{"id":"https://openalex.org/W7125504239","doi":"https://doi.org/10.1145/3786607","title":"AC4: Algebraic Computation Checker for Circuit Constraints in Zero-Knowledge Proofs","display_name":"AC4: Algebraic Computation Checker for Circuit Constraints in Zero-Knowledge Proofs","publication_year":2026,"publication_date":"2026-01-21","ids":{"openalex":"https://openalex.org/W7125504239","doi":"https://doi.org/10.1145/3786607"},"language":"en","primary_location":{"id":"doi:10.1145/3786607","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3786607","pdf_url":null,"source":{"id":"https://openalex.org/S128250343","display_name":"Formal Aspects of Computing","issn_l":"0934-5043","issn":["0934-5043","1433-299X"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Formal Aspects of Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5123653915","display_name":"Qizhe Yang","orcid":null},"institutions":[{"id":"https://openalex.org/I21945476","display_name":"Shanghai Normal University","ror":"https://ror.org/01cxqmw89","country_code":"CN","type":"education","lineage":["https://openalex.org/I21945476"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Qizhe Yang","raw_affiliation_strings":["Shanghai Normal University"],"raw_orcid":"https://orcid.org/0009-0000-9010-5364","affiliations":[{"raw_affiliation_string":"Shanghai Normal University","institution_ids":["https://openalex.org/I21945476"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Boxuan Liang","orcid":"https://orcid.org/0009-0008-1445-195X"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Boxuan Liang","raw_affiliation_strings":["Shanghai Jiao Tong University"],"raw_orcid":"https://orcid.org/0009-0008-1445-195X","affiliations":[{"raw_affiliation_string":"Shanghai Jiao Tong University","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Hao Chen","orcid":"https://orcid.org/0009-0009-3675-1344"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hao Chen","raw_affiliation_strings":["Shanghai Jiao Tong University"],"raw_orcid":"https://orcid.org/0009-0009-3675-1344","affiliations":[{"raw_affiliation_string":"Shanghai Jiao Tong University","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5123718985","display_name":"Guoqiang Li","orcid":null},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guoqiang Li","raw_affiliation_strings":["School of Computer Science, Shanghai Jiao Tong University"],"raw_orcid":"https://orcid.org/0000-0001-9005-7112","affiliations":[{"raw_affiliation_string":"School of Computer Science, Shanghai Jiao Tong University","institution_ids":["https://openalex.org/I183067930"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5123653915"],"corresponding_institution_ids":["https://openalex.org/I21945476"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.14461883,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"38","issue":"1","first_page":"1","last_page":"20"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10142","display_name":"Formal Methods in Verification","score":0.37929999828338623,"subfield":{"id":"https://openalex.org/subfields/1703","display_name":"Computational Theory and Mathematics"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10142","display_name":"Formal Methods in Verification","score":0.37929999828338623,"subfield":{"id":"https://openalex.org/subfields/1703","display_name":"Computational Theory and Mathematics"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11435","display_name":"Polynomial and algebraic computation","score":0.34940001368522644,"subfield":{"id":"https://openalex.org/subfields/1703","display_name":"Computational Theory and Mathematics"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11693","display_name":"Cryptography and Residue Arithmetic","score":0.05829999968409538,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/theory-of-computation","display_name":"Theory of computation","score":0.7412999868392944},{"id":"https://openalex.org/keywords/mathematical-proof","display_name":"Mathematical