constraint-system

1 article
sort: new top best
clear filter
0 8/10
vulnerability

Verichains discovered a critical vulnerability in Polygon zkEVM's zkProver component stemming from field incompatibility between STARK (operating on F_p^3) and SNARK (operating on F_q) in the recursive proof conversion process. The flaw allowed attackers to forge arbitrary valid proofs, enabling unauthorized state manipulation and potential loss of funds across L2 and L1, which was patched in December 2023.

Polygon zkEVM Verichains Immunefi eSTARK STARK SNARK pil-stark StarkVerifier Bn128 Ethereum
blog.verichains.io · Verichains · 17 hours ago · details