# NIZKs with an Untrusted CRS: Security in the Face of Parameter Subversion

Abstract : Motivated by the subversion of trusted'' public parameters in mass-surveillance activities, this paper studies the security of NIZKs in the presence of a maliciously chosen common reference string. We provide definitions for subversion soundness, subversion witness indistinguishability and subversion zero knowledge. We then provide both negative and positive results, showing that certain combinations of goals are unachievable but giving protocols to achieve other combinations.
Mihir Bellare, Georg Fuchsbauer, Alessandra Scafuro. NIZKs with an Untrusted CRS: Security in the Face of Parameter Subversion. Advances in Cryptology - ASIACRYPT 2016 - 22nd International Conference on the Theory and Application of Cryptology and Information Security, Dec 2016, Hanoi, Vietnam. ⟨hal-01384384⟩