proof","score":0.6843000054359436},{"id":"https://openalex.org/keywords/computation","display_name":"Computation","score":0.5113000273704529},{"id":"https://openalex.org/keywords/argument","display_name":"Argument (complex analysis)","score":0.5085999965667725},{"id":"https://openalex.org/keywords/algebraic-number","display_name":"Algebraic number","score":0.4706999957561493},{"id":"https://openalex.org/keywords/model-checking","display_name":"Model checking","score":0.444599986076355},{"id":"https://openalex.org/keywords/electronic-circuit","display_name":"Electronic circuit","score":0.43540000915527344},{"id":"https://openalex.org/keywords/polynomial","display_name":"Polynomial","score":0.3970000147819519}],"concepts":[{"id":"https://openalex.org/C24858836","wikidata":"https://www.wikidata.org/wiki/Q844718","display_name":"Theory of computation","level":2,"score":0.7412999868392944},{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.6843000054359436},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6769999861717224},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.5113000273704529},{"id":"https://openalex.org/C98184364","wikidata":"https://www.wikidata.org/wiki/Q1780131","display_name":"Argument (complex analysis)","level":2,"score":0.5085999965667725},{"id":"https://openalex.org/C9376300","wikidata":"https://www.wikidata.org/wiki/Q168817","display_name":"Algebraic number","level":2,"score":0.4706999957561493},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.4690999984741211},{"id":"https://openalex.org/C110251889","wikidata":"https://www.wikidata.org/wiki/Q1569697","display_name":"Model checking","level":2,"score":0.444599986076355},{"id":"https://openalex.org/C134146338","wikidata":"https://www.wikidata.org/wiki/Q1815901","display_name":"Electronic circuit","level":2,"score":0.43540000915527344},{"id":"https://openalex.org/C90119067","wikidata":"https://www.wikidata.org/wiki/Q43260","display_name":"Polynomial","level":2,"score":0.3970000147819519},{"id":"https://openalex.org/C94375191","wikidata":"https://www.wikidata.org/wiki/Q11205","display_name":"Arithmetic","level":1,"score":0.38609999418258667},{"id":"https://openalex.org/C125411270","wikidata":"https://www.wikidata.org/wiki/Q18653","display_name":"Encoding (memory)","level":2,"score":0.36169999837875366},{"id":"https://openalex.org/C111498074","wikidata":"https://www.wikidata.org/wiki/Q173326","display_name":"Formal verification","level":2,"score":0.3411000072956085},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.33480000495910645},{"id":"https://openalex.org/C195818886","wikidata":"https://www.wikidata.org/wiki/Q5421724","display_name":"Expressive power","level":2,"score":0.33410000801086426},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.33090001344680786},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3262999951839447},{"id":"https://openalex.org/C141796577","wikidata":"https://www.wikidata.org/wiki/Q837479","display_name":"Boolean circuit","level":3,"score":0.3237999975681305},{"id":"https://openalex.org/C136119220","wikidata":"https://www.wikidata.org/wiki/Q1000660","display_name":"Algebra over a field","level":2,"score":0.32260000705718994},{"id":"https://openalex.org/C187075797","wikidata":"https://www.wikidata.org/wiki/Q173245","display_name":"Sequential logic","level":3,"score":0.3037000000476837},{"id":"https://openalex.org/C111335779","wikidata":"https://www.wikidata.org/wiki/Q3454686","display_name":"Reduction (mathematics)","level":2,"score":0.29670000076293945},{"id":"https://openalex.org/C110812573","wikidata":"https://www.wikidata.org/wiki/Q175515","display_name":"Symbolic computation","level":2,"score":0.2874999940395355},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.2752000093460083},{"id":"https://openalex.org/C75606506","wikidata":"https://www.wikidata.org/wiki/Q1049183","display_name":"Formal methods","level":2,"score":0.2646999955177307},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.26030001044273376}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3786607","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3786607","pdf_url":null,"source":{"id":"https://openalex.org/S128250343","display_name":"Formal