0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
Revisiting Simulation Extractability in the Updatable Setting
- 1.업데이트 가능한 SRS 환경에서 SNARK의 기존 시뮬레이션 추출성(SE) 정의가 실제 비야성을 보장하지 못함을 입증
- 2.교차-SRS 재해석 공격을 식별: 업데이트로 생성된 서로 다른 상관 SRS 간에 증명을 재사용·변조할 수 있는 취약점
- 3.[GKK+22]의 Updatable SE(USE) 개념을 강화해, 적대적 SRS 업데이트와 도달 가능한 시뮬레이션 오라클까지 모델링
- 4.다항식-IOP 기반 주요 SNARK들이 Fiat-Shamir를 올바르게 구현하면 강화된 USE를 만족함을 긍정적으로 입증
왜 중요한가?
업데이트 가능한 SRS를 쓰는 실제 SNARK 배포 환경에서 기존 보안 정의가 놓치던 교차-SRS 재해석 공격 가능성을 밝혀내고, 이를 막는 강화된 정의와 실제 스킴의 충족 조건을 제시해 실무 배포의 보안 근거를 명확히 한다.
본문 미리보기
We revisit the notion of Simulation Extractability (SE) for SNARKs in the updatable setting. We demonstrate that existing formal definitions of SE in this setting are insufficient to guarantee the required non-malleability in real-world scenarios. Towards this, we first identify and frame a malleability vulnerability: a cross-SRS reinterpretation attack, which shows that an adversary can reuse or maul proofs across different, correlated SRSs generated through the update procedure. This is made
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



