{"id":"https://openalex.org/W4293783385","doi":"https://doi.org/10.56553/popets-2022-0107","title":"gOTzilla: Efficient Disjunctive Zero-Knowledge Proofs from MPC in the Head, with Application to Proofs of Assets in Cryptocurrencies","display_name":"gOTzilla: Efficient Disjunctive Zero-Knowledge Proofs from MPC in the Head, with Application to Proofs of Assets in Cryptocurrencies","publication_year":2022,"publication_date":"2022-08-31","ids":{"openalex":"https://openalex.org/W4293783385","doi":"https://doi.org/10.56553/popets-2022-0107"},"language":"en","primary_location":{"id":"doi:10.56553/popets-2022-0107","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2022-0107","pdf_url":"https://petsymposium.org/popets/2022/popets-2022-0107.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://petsymposium.org/popets/2022/popets-2022-0107.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5023122783","display_name":"Foteini Baldimtsi","orcid":"https://orcid.org/0000-0003-3296-5336"},"institutions":[{"id":"https://openalex.org/I162714631","display_name":"George Mason University","ror":"https://ror.org/02jqj7156","country_code":"US","type":"education","lineage":["https://openalex.org/I162714631"]},{"id":"https://openalex.org/I4210096386","display_name":"Bridge University","ror":"https://ror.org/00cbm0437","country_code":"SS","type":"education","lineage":["https://openalex.org/I4210096386"]},{"id":"https://openalex.org/I164956901","display_name":"Visa (United Kingdom)","ror":"https://ror.org/05syhdw25","country_code":"GB","type":"company","lineage":["https://openalex.org/I164956901","https://openalex.org/I4210148469"]}],"countries":["GB","SS","US"],"is_corresponding":true,"raw_author_name":"Foteini Baldimtsi","raw_affiliation_strings":["George Mason University","University -Visa Research,","University,"],"affiliations":[{"raw_affiliation_string":"George Mason University","institution_ids":["https://openalex.org/I162714631"]},{"raw_affiliation_string":"University -Visa Research,","institution_ids":["https://openalex.org/I164956901"]},{"raw_affiliation_string":"University,","institution_ids":["https://openalex.org/I4210096386"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029953746","display_name":"Panagiotis Chatzigiannis","orcid":"https://orcid.org/0000-0002-5970-0664"},"institutions":[{"id":"https://openalex.org/I162714631","display_name":"George Mason University","ror":"https://ror.org/02jqj7156","country_code":"US","type":"education","lineage":["https://openalex.org/I162714631"]},{"id":"https://openalex.org/I4210096386","display_name":"Bridge University","ror":"https://ror.org/00cbm0437","country_code":"SS","type":"education","lineage":["https://openalex.org/I4210096386"]}],"countries":["SS","US"],"is_corresponding":false,"raw_author_name":"Panagiotis Chatzigiannis","raw_affiliation_strings":["George Mason University - Visa Research","University,"],"affiliations":[{"raw_affiliation_string":"George Mason University - Visa Research","institution_ids":["https://openalex.org/I162714631"]},{"raw_affiliation_string":"University,","institution_ids":["https://openalex.org/I4210096386"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5055879645","display_name":"Steven Gordon","orcid":"https://orcid.org/0000-0003-4090-1199"},"institutions":[{"id":"https://openalex.org/I4210096386","display_name":"Bridge University","ror":"https://ror.org/00cbm0437","country_code":"SS","type":"education","lineage":["https://openalex.org/I4210096386"]},{"id":"https://openalex.org/I162714631","display_name":"George Mason University","ror":"https://ror.org/02jqj7156","country_code":"US","type":"education","lineage":["https://openalex.org/I162714631"]},{"id":"https://openalex.org/I164956901","display_name":"Visa (United Kingdom)","ror":"https://ror.org/05syhdw25","country_code":"GB","type":"company","lineage":["https://openalex.org/I164956901","https://openalex.org/I4210148469"]}],"countries":["GB","SS","US"],"is_corresponding":false,"raw_author_name":"S. Dov Gordon","raw_affiliation_strings":["George Mason University","University -Visa Research,","University,"],"affiliations":[{"raw_affiliation_string":"George Mason University","institution_ids":["https://openalex.org/I162714631"]},{"raw_affiliation_string":"University -Visa Research,","institution_ids":["https://openalex.org/I164956901"]},{"raw_affiliation_string":"University,","institution_ids":["https://openalex.org/I4210096386"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008327227","display_name":"Phi Hung Le","orcid":"https://orcid.org/0009-0009-1469-2136"},"institutions":[{"id":"https://openalex.org/I162714631","display_name":"George Mason University","ror":"https://ror.org/02jqj7156","country_code":"US","type":"education","lineage":["https://openalex.org/I162714631"]},{"id":"https://openalex.org/I164956901","display_name":"Visa (United Kingdom)","ror":"https://ror.org/05syhdw25","country_code":"GB","type":"company","lineage":["https://openalex.org/I164956901","https://openalex.org/I4210148469"]},{"id":"https://openalex.org/I4210096386","display_name":"Bridge University","ror":"https://ror.org/00cbm0437","country_code":"SS","type":"education","lineage":["https://openalex.org/I4210096386"]}],"countries":["GB","SS","US"],"is_corresponding":false,"raw_author_name":"Phi Hung Le","raw_affiliation_strings":["George Mason University","University -Visa Research,","University,"],"affiliations":[{"raw_affiliation_string":"George Mason University","institution_ids":["https://openalex.org/I162714631"]},{"raw_affiliation_string":"University -Visa Research,","institution_ids":["https://openalex.org/I164956901"]},{"raw_affiliation_string":"University,","institution_ids":["https://openalex.org/I4210096386"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5010440998","display_name":"Daniel McVicker","orcid":"https://orcid.org/0009-0007-0553-4844"},"institutions":[{"id":"https://openalex.org/I162714631","display_name":"George Mason University","ror":"https://ror.org/02jqj7156","country_code":"US","type":"education","lineage":["https://openalex.org/I162714631"]},{"id":"https://openalex.org/I4210096386","display_name":"Bridge University","ror":"https://ror.org/00cbm0437","country_code":"SS","type":"education","lineage":["https://openalex.org/I4210096386"]},{"id":"https://openalex.org/I164956901","display_name":"Visa (United Kingdom)","ror":"https://ror.org/05syhdw25","country_code":"GB","type":"company","lineage":["https://openalex.org/I164956901","https://openalex.org/I4210148469"]}],"countries":["GB","SS","US"],"is_corresponding":false,"raw_author_name":"Daniel McVicker","raw_affiliation_strings":["George Mason University","University -Visa Research,","University,"],"affiliations":[{"raw_affiliation_string":"George Mason University","institution_ids":["https://openalex.org/I162714631"]},{"raw_affiliation_string":"University -Visa Research,","institution_ids":["https://openalex.org/I164956901"]},{"raw_affiliation_string":"University,","institution_ids":["https://openalex.org/I4210096386"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5023122783"],"corresponding_institution_ids":["https://openalex.org/I162714631","https://openalex.org/I164956901","https://openalex.org/I4210096386"],"apc_list":null,"apc_paid":null,"fwci":0.5552,"has_fulltext":true,"cited_by_count":4,"citation_normalized_percentile":{"value":0.72202603,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":97},"biblio":{"volume":"2022","issue":"4","first_page":"229","last_page":"249"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10270","display_name":"Blockchain Technology Applications and Security","score":0.9868999719619751,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9783999919891357,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/mathematical-proof","display_name":"Mathematical proof","score":0.7955661416053772},{"id":"https://openalex.org/keywords/zero-knowledge-proof","display_name":"Zero-knowledge proof","score":0.7678407430648804},{"id":"https://openalex.org/keywords/gas-meter-prover","display_name":"Gas meter prover","score":0.5895522832870483},{"id":"https://openalex.org/keywords/cryptocurrency","display_name":"Cryptocurrency","score":0.5829629302024841},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5792407393455505},{"id":"https://openalex.org/keywords/proof-of-work-system","display_name":"Proof-of-work system","score":0.5726576447486877},{"id":"https://openalex.org/keywords/protocol","display_name":"Protocol (science)","score":0.5509575009346008},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.528944730758667},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.5102245807647705},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.477560818195343},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.475973516702652},{"id":"https://openalex.org/keywords/algebraic-number","display_name":"Algebraic number","score":0.47533750534057617},{"id":"https://openalex.org/keywords/hash-function","display_name":"Hash function","score":0.46386709809303284},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.37089183926582336},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.15844222903251648},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.15811428427696228}],"concepts":[{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.7955661416053772},{"id":"https://openalex.org/C176329583","wikidata":"https://www.wikidata.org/wiki/Q191943","display_name":"Zero-knowledge proof","level":3,"score":0.7678407430648804},{"id":"https://openalex.org/C159718280","wikidata":"https://www.wikidata.org/wiki/Q5526353","display_name":"Gas meter prover","level":3,"score":0.5895522832870483},{"id":"https://openalex.org/C180706569","wikidata":"https://www.wikidata.org/wiki/Q13479982","display_name":"Cryptocurrency","level":2,"score":0.5829629302024841},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5792407393455505},{"id":"https://openalex.org/C123436394","wikidata":"https://www.wikidata.org/wiki/Q7249984","display_name":"Proof-of-work system","level":3,"score":0.5726576447486877},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.5509575009346008},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.528944730758667},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.5102245807647705},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.477560818195343},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.475973516702652},{"id":"https://openalex.org/C9376300","wikidata":"https://www.wikidata.org/wiki/Q168817","display_name":"Algebraic number","level":2,"score":0.47533750534057617},{"id":"https://openalex.org/C99138194","wikidata":"https://www.wikidata.org/wiki/Q183427","display_name":"Hash function","level":2,"score":0.46386709809303284},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.37089183926582336},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.15844222903251648},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.15811428427696228},{"id":"https://openalex.org/C142724271","wikidata":"https://www.wikidata.org/wiki/Q7208","display_name":"Pathology","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C204787440","wikidata":"https://www.wikidata.org/wiki/Q188504","display_name":"Alternative medicine","level":2,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.56553/popets-2022-0107","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2022-0107","pdf_url":"https://petsymposium.org/popets/2022/popets-2022-0107.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.56553/popets-2022-0107","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2022-0107","pdf_url":"https://petsymposium.org/popets/2022/popets-2022-0107.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.4099999964237213}],"awards":[{"id":"https://openalex.org/G1435668302","display_name":null,"funder_award_id":"1717067","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4293783385.pdf","grobid_xml":"https://content.openalex.org/works/W4293783385.grobid-xml"},"referenced_works_count":38,"referenced_works":["https://openalex.org/W88105200","https://openalex.org/W134131117","https://openalex.org/W1604074479","https://openalex.org/W1646354800","https://openalex.org/W1686844196","https://openalex.org/W1980227445","https://openalex.org/W2017464959","https://openalex.org/W2018746447","https://openalex.org/W2043007983","https://openalex.org/W2102632861","https://openalex.org/W2132144109","https://openalex.org/W2133203144","https://openalex.org/W2152926062","https://openalex.org/W2154654620","https://openalex.org/W2226167778","https://openalex.org/W2475985589","https://openalex.org/W2495842381","https://openalex.org/W2496543269","https://openalex.org/W2882986534","https://openalex.org/W2883089683","https://openalex.org/W2891063150","https://openalex.org/W2920360623","https://openalex.org/W2941663220","https://openalex.org/W2951981597","https://openalex.org/W2953097105","https://openalex.org/W2954625838","https://openalex.org/W2968027060","https://openalex.org/W3012999251","https://openalex.org/W3022452713","https://openalex.org/W3022483387","https://openalex.org/W3028867652","https://openalex.org/W3046380193","https://openalex.org/W3198210678","https://openalex.org/W3202162486","https://openalex.org/W3204092576","https://openalex.org/W3214573664","https://openalex.org/W4221101970","https://openalex.org/W4384200977"],"related_works":["https://openalex.org/W2149634854","https://openalex.org/W2937894389","https://openalex.org/W2562305209","https://openalex.org/W3030245161","https://openalex.org/W2096571200","https://openalex.org/W2809883875","https://openalex.org/W3030523870","https://openalex.org/W4389777186","https://openalex.org/W3210659843","https://openalex.org/W3202533652"],"abstract_inverted_index":{"We":[0,104,191,219,251],"present":[1],"gOTzilla,":[2,126],"a":[3,40,78,86,96,194,260,298],"protocol":[4,180,200,254,272],"for":[5,9,68,201,259],"interactive":[6],"zero-knowledge":[7],"proofs":[8],"very":[10],"large":[11],"disjunctive":[12,299],"statements":[13,64,210],"of":[14,25,39,63,71,85,95,109,125,141,144,171,198,225,232,262,270,293],"the":[15,69,83,93,102,107,123,135,169,184,187,202,213,216,229,233,267,291,294],"following":[16],"format:":[17],"given":[18],"publicly":[19],"known":[20],"circuit":[21],"C,":[22],"and":[23,208,255,303],"set":[24,261],"values":[26],"Y":[27],"=":[28,46,50,58,150,154,162],"{y1":[29],",":[30,34],".":[31,32,33,60],"yn":[35,59,163],"},":[36],"prove":[37,82],"knowledge":[38,84,143],"witness":[41],"x":[42],"such":[43,114,147],"that":[44,90,106,131,148],"C(x)":[45,49,57],"y1":[47,155],"\u2228":[48,52,56,156,160],"y2":[51],"\u00b7":[53,54,55,157,158,159],"These":[61],"type":[62],"are":[65],"extremely":[66],"important":[67],"proof":[70,136,230],"assets":[72],"(PoA)":[73],"problem":[74],"in":[75,111,186,215,247],"cryptocurrencies":[76],"where":[77,204],"prover":[79],"wants":[80],"to":[81,119,138,173,290],"secret":[87],"key":[88,98],"sk":[89],"associates":[91],"with":[92,279,301],"hash":[94],"public":[97],"H(pk)":[99],"posted":[100],"on":[101,183],"ledger.":[103],"note":[105],"size":[108,231,263],"n":[110],"popular":[112],"cryptocurrencies,":[113],"as":[115],"Bitcoin,":[116],"is":[117,181,212,273,285],"estimated":[118],"80":[120],"million.":[121],"For":[122],"construction":[124],"we":[127,133,166],"start":[128],"by":[129],"observing":[130],"if":[132],"restructure":[134],"statement":[137,300],"an":[139,221],"equivalent":[140],"proving":[142],"(x,":[145],"y)":[146,151],"(C(x)":[149],"\u2227":[152],"(y":[153],"y":[161],")),":[164],"then":[165],"can":[167],"reduce":[168],"disjunction":[170],"equalities":[172],"1-out-of-N":[174],"oblivious":[175],"transfer":[176],"(OT).":[177],"Our":[178],"overall":[179],"based":[182],"MPC":[185],"head":[188],"(MPCitH)":[189],"paradigm.":[190],"additionally":[192],"provide":[193,256],"concrete,":[195],"efficient":[196],"extension":[197],"our":[199,244,253,271],"case":[203,214],"C":[205],"combines":[206],"algebraic":[207,302],"non-algebraic":[209,304],"(which":[211],"PoA":[217],"application).":[218],"achieve":[220],"asymptotic":[222,242],"communication":[223],"cost":[224],"O(log":[226],"n)":[227],"plus":[228],"underlying":[234],"MPCitH":[235],"protocol.":[236],"While":[237],"related":[238],"work":[239],"has":[240],"similar":[241],"complexity,":[243],"approach":[245],"results":[246],"concrete":[248],"performance":[249],"improvements.":[250],"implement":[252],"benchmarks.":[257],"Concretely,":[258],"1":[264],"million":[265],"entries,":[266],"total":[268,282],"run-time":[269],"14.89":[274],"seconds":[275],"using":[276],"48":[277],"threads,":[278],"6.18":[280],"MB":[281],"communication,":[283],"which":[284],"about":[286],"4x":[287],"faster":[288],"compared":[289],"state":[292],"art":[295],"when":[296],"considering":[297],"elements.":[305]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":3}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