Aspects of Computing","issn_l":"0934-5043","issn":["0934-5043","1433-299X"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Formal Aspects of Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.46569913625717163,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G7557574031","display_name":null,"funder_award_id":"62572294","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":28,"referenced_works":["https://openalex.org/W1553511155","https://openalex.org/W1561337879","https://openalex.org/W1975245149","https://openalex.org/W2004720904","https://openalex.org/W2004746351","https://openalex.org/W2038345254","https://openalex.org/W2043007983","https://openalex.org/W2047067954","https://openalex.org/W2071297168","https://openalex.org/W2079913403","https://openalex.org/W2108920860","https://openalex.org/W2122480357","https://openalex.org/W2128687423","https://openalex.org/W2129695855","https://openalex.org/W2144752539","https://openalex.org/W2159152974","https://openalex.org/W2252150191","https://openalex.org/W2507651339","https://openalex.org/W3092596670","https://openalex.org/W4250846042","https://openalex.org/W4288057703","https://openalex.org/W4313270705","https://openalex.org/W4379193096","https://openalex.org/W4379537474","https://openalex.org/W4384471497","https://openalex.org/W4388667412","https://openalex.org/W4400166129","https://openalex.org/W4400973198"],"related_works":[],"abstract_inverted_index":{"Zero-knowledge":[0,15],"proof":[1],"(ZKP)":[2],"systems":[3,115],"have":[4],"surged":[5],"attention":[6],"and":[7,56,65,80,116,175,177],"held":[8],"a":[9,62,91,170,178,183,189,201],"fundamental":[10],"role":[11],"in":[12,53,76,101,165],"contemporary":[13],"cryptography.":[14],"succinct":[16],"non-interactive":[17],"argument":[18],"of":[19,99,130,140,154],"knowledge":[20],"(zk-SNARK)":[21],"protocols":[22],"dominate":[23],"the":[24,49,58,66,82,108,123,137,141,152,155,166,192],"ZKP":[25,102],"usage,":[26],"implemented":[27],"through":[28],"arithmetic":[29,109],"circuit":[30,110],"programming":[31],"paradigm.":[32],"However,":[33],"underconstrained":[34],"or":[35],"overconstrained":[36],"circuits":[37,46,70],"may":[38],"lead":[39],"to":[40,45,60,69,84,112,150,205],"bugs.":[41],"The":[42,104,128],"former":[43],"refers":[44,68],"that":[47,71,159],"lack":[48],"necessary":[50,78],"constraints,":[51],"resulting":[52,75],"unexpected":[54],"solutions":[55,79],"causing":[57,81],"verifier":[59,83],"accept":[61,85],"bogus":[63],"witness,":[64],"latter":[67],"are":[72],"constrained":[73],"excessively,":[74],"lacking":[77],"no":[86],"witness.":[87],"This":[88],"article":[89],"introduces":[90],"novel":[92],"approach":[93],"for":[94,185],"pinpointing":[95],"two":[96],"distinct":[97],"types":[98],"bugs":[100],"circuits.":[103,187],"method":[105],"involves":[106],"encoding":[107],"constraints":[111],"polynomial":[113],"equation":[114],"solving":[117],"them":[118],"over":[119,173,181],"finite":[120],"fields":[121],"by":[122],"computer":[124],"algebra":[125],"system":[126],".":[127],"classification":[129],"verification":[131],"results":[132],"is":[133,148],"refined,":[134],"greatly":[135],"enhancing":[136],"expressive":[138],"power":[139],"system.":[142],"A":[143],"tool,":[144],"AC":[145,160],"4":[146,161],",":[147],"proposed":[149],"represent":[151],"implementation":[153],"method.":[156],"Experiments":[157],"show":[158],"demonstrates":[162],"an":[163],"increase":[164,203],"solved":[167],"rate,":[168],"showing":[169],"36.7%":[171],"improvement":[172,180],"Picus":[174],"CIVER,":[176],"slight":[179],"halo2-analyzer,":[182],"checker":[184],"halo2":[186],"Within":[188],"solvable":[190],"range,":[191],"checking":[193],"time":[194],"has":[195],"also":[196],"exhibited":[197],"noticeable":[198],"improvement,":[199],"demonstrating":[200],"magnitude":[202],"compared":[204],"previous":[206],"efforts.":[207]},"counts_by_year":[],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2026-01-24T00:00:00"}
