Tags: zkp fiat-shamir zero-knowledge-proof
Rating:
Bad Fiat-Shamir on the quicksilver S matrix allows for proof forgery on arbitrary statements.Full writeup: https://ur4ndom.dev/posts/2024-03-18-breakfaest/
I don't remember