Zswap: zk-SNARK Based Non-Interactive Multi-Asset Swaps

نویسندگان

چکیده

Privacy-oriented cryptocurrencies, like Zcash or Monero, provide fair transaction anonymity and confidentiality, but lack important features compared to fully public systems, Ethereum. Specifically, supporting assets of multiple types providing a mechanism atomically exchange them, which is critical for e.g. decentralized finance (DeFi), challenging in the private setting. By combining insights security properties from SwapCT (PETS 21, an atomic swap system Monero), we present simple zk-SNARKs based scheme, called Zswap, carefully malleable allow merging transactions, while preserving anonymity. Our protocol enables exchanges by making use sparse homomorphic commitments with aggregated open randomness, together friendly simulation-extractable non-interactive zero-knowledge (NIZK) proofs. This results provably secure privacypreserving protocol, efficient swaps, overall performance close that existing deployed cryptocurrencies. It similar Sapling benefits code-bases implementation expertise.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A multi-party protocol for constructing the public parameters of the Pinocchio zk-SNARK

Recent efficient constructions of zero-knowledge Succinct Non-interactive Arguments of Knowledge (zk-SNARKs), require a setup phase in which a common-reference string (CRS) with a certain structure is generated. This CRS is sometimes referred to as the public parameters of the system, and is used for constructing and verifying proofs. A drawback of these constructions is that whomever runs the ...

متن کامل

Scalable Multi-party Computation for zk-SNARK Parameters in the Random Beacon Model

Zero-knowledge succinct non-interactive arguments of knowledge (zk-SNARKs) have emerged as a valuable tool for verifiable computation and privacy preserving protocols. Currently practical schemes require a common reference string (CRS) to be constructed in a one-time setup for each statement. Ben-Sasson, Chiesa, Green, Tromer and Virza [5] devised a multi-party protocol to securely compute such...

متن کامل

Multi-Agent Based Ethical Asset Management

The increasing number of ethical investment funds shows how the need of ethics in asset management is growing up. In the same time, in some markets, autonomous agents are managing a larger number of financial transactions than human do. If many philosophers and economists discuss the fairness of different approaches for responsible investment, there is no strong proposition today about the impl...

متن کامل

Bayesian Interactive Decision Support for Multi-Attribute Problems with Even Swaps

Even swaps is a method for solving deterministic multi-attribute decision problems where the decision maker iteratively simplifies the problem until the optimal alternative is revealed (Hammond et al. 1998, 1999). We present a new practical decision support system that takes a Bayesian approach to guiding the even swaps process, where the system makes queries based on its beliefs about the deci...

متن کامل

Multi-User Non-Interactive Verifiable Computation

Gennaro et al. (Crypto 2010) introduced the notion of verifiable computation, which allows a computationally weak client to outsource the computation of a function F on dynamically chosen inputs x1, . . . , x` to a more powerful but untrusted server. Following a pre-processing phase (that is only carried out once), the client can send some representation of its input xi to the server; the serve...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Proceedings on Privacy Enhancing Technologies

سال: 2022

ISSN: ['2299-0984']

DOI: https://doi.org/10.56553/popets-2022-0120