IACR News item: 17 August 2022
Héctor Masip Ardevol, Jordi Baylina Melé, Daniel Lubarov, José L. Muñoz-Tapia
ePrint Report
SNARKs for some standard cryptographic primitives tend to be plenty
designed with SNARK-unfriendly operations such as XOR. Previous protocols such
as [GW20] worked around this problem by the introduction of lookup arguments.
However, these protocols were only appliable over the same circuit. RapidUp is a
protocol that solves this limitation by unfolding the grand-product polynomial into
two (equivalent) polynomials of the same size. Morevoer, a generalization of previous
protocols is presented by the introduction of selectors.
Additional news items may be found on the IACR news page.