snark

1 article
Sort: New Top Best
clear filter
0 8/10
vulnerability

Verichains discovered a critical proof forgery vulnerability in Polygon zkEVM's zkProver component stemming from field incompatibilities between STARK (F_p^3) and SNARK (F_q) operations, combined with improper constraints in Merkle root computation and arithmetic gates, allowing generation of counterfeit proofs that could manipulate network state. The vulnerability was patched in December 2023 through constraint additions and operational segregation in the pil-stark library.

Polygon zkEVM Verichains Troy Immunefi Ethereum eSTARK SNARK STARK BN128 pil-stark Fork ID 4 Fork ID 5 Fork ID 8
blog.verichains.io · Verichains · 4 hours ago · details