L13: (Polynomial) IOPs
Topics
- Polynomial Commitment + PolyIOP = SNARG
- Polynomial IOPs
- Plonkish Arithmetization
- Plonk-Light: SNARG for Arithmetic Circuit-SAT
Readings
- Proofs, Arguments, and Zero Knowledge by Justin Thaler (esp. Section 9)
- PLONK: Permutations over Lagrange-bases for Oecumenical Noninteractive arguments of Knowledge by Ariel Gabizon, Zachary J. Williamson, Oana Ciobotaru
- Marlin: Preprocessing zkSNARKs with Universal and Updatable SRS by Chiesa, Hu, Maller, Mishra, Vesely, Ward (EUROCRYPT 2020)
Notes
Will be posted before class.