{"id":"https://openalex.org/W7160313212","doi":"https://doi.org/10.62056/ahsg893y6","title":"zkExp: Zero-Knowledge Succinct Exponentiation Proofs","display_name":"zkExp: Zero-Knowledge Succinct Exponentiation Proofs","publication_year":2026,"publication_date":"2026-05-04","ids":{"openalex":"https://openalex.org/W7160313212","doi":"https://doi.org/10.62056/ahsg893y6"},"language":"en","primary_location":{"id":"doi:10.62056/ahsg893y6","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ahsg893y6","pdf_url":"https://cic.iacr.org/p/3/1/2/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://cic.iacr.org/p/3/1/2/pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5106490755","display_name":"Biniyam Deressa","orcid":"https://orcid.org/0000-0002-9612-8695"},"institutions":[{"id":"https://openalex.org/I151746483","display_name":"University of Waterloo","ror":"https://ror.org/01aff2v68","country_code":"CA","type":"education","lineage":["https://openalex.org/I151746483"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Biniyam Deressa","raw_affiliation_strings":["University of Waterloo"],"raw_orcid":"https://orcid.org/0000-0002-9612-8695","affiliations":[{"raw_affiliation_string":"University of Waterloo","institution_ids":["https://openalex.org/I151746483"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5135334537","display_name":"M. Hasan","orcid":"https://orcid.org/0000-0003-4103-7945"},"institutions":[{"id":"https://openalex.org/I151746483","display_name":"University of Waterloo","ror":"https://ror.org/01aff2v68","country_code":"CA","type":"education","lineage":["https://openalex.org/I151746483"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"M. Hasan","raw_affiliation_strings":["University of Waterloo"],"raw_orcid":"https://orcid.org/0000-0003-4103-7945","affiliations":[{"raw_affiliation_string":"University of Waterloo","institution_ids":["https://openalex.org/I151746483"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.69230073,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"3","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.8518999814987183,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.8518999814987183,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10720","display_name":"Complexity and Algorithms in Graphs","score":0.05000000074505806,"subfield":{"id":"https://openalex.org/subfields/1703","display_name":"Computational Theory and Mathematics"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11504","display_name":"Advanced Authentication Protocols Security","score":0.012600000016391277,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/exponentiation","display_name":"Exponentiation","score":0.8012999892234802},{"id":"https://openalex.org/keywords/gas-meter-prover","display_name":"Gas meter prover","score":0.7900000214576721},{"id":"https://openalex.org/keywords/modular-exponentiation","display_name":"Modular exponentiation","score":0.7552000284194946},{"id":"https://openalex.org/keywords/mathematical-proof","display_name":"Mathematical proof","score":0.6973000168800354},{"id":"https://openalex.org/keywords/random-oracle","display_name":"Random oracle","score":0.661899983882904},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.5307999849319458},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.483599990606308},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.4372999966144562}],"concepts":[{"id":"https://openalex.org/C81539297","wikidata":"https://www.wikidata.org/wiki/Q33456","display_name":"Exponentiation","level":2,"score":0.8012999892234802},{"id":"https://openalex.org/C159718280","wikidata":"https://www.wikidata.org/wiki/Q5526353","display_name":"Gas meter prover","level":3,"score":0.7900000214576721},{"id":"https://openalex.org/C152763109","wikidata":"https://www.wikidata.org/wiki/Q1228841","display_name":"Modular exponentiation","level":4,"score":0.7552000284194946},{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.6973000168800354},{"id":"https://openalex.org/C94284585","wikidata":"https://www.wikidata.org/wiki/Q228184","display_name":"Random