ZEXE (Zero knowledge EXEcution)
ZEXE (pronounced /zeksē/) is a Rust library for decentralized private computation.
WARNING: This is an academic proof-of-concept prototype, and in particular has not received careful code review. This implementation is NOT ready for production use.
This library implements a ledger-based system that enables users to execute offline computations and subsequently produce publicly-verifiable transactions that attest to the correctness of these offline executions. The transactions contain zero-knowledge succinct arguments (zkSNARKs) attesting to the correctness of the offline computations, and provide strong notions of privacy and succinctness.
- Privacy - transactions reveal no information about the offline computation.
- Succinctness - transactions can be validated in time that is independent of the offline computation.
- Application isolation - malicious applications cannot affect the execution of honest applications.
- Application interaction - applications can safely communicate with each other.
Informally, the library provides the ability to create transactions that run arbitrary (Turing-complete) scripts on hidden data stored on the ledger. In more detail, the library implements a cryptographic primitive known as decentralized private computation (DPC) schemes, which are described in detail in the ZEXE paper.
This repository contains several Rust crates that implement the different building blocks of ZEXE. The high-level structure of the repository is as follows.
algebra: Rust crate that provides finite fields and elliptic curves
dpc: Rust crate that implements DPC schemes (the main cryptographic primitive in this repository)
snark: Rust crate that provides succinct zero-knowledge arguments
snark-gadgets: Rust crate that provides various gadgets used to construct constraint systems
In addition, there is a
bench-utils crate which contains infrastructure for benchmarking. This crate includes macros for timing code segments and is used for profiling the building blocks of ZEXE.
The library relies on the
nightly toolchain of the Rust compiler (only for the relatively well-tested
const_fn feature). To install the latest Rust nightly, first install
rustup by following the instructions here, or via your platform's package manager. Once
rustup is installed, install the latest nightly by invoking:
rustup install nightly
After that, use
cargo, the standard Rust build tool, to build the library:
git clone https://github.com/scipr-lab/zexe.git cd zexe/dpc cargo +nightly build --release
This library comes with unit tests for each of the provided crates. Run the tests with:
Lastly, this library comes with benchmarks for the following crates:
To perform the benchmarks, run the following command:
ZEXE is licensed under either of the following licenses, at your discretion.
- Apache License Version 2.0 (LICENSE-APACHE or http://www.apache.org/licenses/LICENSE-2.0)
- MIT license (LICENSE-MIT or http://opensource.org/licenses/MIT)
Unless you explicitly state otherwise, any contribution submitted for inclusion in ZEXE by you shall be dual licensed as above (as defined in the Apache v2 License), without any additional terms or conditions.
This work was supported by: a Google Faculty Award; the National Science Foundation; the UC Berkeley Center for Long-Term Cybersecurity; and donations from the Ethereum Foundation, the Interchain Foundation, and Qtum.
Some parts of the finite field arithmetic, elliptic curve arithmetic, FFTs, and multi-threading infrastructure in the
algebra crate have been adapted from code in the
bellman crates, developed by Sean Bowe and others from Zcash.