Khovratovich et al. revealed security vulnerabilities of the Fiat-Shamir transformation in practical applications in their paper on , specifically targeting interactive succinct arguments based on the GKR protocol, demonstrating how to generate accepting proofs for false statements. Khovratovich等人在论文中揭示了Fiat-Shamir变换在实际应用中的安全漏洞,特别是针对基于GKR协议的交互式简洁论证,展示了如何为错误陈述生成接受证明。
Succinct Labs has released a security advisory for the SP1 STARK verifier, noting that missing verifier checks and Fiat-Shamir observation issues existed in versions prior to v4.0.0, which have been fixed in v4.0.0. Succinct Labs发布了关于SP1 STARK验证器的安全公告,指出在v4.0.0之前版本中存在验证器检查缺失和Fiat-Shamir观察问题,已通过v4.0.0修复。