oracle","level":4,"score":0.661899983882904},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5569000244140625},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.5307999849319458},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.483599990606308},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.4372999966144562},{"id":"https://openalex.org/C206880738","wikidata":"https://www.wikidata.org/wiki/Q431667","display_name":"Automated theorem proving","level":2,"score":0.4138999879360199},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.40950000286102295},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.40149998664855957},{"id":"https://openalex.org/C2777027219","wikidata":"https://www.wikidata.org/wiki/Q1284190","display_name":"Constant (computer programming)","level":2,"score":0.3882000148296356},{"id":"https://openalex.org/C55166926","wikidata":"https://www.wikidata.org/wiki/Q2892946","display_name":"Oracle","level":2,"score":0.3840000033378601},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.3716999888420105},{"id":"https://openalex.org/C17435882","wikidata":"https://www.wikidata.org/wiki/Q17030435","display_name":"HOL","level":2,"score":0.35659998655319214},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.33820000290870667},{"id":"https://openalex.org/C111335779","wikidata":"https://www.wikidata.org/wiki/Q3454686","display_name":"Reduction (mathematics)","level":2,"score":0.3319999873638153},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.32170000672340393},{"id":"https://openalex.org/C173259116","wikidata":"https://www.wikidata.org/wiki/Q864003","display_name":"Discrete logarithm","level":4,"score":0.31439998745918274},{"id":"https://openalex.org/C203265346","wikidata":"https://www.wikidata.org/wiki/Q11387554","display_name":"Proof assistant","level":3,"score":0.3109999895095825},{"id":"https://openalex.org/C2780388253","wikidata":"https://www.wikidata.org/wiki/Q5421508","display_name":"Exponent","level":2,"score":0.3025999963283539},{"id":"https://openalex.org/C179799912","wikidata":"https://www.wikidata.org/wiki/Q205084","display_name":"Computational complexity theory","level":2,"score":0.29490000009536743},{"id":"https://openalex.org/C94375191","wikidata":"https://www.wikidata.org/wiki/Q11205","display_name":"Arithmetic","level":1,"score":0.27129998803138733},{"id":"https://openalex.org/C12186640","wikidata":"https://www.wikidata.org/wiki/Q6815743","display_name":"Memory model","level":3,"score":0.25529998540878296}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.62056/ahsg893y6","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ahsg893y6","pdf_url":"https://cic.iacr.org/p/3/1/2/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.62056/ahsg893y6","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ahsg893y6","pdf_url":"https://cic.iacr.org/p/3/1/2/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7160313212.pdf","grobid_xml":"https://content.openalex.org/works/W7160313212.grobid-xml"},"referenced_works_count":37,"referenced_works":["https://openalex.org/W1577653766","https://openalex.org/W1589034595","https://openalex.org/W1909324101","https://openalex.org/W1985592521","https://openalex.org/W2052267638","https://openalex.org/W2067809562","https://openalex.org/W2072335624","https://openalex.org/W2080132708","https://openalex.org/W2095708839","https://openalex.org/W2117797270","https://openalex.org/W2129184440","https://openalex.org/W2164988972","https://openalex.org/W2165210192","https://openalex.org/W2171337840","https://openalex.org/W2233233025","https://openalex.org/W2496543269","https://openalex.org/W2533941064","https://openalex.org/W2811448169","https://openalex.org/W2883585522","https://openalex.org/W2883748642","https://openalex.org/W2884510571","https://openalex.org/W2885172320","https://openalex.org/W2898776076","https://openalex.org/W2913435035","https://openalex.org/W2954625838","https