In the age of the Internet, it’s getting harder and harder to keep secrets.
When you type in your password, there’s no telling who might be watching it go by. However, new research at Cornell may offer a pathway to more secure communications.
The answer is to not send sensitive information at all. Rafael Pass, associate professor of computer science, has developed a new protocol, or set of rules, to create what computer scientists call a “zero knowledge proof.”
“I think zero knowledge proofs are one of the most amazing notions in computer science,” Pass said. “What we have done is to combine it with another notion — that it’s easier to prove that a computation can be done correctly than it is to actually compute it.”
The result is a way to prove that you know something without saying out loud what it is you know. Instead of insecurely typing the password for your bank account, you just prove to the bank that you know the password. You could pass an exam by proving that you know the answer, without actually writing the answer down so the person sitting next to you can’t copy it.
Applications include password authentication, cryptography, auctions, financial transactions and online voting. “At this point it’s purely theoretical,” Pass cautioned, “but it is teaching us a lot more about how zero knowledge works. That’s what makes me excited.” Pass and colleagues will describe their work at the 54th Annual IEEE Symposium on Foundations of Computer Science, October 27 to 29 in Berkeley, CA.
In its simplest form, such a proof consists of answering questions that depend on having the secret knowledge. To prove you have been in my house, I might ask you what color my cat is. The idea has been around since 1985, and there are already many ways to do it. Early versions required only a few messages being passed back and forth, but were insecure if an attacker participated in many proofs at the same time, as can easily be done on the Internet. An attacker could pick up a little bit of information from each exchange, piecing together the whole secret. Some newer methods will remain secure over many simultaneous exchanges, but instead require many messages being passed back and forth. The new protocol gets the job done with as few as 10 exchanges, Pass said, while remaining secure over many simultaneous exchanges. The researchers supply a rigorous mathematical proof that the protocol is a true zero-knowledge system, and that it works with just a small number of exchanges.
The Latest on: Zero knowledge proof
- Slack CEO Stewart Butterfield discusses Microsoft, the booming Nordics, and what's next for his $5 billion company on December 10, 2017 at 10:08 pm
We found that if we don't get to 100% of people on a team, it just goes to zero. It doesn't have to be the whole company ... the past few years on the basis of the bottom-up demand is proof that the world wants this. There's all kinds of ways we can ... […]
- Can China Contain Bitcoin? on December 10, 2017 at 9:25 pm
The technology provides a tamper-proof, intermediary-free ledger for payments and ... If you need a technology community, you go to the U.S.” Cryptographers have researched zero-knowledge proofs for two decades, but the technique is only just now poised ... […]
- Six Sigma in the datacenter drives a zero-defects culture on December 7, 2017 at 1:59 am
By applying Six Sigma methodologies to its ITIL Problem Management practices, Microsoft sought to create a zero defects culture ... Building on the thorough platform knowledge within the problem management discipline, a virtual team of subject matter ... […]
- How parents can zero in on right time, institute for clearing JEE on December 6, 2017 at 8:26 am
Along with the knowledge of subjects, JEE also tests the analytical skills ... should be taken into consideration while choosing a coaching institute. Pattern Proof Teaching Methodology The Testing pattern of IIT-JEE also keeps on changing but the key ... […]
- Israeli serial startup stars of blockchain tech return with QEDit, a zero-knowledge proof diligence tool on December 3, 2017 at 11:00 pm
Leveraging some “mind boggling math” introduced as an update onto the Ethereum blockchain only a few months ago, QEDit is launching its product on our Battlefield stage at TechCrunch Disrupt Berlin. The company, which takes its name from the Latin ... […]
- Adopt zero tolerance for building bylaws violations on December 3, 2017 at 1:00 pm
Firstly, the MC authorities should adopt zero tolerance policy for building bylaws violations ... The Fire Department lacks modern technology and equipment. It has no technical knowledge to tackle such inflammable building material and carry out fire ... […]
- ING Releases Zero-Knowledge Range Proof For More Efficient Blockchain Applications on November 20, 2017 at 6:25 am
ING Bank has released its Zero-Knowledge Range Proof (ZKRP) solution at the inaugural Enterprise Ethereum Alliance Event in Amsterdam. A zero-knowledge proof (ZKP) is a cryptographic method that allows a party (the prover) to prove to another party (the ... […]
- Puzzles that teach the fundamentals of crypto's essential, elusive zero-knowledge proofs on July 18, 2017 at 7:16 am
Zero-knowledge proofs are one of the most important concepts in cryptography: they're a way to "validate a computation on private data by allowing a prover to generate a cryptographic proof that asserts to the correctness of the computed output" -- in ... […]
via Google News and Bing News