Sign in

ais

@aisconnolly.bsky.social
158 followers 90 following 11 posts

Privacy, MPC, and coSNARKs at TACEO

PostsRepliesMedia
ais @aisconnolly.bsky.social · 03/10/2025
Surpising that even in ZK circles, MPC is still considered ‘just threshold signing.’ Big miss. MPC allows full computation on encrypted data eg for private defi or agents w/o exposing inputs. It’s makes ZK collaborative and goes far beyond what we know from wallets. Thoughts?
030
Reposted by ais
web3privacy.info @web3privacy.info · 19/03/2025
New Personal Stack is here by cryptographer @aisconnolly.bsky.social from @taceo.bsky.social Feel free to explore free, open-source tools experts are using.
073
ais @aisconnolly.bsky.social · 06/03/2025
I think it shows, but I really enjoyed the @zkhack.dev meetup in Denver
120
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 12/02/2025
We’ll be in Denver to hijack a corner of the @zkhack.dev meetup! Come chill with us if you want to talk coSNARKs, coNoir, MPC generally, or to get your hands on some of the most notorious stickers in town 🔥
022
Reposted by ais
ZK Hack @zkhack.dev · 07/02/2025
In a (long) tweet and an article, @taceo.bsky.social team first gave a quick refresher on what zkTLS is, and then presented how it can move beyond 2-party computation (2PC) – a TLS-MPC version with multiple parties. Article: buff.ly/4gzN26v
blog.taceo.io
Multiparty Notaries for zkTLS
A blog about various topics in MPC, ZK and other privacy-preserving technologies, by TACEO.
132
Reposted by ais
ePrint Updates @eprint.ing.bot · 27/01/2025
How to Prove False Statements: Practical Attacks on Fiat-Shamir (Dmitry Khovratovich, Ron D. Rothblum, Lev Soukhanov) ia.cr/2025/118
Abstract. The Fiat-Shamir (FS) transform is a prolific and powerful technique for compiling public-coin interactive protocols into non-interactive ones. Roughly speaking, the idea is to replace the random coins of the verifier with the evaluations of a complex hash function.

The FS transform is known to be sound in the random oracle model (i.e., when the hash function is modeled as a totally random function). However, when instantiating the random oracle using a concrete hash function, there are examples of protocols in which the transformation is not sound. So far all of these examples have been contrived protocols that were specifically designed to fail.

In this work we show such an attack for a standard and popular interactive succinct argument, based on the GKR protocol, for verifying the correctness of a non-determinstic bounded-depth computation. For every choice of FS hash function, we show that a corresponding instantiation of this protocol, which was been widely studied in the literature and used also in practice, is not (adaptively) sound when compiled with the FS transform. Specifically, we construct an explicit circuit for which we can generate an accepting proof for a false statement.

We further extend our attack and show that for every circuit C and desired output y, we can construct a functionally equivalent circuit C^(*), for which we can produce an accepting proof that C^(*) outputs y (regardless of whether or not this statement is true). This demonstrates that any security guarantee (if such exists) would have to depend on the specific implementation of the circuit C, rather than just its functionality.

Lastly, we also demonstrate versions of the attack that violate non-adaptive soundness of the protocol – that is, we generate an attacking circuit that is independent of the underlying cryptographic objects. However, these versions are either less practical (as the attacking circuit has very large depth) or make some additional (reasonable) assumptions on the underlying cryptographic primitives.
Image showing part 2 of abstract.
03817
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 22/01/2025
We'll be at Ethereum Zurich next week to talk all things coSNARKs and private shared state! Let us know if you're in town, and would like to talk prog crypto and the future of privacy in Web3. cfp.ducttape.events/ethereumzuri...
cfp.ducttape.events
Collaborative SNARKs and Private Shared State EthereumZuri.ch 2025
As blockchain technology matures, the expansion from purely public state systems, pioneered by Ethereum, to privacy-centric platforms like Aztec and Aleo marks significant progress. However, the devel...
041
ais @aisconnolly.bsky.social · 23/12/2024
Only a few days left to nominate for @web3privacy awards! Support privacy tech and share your favorite projects. Need ideas? Check @fileverse: portal.fileverse.io/#/0xe141365... Info for nominating: awards.web3privacy.info/
041
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 22/12/2024
We had a great year. From bringing super optimized MPC protocols to the mass market and securing 9 million people's irises with World, to developing open source coSNARK tooling and building an alphanet for private proof delegation, it's been wild. Full breakdown here: blog.taceo.io/eoy/
blog.taceo.io
TACEO 2024: Coffee, Code, and CoSNARKs
A blog about various topics in MPC, ZK and other privacy-preserving technologies, by TACEO.
031
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 05/12/2024
✅Range checks in collaborative Noir ✅Support for asserts, and... ✅The first version of the Brillig VM in MPC! Though still in early experimental stages, this is huge progress for private shared state in Noir Read more in the coNoir releases: docs.taceo.io/docs/release...
docs.taceo.io
Major update to coNoir (November 2024) | TACEO coSNARKs
Summary
011
Reposted by ais
Seny Kamara @senykamara.com · 03/12/2024
If you’re curious about the design and analysis of encrypted algorithms and encrypted databases, I’m putting together a collection of resources at encryptedsystems.org
encryptedsystems.org
EncryptedSystems.org
24919
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 26/11/2024
CoSNARKs have been heating up since Devcon 🔥 and some of the leading ZK projects are currently onboarding to try our alphanet for private proof delegation. There are a few slots left, so if you wanted to offload some proving in a privacy preserving way, our dms are open.
032
Reposted by ais
taceo.bsky.social @taceo.bsky.social · 22/11/2024
It worked! Almost flawlessly! 1800+ people generated 15000+ coSNARKs! Last week we established a coSNARK Alphanet with the Cursive team and PSE so that the Cursive Devcon app could privately outsource proof generation. More details: blog.taceo.io/devcon-demo/
blog.taceo.io
CoSnarks in Action at Devcon7
A blog about various topics in MPC, ZK and other privacy-preserving technologies, by TACEO.
111
ais @aisconnolly.bsky.social · 20/11/2024
Last week at Devcon, I exhibited as part of Cursive's Cryptographic Connections museum. Inspired by the experience of generating coSNARKs on the Alphanet, I wanted to showcase the history of MPC, tracing the development of coSNARKs and TACEO tooling from their beginnings.
111
ais @aisconnolly.bsky.social · 18/11/2024
Hello and thank you for having me.
020