://openalex.org/W2982474429","https://openalex.org/W2984726114","https://openalex.org/W2990120385","https://openalex.org/W3147459559","https://openalex.org/W3158989923","https://openalex.org/W3164110928","https://openalex.org/W3209623239","https://openalex.org/W3214715484","https://openalex.org/W4232836212","https://openalex.org/W4409181897","https://openalex.org/W4414869547","https://openalex.org/W4414869624"],"related_works":[],"abstract_inverted_index":{"We":[0],"present":[1],"zkExp":[2,105,272],"(Zero-Knowledge":[3],"Succinct":[4],"Exponentiation":[5],"Proofs),":[6],"the":[7,175,198,274],"first":[8,275],"zero-knowledge":[9,196,290],"proof":[10],"system":[11],"achieving":[12],"asymptotically":[13],"efficient":[14],"bounds":[15,281],"for":[16,121,253,282],"batched":[17],"exponentiation:":[18],"<mml:math":[19,39,59,79,95,131,143,176,221,230,244,256],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\">":[20,40,60,80,96,132,144,177,222,231,245,257],"<mml:mrow>":[21,23,41,61,69,81,97,133,145,150,178,223,232,246,258],"<mml:mover>":[22],"<mml:mi>O</mml:mi>":[24,42,134,146],"</mml:mrow>":[25,35,48,74,76,89,102,140,152,156,186,226,235,250,261],"<mml:mo":[26,29,33,43,46,135,138,147,154,179,184],"stretchy=\"false\">~</mml:mo>":[27],"</mml:mover>":[28],"stretchy=\"false\">(</mml:mo>":[30,44,136,148,180],"<mml:mi>k</mml:mi>":[31,88,249],"<mml:mi>\u2113</mml:mi>":[32,137,151,183],"stretchy=\"false\">)</mml:mo>":[34,47,139,155,185],"</mml:math>":[36,49,77,90,103,141,157,187,227,236,251,262],"prover":[37,218],"time,":[38,51],"<mml:mn>1</mml:mn>":[45,84],"verification":[50,212,242],"and":[52,159,193,294],"constant-size":[53],"(160\u2013256":[54],"B)":[55],"proofs.":[56],"For":[57,215],"statements":[58],"<mml:msub>":[62,70,98],"<mml:mi>y</mml:mi>":[63],"<mml:mi>i</mml:mi>":[64,72,82,100],"</mml:msub>":[65,73,101],"<mml:mo>=</mml:mo>":[66,83],"<mml:msup>":[67],"<mml:mi>g</mml:mi>":[68],"<mml:mi>x</mml:mi>":[71,99],"</mml:msup>":[75],"(":[78],"<mml:mo>,</mml:mo>":[85,87,182],"<mml:mo>\u2026</mml:mo>":[86],")":[91],"with":[92,210,266],"private":[93],"exponents":[94],",":[104,158],"introduces":[106],"four":[107],"innovations":[108],"to":[109,142,229,277],"overcome":[110],"long-standing":[111],"scalability":[112],"barriers:":[113],"(1)":[114],"trace-based":[115],"square-and-multiply":[116],"encoding,":[117],"(2)":[118],"lazy":[119],"sumcheck":[120],"exponentiation":[122,283],"constraints,":[123],"(3)":[124],"hybrid":[125],"FFT":[126],"decomposition":[127],"reducing":[128],"memory":[129,267],"from":[130],"<mml:msqrt>":[149],"</mml:msqrt>":[153],"(4)":[160],"sliding-window":[161],"batching":[162],"enabling":[163,286],"single-proof":[164],"aggregation":[165],"via":[166],"KZG":[167],"commitments.":[168],"The":[169],"protocol":[170,276],"is":[171,220,273],"computationally":[172],"sound":[173],"under":[174],"<mml:mi>q</mml:mi>":[181],"-Generalized":[188],"Diffie\u2013Hellman":[189],"Exponent":[190],"(GDHE)":[191],"assumption":[192],"achieves":[194],"computational":[195],"in":[197,237,289],"random":[199],"oracle":[200],"model.":[201],"Proofs":[202],"remain":[203],"160\u2013256":[204],"B":[205],"regardless":[206],"of":[207],"parameter":[208],"sizes,":[209],"constant":[211],"(3.5":[213],"ms).":[214],"4096-bit":[216],"exponents,":[217],"overhead":[219],"<mml:mn>16.3</mml:mn>":[224],"<mml:mi>\u00d7</mml:mi>":[225,234,260],"(dropping":[228],"<mml:mn>1.35</mml:mn>":[233],"1000-batch":[238],"settings),":[239],"while":[240,285],"Ethereum":[241],"costs":[243],"<mml:mi>~</mml:mi>":[247],"<mml:mn>267</mml:mn>":[248],"gas":[252],"1000":[254],"exponentiations,":[255],"<mml:mn>10</mml:mn>":[259],"cheaper":[263],"than":[264],"ECDSA,":[265],"consumption":[268],"below":[269],"1.1":[270],"MB.":[271],"match":[278],"theoretical":[279],"lower":[280],"proofs":[284],"practical":[287],"deployment":[288],"rollups,":[291],"anonymous":[292],"credentials,":[293],"on-chain":[295],"threshold":[296],"cryptography.":[297]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-06T00:00:00"}
