Zac
@zac-aztec
I think they are a great and necessary direction. Plonkish crypto with FRI is already quantum-proof if done correctly. Constant proof sizes with post-quantum crypto is an extremely hard problem, it might even be impossible. Hopefully we can improve on the state of the art soon.
1 reply
1 recast
4 reactions
bekah!
@bekah
hey sorry what do you mean plonkish crypto with FRI? Whatβs the difference between normal FRI and plonkish FRI? custom gates? ty
1 reply
0 recast
0 reaction
cqb
@cqb
I think zac is talking about fflonk here. My understanding is it's plonk but ripping out KZG and replacing it with FRI for polynomial commitments
1 reply
0 recast
1 reaction
pgpg
@pgpg.eth
This is what zkEVM does for the snarks it delivers to L1. They also have a pretty low validation cost (183k gas iirc)
0 reply
0 recast
0 reaction