3 ms·
The short answer is yes. There are some (slow) ways to fix this: https://people.csail.mit.edu/nickolai/papers/goldwasser-we.pdf https://people.csail.mit.edu/nic
by swordswinger12 9y ago
The short answer is yes. There are some (slow) ways to fix this: https://people.csail.mit.edu/nickolai/papers/goldwasser-we.pdf https://people.csail.mit.edu/nickolai/papers/goldwasser-we.p...
- whatidonteven 9y agoTheir construction relies on two unproven conjectures. In particular the "Extractable Witness Encryption" conjecture is impossible under a reasonable falsifiable assumption: https://pdfs.semanticscholar.org/8587/dba4ff31e8118e9bd5914af303614ce90a44.pdf https://pdfs.semanticscholar.org/8587/dba4ff31e8118e9bd5914a... Under that assumption, general purpose differing-inputs obfuscation cannot exist. The way I understand it, FHE being applicable to anything other than "unwrapping a path through a circuit" seems implausible. Any claims of arbitrary encrypted computation should be viewed with the highest dose of skepticism.