EIPsInsight

Loading Experience

Preparing your insights...

Loading0%
PQTS2026-04-15_006

PQ Transaction Signatures #006

2026-04-15 4 decisions 409 transcript lines

Transcript

Call summary

Targets
  • Two weeks - Next PQTS breakout with Matteo's ephemeral key updates - 00:50:18
Decisions
  • Lesson learned: NTT/LEGO abstraction approach doesn't work for PQ signatures - 00:14:36
  • Solidity contracts for PQ verification must be formally verified, not precompiles - 00:43:06
Highlights
  • Strategy Discussion:
    • ·Proposed dual approach: ephemeral keys for low-value, Dilithium for high-value transactions - 00:32:23
    • ·Ephemeral key security concerns: censorship attacks and long mempool times - 00:36:10
    • ·Formal verification critical for Solidity-based PQ signature contracts - 00:42:48
  • Hardware Constraints:
    • ·NIST SLHDSA-24: ~6 minutes signing time on Ledger hardware wallet - 00:27:18
    • ·New NIST parameters still impractical: millions of hashes needed per signature - 00:38:25
    • ·Custom Keccak-based parameters achieve 100-1000x faster signing than NIST proposal - 00:39:14
  • Protocol Developments:
    • ·Frame transaction/native AA no longer headliner for Hegotá fork - 00:04:01
    • ·NIST released limited-use SLHDSA parameters: 2^24 signatures, ~3-4KB size - 00:04:36
  • Implementation Updates:
    • ·Daisugi testnet live: Erigon node with Falcon/Dilithium/ephemeral ECDSA support - 00:06:52
    • ·NTT/LEGO approach requires scheme-specific precompiles; abstraction doesn't work well - 00:14:21
    • ·Direct precompiles much lower gas than NTT, especially Dilithium (~100k difference) - 00:17:41
Action Items
  • Nico C - Publish EVM-friendly SLHDSA parameter research with Keccak instantiation - 00:40:02
  • Ethereum Foundation representatives - Send NIST feedback at tomorrow's workshop on hash function crypto-agility - 00:41:23
  • Simon ZKNOX (future call) - Present full Dilithium ledger integration round-trip demo - 00:50:43

Key decisions

  • Frame transaction/native AA no longer headliner for Hegotá fork

    headlinerFrame transaction and native Account Abstraction were removed as headliner features for the Hegotá fork.
  • Daisugi testnet live: Erigon node with Falcon/Dilithium/ephemeral ECDSA support

    DaisugiThe Daisugi testnet was launched featuring Erigon nodes with support for Falcon, Dilithium, and ephemeral ECDSA.
  • Lesson learned: NTT/LEGO abstraction approach doesn't work for PQ signatures

    The NTT/LEGO approach was found to require scheme-specific precompiles, making abstraction ineffective for Post-Quantum signatures.
  • Solidity contracts for PQ verification must be formally verified, not precompiles

    The group decided that Solidity contracts used for PQ verification require formal verification rather than relying on precompiles.