Abstract. Zero-knowledge proofs with witness elimination are proto-cols that enable a prover to demonstrate knowledge of a witness to the verifier that accepts the interaction provided that the witness is valid for a given statement and additionally the witness does not belong to a set of eliminated witnesses. This set is determined by a public relation Q (that parameterizes the primitive) and the private input of the verifier. Zero-knowledge proofs with witness elimination thus call for a relax-ation of the zero-knowledge property and are relevant in settings where a statement has a multitude of witnesses that may attest to its validity. A number of interesting issues arise in the design of such protocols that include whether a protocol tr...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
We devise an abstraction of zero-knowledge protocols that is accessible to a fully mechanized analys...
Motivated by the goal of removing trusted setup assumptions from cryptography, we introduce the noti...
Privacy preserving protocols typically involve the use of Zero Knowledge (ZK) proofs, which allow a ...
Zero-Knowledge Protocols and Witness Encryption are usually defined for NP relations. I show that th...
The material below covers two lectures on the beautiful and influential concept of zero-knowledge pr...
Zero-Knowledge Protocols and Witness Encryption are usually defined for NP relations. I show that th...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
Abstract. Often, in privacy-sensitive cryptographic protocols, a party commits to a secret message m...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
Abstract. We introduce a new notion called ℓ-isolated proofs of knowledge (ℓ-IPoK). These are proofs...
In this paper, we study the opacity property of verifiably encrypted signatures (VES) of Boneh et al...
In identification protocols with public verifier coins (like Fiat-Shamir), a passive adversary watch...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
We devise an abstraction of zero-knowledge protocols that is accessible to a fully mechanized analys...
Motivated by the goal of removing trusted setup assumptions from cryptography, we introduce the noti...
Privacy preserving protocols typically involve the use of Zero Knowledge (ZK) proofs, which allow a ...
Zero-Knowledge Protocols and Witness Encryption are usually defined for NP relations. I show that th...
The material below covers two lectures on the beautiful and influential concept of zero-knowledge pr...
Zero-Knowledge Protocols and Witness Encryption are usually defined for NP relations. I show that th...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
Abstract. Often, in privacy-sensitive cryptographic protocols, a party commits to a secret message m...
International audienceOften, in privacy-sensitive cryptographic protocols, a party commits to a secr...
Abstract. We introduce a new notion called ℓ-isolated proofs of knowledge (ℓ-IPoK). These are proofs...
In this paper, we study the opacity property of verifiably encrypted signatures (VES) of Boneh et al...
In identification protocols with public verifier coins (like Fiat-Shamir), a passive adversary watch...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
A zero-knowledge proof (ZKP) is an interactive proof that allows a prover to prove the knowledge of ...
We devise an abstraction of zero-knowledge protocols that is accessible to a fully mechanized analys...