In this work we improve upon the state of the art for practical zero-knowledge for set membership, a building block at the core of several privacy-aware applications, such as anonymous payments, credentials and whitelists. This primitive allows a user to show knowledge of an element in a large set without leaking the specific element. One of the obstacles to its deployment is efficiency. Concretely efficient solutions exist, e.g., those deployed in Zcash Sapling, but they often work at the pr...| IACR Cryptology ePrint Archive
Seraphis is a next-generation transaction protocol abstraction, and a candidate for Monero's next tx protocol.| getmonero.org, The Monero Project