I've recently become interested in simulation sound extractable zero-knowledge proofs for use in UC-secure protocols. I've also become interested in the recent instantiation of PCIPs called zkSTARKs. Are zkSTARKs simulation sound extractable as they are described, or would they have to be transformed first - sort of like the SNARK-lifting transformation described here - before being able to be securely used in a UC context?
Asked
Active
Viewed 159 times