Lattice-Based SNARKs: Publicly Verifiable, Preprocessing, and Recursively Composable (Extended Abstract)

被引:27
|
作者
Albrecht, Martin R. [1 ]
Cini, Valerio [2 ]
Lai, Russell W. F. [3 ]
Malavolta, Giulio [4 ]
Thyagarajan, Sri AravindaKrishnan [5 ]
机构
[1] Univ London, Royal Holloway, Egham, England
[2] AIT Austrian Inst Technol, Seibersdorf, Austria
[3] Aalto Univ, Espoo, Finland
[4] Max Planck Inst Secur & Privacy, Bochum, Germany
[5] Carnegie Mellon Univ, Pittsburgh, PA USA
来源
基金
奥地利科学基金会; 英国工程与自然科学研究理事会;
关键词
GENERALIZED COMPACT KNAPSACKS; KNOWLEDGE; COMMITMENTS; ENCRYPTION; ARGUMENTS; PROOFS;
D O I
10.1007/978-3-031-15979-4_4
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A succinct non-interactive argument of knowledge (SNARK) allows a prover to produce a short proof that certifies the veracity of a certain NP-statement. In the last decade, a large body of work has studied candidate constructions that are secure against quantum attackers. Unfortunately, no known candidate matches the efficiency and desirable features of (pre-quantum) constructions based on bilinear pairings. In this work, we make progress on this question. We propose the first lattice-based SNARK that simultaneously satisfies many desirable properties: It (i) is tentatively post-quantum secure, (ii) is publicly-verifiable, (iii) has a logarithmic-time verifier and (iv) has a purely algebraic structure making it amenable to efficient recursive composition. Our construction stems from a general technical toolkit that we develop to translate pairing-based schemes to lattice-based ones. At the heart of our SNARK is a new lattice-based vector commitment (VC) scheme supporting openings to constant-degree multivariate polynomial maps, which is a candidate solution for the open problem of constructing VC schemes with openings to beyond linear functions. However, the security of our constructions is based on a new family of lattice-based computational assumptions which naturally generalises the standard Short Integer Solution (SIS) assumption.
引用
收藏
页码:102 / 132
页数:31
相关论文
共 15 条
  • [1] Lattice-based verifiable timed signature and application
    Chen, Huiyan
    Wang, Qingnan
    Wang, Ke
    Tan, Shuncong
    Xin, Hongcai
    Tongxin Xuebao/Journal on Communications, 2024, 45 (10): : 142 - 152
  • [2] RoK, Paper, SISsors Toolkit for Lattice-Based Succinct Arguments (Extended Abstract)
    Klooss, Michael
    Lai, Russell W. F.
    Ngoc Khanh Nguyen
    Osadnik, Michal
    ADVANCES IN CRYPTOLOGY - ASIACRYPT 2024, PT V, 2025, 15488 : 203 - 235
  • [3] Lattice-Based zk-SNARKs from Square Span Programs
    Gennaro, Rosario
    Minelli, Michele
    Nitulescu, Anca
    Orru, Michele
    PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, : 556 - 573
  • [4] Extended Lattice-Based Memory Allocation
    Darte, Alain
    Isoard, Alexandre
    Yuki, Tomofumi
    PROCEEDINGS OF THE 25TH INTERNATIONAL CONFERENCE ON COMPILER CONSTRUCTION (CC 2016), 2016, : 218 - 228
  • [5] A Verifiable Voting Protocol Based on Farnel (Extended Abstract)
    Araujo, Roberto
    Custodio, Ricardo Felipe
    van de Graaf, Jeroen
    TOWARDS TRUSTWORTHY ELECTIONS: NEW DIRECTIONS IN ELECTRONIC VOTING, 2010, 6000 : 274 - +
  • [6] Quantum Oblivious LWE Sampling and Insecurity of Standard Model Lattice-Based SNARKs
    Debris-Alazard, Thomas
    Fallahpour, Pouria
    Stehle, Damien
    PROCEEDINGS OF THE 56TH ANNUAL ACM SYMPOSIUM ON THEORY OF COMPUTING, STOC 2024, 2024, : 423 - 434
  • [7] A Verifiable and Practical Lattice-Based Decryption Mix Net with External Auditing
    Boyen, Xavier
    Haines, Thomas
    Muller, Johannes
    COMPUTER SECURITY - ESORICS 2020, PT II, 2020, 12309 : 336 - 356
  • [8] Batch Lattice-Based Designated-Verifier ZK-SNARKs for R1CS
    Lin, Xi
    Xia, Han
    Li, Yongqiang
    Wang, Mingsheng
    SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, PT I, SECURECOMM 2023, 2025, 567 : 329 - 349
  • [9] Verifiable Mix-Nets and Distributed Decryption for Voting from Lattice-Based Assumptions
    Aranha, Diego F.
    Baum, Carsten
    Gjosteen, Kristian
    Silde, Tjerand
    PROCEEDINGS OF THE 2023 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, CCS 2023, 2023, : 1467 - 1481
  • [10] An Abstract Context to Lattice-Based Ideals (Filters) with Multi-Fuzzy Soft Settings
    Vimala, J.
    Begam, S. Sabeena
    Saeed, Muhammad
    Khan, Khuram Ali
    Ur Rahman, Atiqe
    NEW MATHEMATICS AND NATURAL COMPUTATION, 2025, 21 (01) : 21 - 35