alt text

9月2日晚9点,Ultrain超脑链首席密码学家Husen王虎森于Ultrain海内外社区展开了一场有关「零知识证明与隐私保护 」的线上AMA(Ask Me Anything)活动,以便大家能更清晰地了解Ultrain零知识证明和隐私保护的众多细节。

以下为本次AMA活动实录整理(中英文对照)

供社区成员参考了解👇

1

Q:零知识证明和现存商业痛点的契合点有哪些?

A:零知识证明可以与诸多场景结合,比如区块链上,企业或者个人会乐意把数据通过存证的方式传上来,而不是直接提交明文,就是担心公链作为公开访问的数据库会带来巨大的数据泄露风险。这里泄露的可能是,公司的业务量、业务对象、现金流,个人的消费对象、消费金额、位置等一切日常行为。

比如沃尔玛假如采用公链做结算或者简单的溯源,虽然可以大量节省自建联盟链的成本、提高公信力,但是没有隐私保护的话,所有沃尔玛的日常商品的流量将完全暴露给竞争对手,比如其中葡萄酒的登记数量就基本等效于进货量,竞争对手可以非常简单地识别出哪种葡萄酒销量好。假如做链上结算的话,交易金额和利润率也可以推算出来,进而可以推出详细的跟上下供应链的现金流。这些都是简单的脱敏技术解决不了的。

零知识证明可以极大缓解上述问题,让跟区块链的结合不再有上述担忧,它不仅可以保护交易对象,还能保护交易的现金流。

Q: The integration betweenzero-knowledge-proof and existing commercial pain points?

A: zero-knowledge-proof can be applied with manyscenarios.

In public chain, companies or individuals arewilling to store data digest as proof-of-existence, rather than submitting theplaintext directly, for the reason that the public chain as a publiclyaccessible database will bring huge Risk of data leakage, which may be thecompany's products, volume, cash flow, location, or personal information suchas purchase records, time and amount, preference.

For example, if WalMart uses public chain forsettlement or simple provenance, it can save a lot of cost and improvecredibility compared with federated chain such as IBM hyperledger, but withoutprivacy protection, all WalMart's daily comercial activities will be completelyexposed to competitors. Taking wine as an example, the number of registrationson blockchain is basically same with the quantity of purchased ones, andcompetitors can very easily identify which wines are selling well. If thesettlement is also done online, the transaction amount and profit margin can becalculated, and then the detailed cash flow with the upper and lower supplychains. These are all simple data analysis techniques.

The zero-knowledge-proof can greatlyalleviate the above problems. It not only protects the product details, butalso the cash flow of all transactions.

2

Q:我们现在搜索的,购物的,甚至说的话都被APP记录监听,怎么解决有关数据隐私方面的问题?

A:目前国内的互联网,对于没有隐私保护意识的人,基本就相当于裸奔,一切行为都被各大BAT厂商精确监控,甚至小的app也能窃取到各种用户的行为和倾向。这一切都是为了更好了解用户,精准推送广告或者其他变现。

这种现象的原因,一方面是国家对隐私的本身法规的制定和实施不太明确,比如在安卓手机上,有些强势的应用厂商要求用户必须在开启某些权限才能使用,比如通讯录和照片的读写访问。在国内用户的数据窃取实施成本过低,作恶代价也低,导致规范的用户授权访问体系很难建立起来。在苹果系统下,这种情况会好些。

不过随着国内制度与国外接轨,以及国内厂商逐渐走向国外,也有可能会逐渐变得更规范,可能需要更规范的用户信息利用和获取方式。比如,规定只能最小化地获取和保留用户信息,假如需要的话,不是靠窃取,而是通过多个厂商协同计算的方式得到用户画像。

Q: We are now searching, shopping, and eventalking about the APP records, how to solve the data privacy issues?

A: At present, using the Internet these days,those who have no awareness of privacy protection, is basically streaking. Allbehaviors are accurately monitored by major service providers such asGoogle/Facebook/Alibaba/Tencent, and even small apps can steal the behaviorsand tendencies of various users. All of this is to better understand the user,accurately push the advertisments, but also bring about data abuse, tracking,leackage, or even political use and misguidance.

The reason for this phenomenon is that thegoverments is not clear about the privacy regulations and implementation. Forexample, on Android phones, some powerful application vendors require usershave to grant certain permissions such as contacts and photos, read and writeaccess. The cost of data theft and monitor is too low, which makes it difficultto enforce a standardized user authorization access system.

However, in China, as the domestic systembecoming in line with foreign countries, and domestic manufacturers aregradually moving abroad, they may gradually become more standardized, and mayrequire more standardized use and acquisition of user information. For example,it is required that user information can only be obtained and retained in aminimal amount, cannot be shared without permission.

3

Q:超脑的零知识证明系统的优势是什么?是如何实现真正的匿名和保护隐私的?

A: 超脑的零知识证明系统,主要是有四大优势:低成本的套餐机制(以太坊大概45元/笔),可轻松支持任意业务的开发套件,一键完成证明验证,支持存证、ERC20、ERC721等模版。

用户基本只需要清晰定义业务逻辑,不需要了解任何零知识证明的技术细节,即可轻松使用。现在支持用户的个人数据,比如存证信息的证明(比如存证的珠宝、球鞋、医疗数据的各种特征),链上资产的发行和转移(可以用于实现丰富的现金流转移场景,比如拍卖、转账)。

Q: What are the advantages of the Ultrain'szero-knowledge-proof system? How do you achieve true anonymity and privacyprotection?

A: The Ultrain zero-knowledge-proof system hasfour main advantages: low-cost package around serveral thounds usd per year(Ethereum is about 6 usd per transaction), which can easily support anybusiness development kit, one-click proof verification, support for ERC20 ,ERC721 and other templates.

Users basically only need to clearly definethe business logic, and can easily use it without knowing any technical detailof zero-knowledge-proof. It now supports the user's personal data, such asproof of product information (such as the jewels, shoes, medical records,etc.), the anonymous transfer of assets (can be used to achieve cash flowtransfer scenarios, such as Auction).

4

Q:超脑的zksnark有例子吗,proofsize能做到多小?

A: 我们在github展示了两个场景,分别是珠宝和现金流。
https://github.com/wanghs09/zkp9ff2b8d9/wiki
可以到我们的相关网站看和提问。
proofsize大概256字节。

Q: Does the Ultrain zksnark have an example,how small can the proof size be?

A: We showed two scenarios on github, namelyjewelry and cash flow.
Https://github.com/wanghs09/zkp9ff2b8d9/wiki
You can go to our related website to see andask questions.
The proof size is about 256 bytes.

若大家有更多关于零知识证明与隐私保护的问题,可添加客服微信号(ultra-in),将疑问提交,由项目团队进行解答,了解更多关于Ultrain的详细信息。