跳到主要导航 跳到搜索 跳到主要内容

Ligerolight: Optimized IOP-Based Zero-Knowledge Argument for Blockchain Scalability

  • Zongyang Zhang*
  • , Weihan Li
  • , Ximeng Liu
  • , Xin Chen
  • , Qihang Peng
  • *此作品的通讯作者
  • Beihang University
  • Fuzhou University

科研成果: 期刊稿件文章同行评审

摘要

Zero-knowledge scalable transparent arguments of knowledge (zk-STARKs) are a promising approach to solving the blockchain scalability problem while maintaining security, decentralization and privacy. However, compared with zero-knowledge proofs with trusted setups deployed in existing scalability solutions, zk-STARKs are usually less efficient. In this paper, we introduce Ligerolight, an optimized zk-STARK for the arithmetic circuit satisfiability problem following the framework of Ligero (ACM CCS 2017) and Aurora (Eurocrypt 2019) based on interactive oracle proof, which could be used for blockchain scalability. Evaluations show that Ligerolight has performance advantages compared with existing zk-STARKs. The prover time is 30% faster than Aurora to generate proof for computing an authentication path of a Merkle tree with 32 leaves. The proof size is about 131 KB, one-tenth of Ligero and 50% smaller than Aurora. The verifier time is 2 times as fast as Aurora. Underlying Ligerolight is a new batch zero-knowledge inner product argument, allowing to prove multiple inner product relations once. Using this argument, we build a batch multivariate polynomial commitment with poly-logarithmic communication complexity and verification. This polynomial commitment is particularly efficient when opening multiple points in multiple polynomials at one time, and may be of independent interest in constructing scalability solutions.

源语言英语
页(从-至)3656-3670
页数15
期刊IEEE Transactions on Dependable and Secure Computing
21
4
DOI
出版状态已出版 - 2024

指纹

探究 'Ligerolight: Optimized IOP-Based Zero-Knowledge Argument for Blockchain Scalability' 的科研主题。它们共同构成独一无二的指纹。

引用此