Concurrent zero-knowledge.
Concurrent executions of a zero-knowledge protocol by a single prover (with one or more verifiers) may leak information and may not be zero-knowledge in toto. In this article, we study the problem of maintaining zero-knowledge.We introduce the notion of an (α, β) timing constraint: for any two proce...
| Published in: | Journal of the ACM 51, 6 (2004). |
|---|---|
| Main Author: | |
| Format: | Article |
| Language: | English |
| Subjects: |