Skip to content

Home > Resources > papers > FS24-Longfellow

Anonymous Credentials from ECDSA (Frigo & shelat 2024)

Summary

Presents Longfellow, a ZK proof system that builds anonymous credential schemes directly over ECDSA-signed documents (JWTs, ISO mDOC). Combines sumcheck, the Ligero argument system, efficient Reed-Solomon encoding, and specialised ECDSA circuits. ECDSA proofs are generated in 60 ms; fully standardised ISO MDOC proofs in 1.2 s on mobile. No pre-computation or trusted setup required; the construction is transparent and post-quantum safe.

Used by