMatthew Green, Ian MiersCCS 2017 · 被引用 281 次
相关 Paper
- ZENO: A Type-based Optimization Framework for Zero Knowledge Neural Network InferenceBoyuan Feng, Zheng Wang, Yuke Wang, Shu Yang 等ASPLOS 2024 · 被引用 13 次
- Taypsi: Static Enforcement of Privacy Policies for Policy-Agnostic Oblivious ComputationQianchuan Ye, Benjamin DelawareOOPSLA 2024 · 被引用 1 次
- Jigsaw: Doubly Private Smart ContractsSanjam Garg, Aarushi Goel, Dimitris Kolonelos, Rohit SinhaS&P 2026 · 被引用 4 次
- Ou: Automating the Parallelization of Zero-Knowledge ProtocolsYuyang Sang, Ning Luo, Samuel Judson, Ben Chaimberg 等CCS 2023 · 被引用 2 次
- AuditPay: Anonymous Payments with Controlled OversightElkana Tovey, Yossi Gilad, Aviv ZoharCCS 2026
