# Helper Functions
Here, we define some functions, we're going to use throughout the code. Each function posseses a docstring, briefly describing what the function does.

In [0]:
import math
import numpy as np


def get_primes(n):
    """ Generates a list of prime number below the given n. """
    sieve = [True] * n
    for i in range(3, int(n**0.5) + 1,2):
        if sieve[i]:
            sieve[i*i::2*i] = [False] * int((n-i * i-1)/(2*i)+1)
    return [2] + [i for i in range(3,n,2) if sieve[i]]


# Generate Prime Numbers
First we need to calculate a $n = p \cdot q$ with both $p$ and $n$ being large prime numbers. This makes $n$ very hard to factorize.

In [2]:
list_of_primes = get_primes(1000)
print(list_of_primes)

p = list_of_primes[np.random.randint(low = int(len(list_of_primes)/2), high = len(list_of_primes))]
q = list_of_primes[np.random.randint(low = int(len(list_of_primes)/2), high = len(list_of_primes))]


n = p * q


print(p)
print(q)
print(n)

[2, 3, 5, 7, 11, 13, 17, 19, 23, 29, 31, 37, 41, 43, 47, 53, 59, 61, 67, 71, 73, 79, 83, 89, 97, 101, 103, 107, 109, 113, 127, 131, 137, 139, 149, 151, 157, 163, 167, 173, 179, 181, 191, 193, 197, 199, 211, 223, 227, 229, 233, 239, 241, 251, 257, 263, 269, 271, 277, 281, 283, 293, 307, 311, 313, 317, 331, 337, 347, 349, 353, 359, 367, 373, 379, 383, 389, 397, 401, 409, 419, 421, 431, 433, 439, 443, 449, 457, 461, 463, 467, 479, 487, 491, 499, 503, 509, 521, 523, 541, 547, 557, 563, 569, 571, 577, 587, 593, 599, 601, 607, 613, 617, 619, 631, 641, 643, 647, 653, 659, 661, 673, 677, 683, 691, 701, 709, 719, 727, 733, 739, 743, 751, 757, 761, 769, 773, 787, 797, 809, 811, 821, 823, 827, 829, 839, 853, 857, 859, 863, 877, 881, 883, 887, 907, 911, 919, 929, 937, 941, 947, 953, 967, 971, 977, 983, 991, 997]
523
557
291311


# Pick Secret s and Calculate v
P chooses a secret $s$ and calculates $v = s^2 mod\;n$. The $v$ will be public. However you can't easily compute $s$ if you only know $v$. Simply trying to find $s$ by brute force is therefore insufficient.

In [3]:
s = np.random.randint(low = 100, high = 1000)
# print(s)

v = (s**2)%n
print(v)

268193


# Commitment
P now chooses a random integer $r$ to the Verifier V. P calculates $x = r^2 mod\;n$ and then sends $x$ to V.

In [4]:
r = np.random.randint(low = 1000, high = 10000)
# print(r)

x = (r**2)%n 
print(x)

2253


# Challenge
V now chooses a random bit $b \in \lbrace 0,1 \rbrace$. 

In [5]:
b = 1 if np.random.binomial(1, 0.5) == 1 else 0

print(b)


0


# Response
If V picked 0, P has to send $r\;mod\;n$. But if V picked 1, P has to send $(r \cdot s) mod \; n$. So V sends $(r \cdot s^b)mod\;n$. 

In [6]:
y = (r * (s**b))%n
print(y)

4451


# Verification
V checks if $y^2 \equiv x \cdot v\;\;(mod\;n)$.

In [7]:
# v = 1

if (y**2)%n == (x*(v**b))%n:
    print("valid")
else:
    print("something went wrong")

valid


# Fake Verification Attempt



In [83]:
valid_attempts = 0
invalid_attempts = 0
for i in range(10000):

    fake_b = 1 if np.random.binomial(1, 0.5) == 1 else 0
    
        
    
    r = np.random.randint(100, 1000)
    x = (r**2)%n
    
    if fake_b == 1:
        x = (1/v) * x

    

    real_b = 1 if np.random.binomial(1, 0.5) == 1 else 0

    y = r%n

    
    if (y**2)%n == (round(x*(v**real_b),0))%n:
        valid_attempts += 1
    else:
        invalid_attempts += 1
        
        
        
print("Valid Attempts: ", valid_attempts)
print("Invalid Attempts: ", invalid_attempts)


Valid Attempts:  5016
Invalid Attempts:  4984
