CryptoDB
Foundations of Data Availability Sampling
Authors: |
|
---|---|
Download: | |
Abstract: | Towards building more scalable blockchains, an approach known as data availability sampling (DAS) has emerged over the past few years. Even large blockchains like Ethereum are planning to eventually deploy DAS to improve their scalability. In a nutshell, DAS allows the participants of a network to ensure the full availability of some data without any one participant downloading it entirely. Despite the significant practical interest that DAS has received, there are currently no formal definitions for this primitive, no security notions, and no security proofs for any candidate constructions. For a cryptographic primitive that may end up being widely deployed in large real-world systems, this is a rather unsatisfactory state of affairs. In this work, we initiate a cryptographic study of data availability sampling. To this end, we define data availability sampling precisely as a clean cryptographic primitive. Then, we show how data availability sampling relates to erasure codes. We do so by defining a new type of commitment schemes which naturally generalizes vector commitments and polynomial commitments. Using our framework, we analyze existing constructions and prove them secure. In addition, we give new constructions which are based on weaker assumptions, computationally more efficient, and do not rely on a trusted setup, at the cost of slightly larger communication complexity. Finally, we evaluate the trade-offs of the different constructions. |
BibTeX
@article{cic-2025-34927, title={Foundations of Data Availability Sampling}, journal={cic}, publisher={International Association for Cryptologic Research}, volume={1, Issue 4}, url={https://cic.iacr.org/p/1/4/34}, doi={10.62056/a09qudhdj}, author={Mathias Hall-Andersen and Mark Simkin and Benedikt Wagner}, year=2025 }