Paper 2025/1793

A note on the soundness of an optimized $\mathsf{gemini}$ variant

Ariel Gabizon, Aztec Labs
Nishat Koti, Aztec Labs
Abstract

We give a formal analysis of the optimized variant of the $\mathsf{gemini}$ polynomial commitment scheme [BCHO22] used by the $\href{https://github.com/AztecProtocol/aztec-packages}{\text{Aztec Network}}$. Our work is motivated by an attack on a previous implementation [GL25].

Note: Completeness dfn needs a0=0

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Preprint.
Keywords
polynomial commitment schememultilinear polynomial commitment scheme
Contact author(s)
ariel @ aztec-labs com
nishat @ aztec-labs com
History
2026-01-29: revised
2025-10-01: received
See all versions
Short URL
https://ia.cr/2025/1793
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/1793,
      author = {Ariel Gabizon and Nishat Koti},
      title = {A note on the soundness of an optimized $\mathsf{gemini}$ variant},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/1793},
      year = {2025},
      url = {https://eprint.iacr.org/2025/1793}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.