Impossibility of SNARGs∗
نویسنده
چکیده
In the last few years, applications such practical verifiable computation, anonymous cryptocurrencies (e.g. Zcash), signature of knowledge and etc have made succinct non-interactive arguments (SNARGs) as an active research area for ground-breaking researchers. A non-interactive computationally sound argument (proof system) for NP is succinct if the its proof size is polylogarithmic the instance and witness sizes. The succinctness of an arguments makes it possible to verify the proof efficiently by low-power verifiers and clients. Recently, among wide range of prominent results on SNARGs, there was a basic research question regard to construction of SNARGs based on falsifiable cryptographic assumptions (e.g. DDH, RSA, LWE, OWFs, · · ·). Roughly speaking, the question was that ”can we prove any SNARG construction secure under assumptions such as OWFs, DDH, RSA, LWE, and etc which are falsifiable assumptions”. This question is answered by Gentry and Wichsy in 2011 [GW11], by showing that there is no black-box reduction security proof for any SNARG under falsifiable assumptions. Note that, a cryptographic assumption is called falsifiable if we can model it as a game between an adversary and an efficient challenger, which at the end of the game, the challenger can determine whether the adversary won the game. In this report, we aim to give a short overview on their result and highlight the key points of their paper.
منابع مشابه
Erratum: Succinct Non-interactive Arguments via Linear Interactive Proofs
Succinct non-interactive arguments (SNARGs) enable verifying NP statements with lower complexity than required for classical NP verification. Traditionally, the focus has been on minimizing the length of such arguments; nowadays researches have focused also on minimizing verification time, by drawing motivation from the problem of delegating computation. A common relaxation is a preprocessing S...
متن کاملOn the Size of Pairing-Based Non-interactive Arguments
Non-interactive arguments enable a prover to convince a verifier that a statement is true. Recently there has been a lot of progress both in theory and practice on constructing highly efficient non-interactive arguments with small size and low verification complexity, so-called succinct non-interactive arguments (SNARGs) and succinct non-interactive arguments of knowledge (SNARKs). Many constru...
متن کاملLattice-Based SNARGs and Their Application to More Efficient Obfuscation
Succinct non-interactive arguments (SNARGs) enable verifying NP computations with substantially lower complexity than that required for classical NP verification. In this work, we first construct a lattice-based SNARG candidate with quasi-optimal succinctness (where the argument size is quasilinear in the security parameter). Further extension of our methods yields the first SNARG (from any ass...
متن کاملA Uniform Min-Max Theorem with Applications in Cryptography
We present a new, more constructive proof of von Neumann’s Min-Max Theorem for two-player zero-sum game — specifically, an algorithm that builds a near-optimal mixed strategy for the second player from several best-responses of the second player to mixed strategies of the first player. The algorithm extends previous work of Freund and Schapire (Games and Economic Behavior ’99) with the advantag...
متن کاملInvestigating and Comparing the Position of Force Majeure and the Impossibility of Contracts in Iranian Oil Contracts
The effect of the two legal entities of force majeure and the impossibility (frustration) of the contract is almost similar, and that is the impossibility of fulfilling the obligation or contract. However, these two theories, although are very similar in practice, have some differences that distinguish them from each other; Initially, the question was what is the nature of the two institutions ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2017