Paper 2024/1871

Field-Agnostic SNARKs from Expand-Accumulate Codes

Alexander R. Block, University of Illinois at Chicago
Zhiyong Fang, Texas A&M University
Jonathan Katz, University of Maryland, College Park, Google (United States)
Justin Thaler, Georgetown University, a16z crypto research
Hendrik Waldner, CISPA Helmholtz Center for Information Security
Yupeng Zhang, University of Illinois Urbana-Champaign
Abstract

Efficient realizations of succinct non-interactive arguments of knowledge (SNARKs) have gained popularity due to their practical applications in various domains. Among existing schemes, those based on error-correcting codes are of particular interest because of their good concrete efficiency, transparent setup, and plausible post-quantum security. However, many existing code-based SNARKs suffer from the disadvantage that they only work over specific finite fields. In this work, we construct a code-based SNARK that does not rely on any specific underlying field; i.e., it is field-agnostic. Our construction follows the framework of Brakedown (CRYPTO '23) and builds a polynomial commitment scheme (and hence a SNARK) based on recently introduced expand-accumulate codes. Our work generalizes these codes to arbitrary finite fields; our main technical contribution is showing that, with high probability, these codes have constant rate and constant relative distance (crucial properties for building efficient SNARKs), solving an open problem from prior work. As a result of our work we obtain a SNARK where, for a statement of size $M$ , the prover time is $O(M \log M )$ and the proof size is $O(\sqrt{M} )$. Under reasonable conjectures, we obtain proofs thatt are $1.9\text{-}2.8\times$ smaller than the original Brakedown result (which is also field agnostic), while only introducing $20\%$ overhead in the prover time. Our work suggests that there is a rich tradeoff space in SNARK design offered by different codes, and indicates that a detailed study of such tradeoffs is warranted.

Note: Corresponding CRYPTO 2024 artifact can be found at https://artifacts.iacr.org/crypto/2024/a10/. January 24, 2026 Update: changes made to introduction presentation of results, added code for generating/testing expander parameters, fixed the proof and statement of Lemma 3.7, new proof added in Section 4.3, and editorial fixes. March 1, 2026 Update: minor revisions to abstract and Section 6 overview of parameters.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
A major revision of an IACR publication in CRYPTO 2024
DOI
10.1007/978-3-031-68403-6_9
Keywords
Field-agnosticSNARKsEA CodesPCSConcretely Efficient
Contact author(s)
alexander r block @ gmail com
zhiyong fang 1997 @ gmail com
jkatz2 @ gmail com
justin r thaler @ gmail com
hendrik waldner @ cispa de
zhangyp @ illinois edu
History
2026-03-02: last of 4 revisions
2024-11-15: received
See all versions
Short URL
https://ia.cr/2024/1871
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2024/1871,
      author = {Alexander R. Block and Zhiyong Fang and Jonathan Katz and Justin Thaler and Hendrik Waldner and Yupeng Zhang},
      title = {Field-Agnostic {SNARKs} from Expand-Accumulate Codes},
      howpublished = {Cryptology {ePrint} Archive, Paper 2024/1871},
      year = {2024},
      doi = {10.1007/978-3-031-68403-6_9},
      url = {https://eprint.iacr.org/2024/1871}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.