Oded Wins the Knuth Prize
rjlipton.wordpress.com
rjlipton.wordpress.com
> Very few of these checks were actually cashed, even the largest ones. More often they have been framed and kept as "bragging rights".[4][5]
Cashing a check only removes it from your possession if you hand it in to do so. Banks these days need only a physical scan of a check, e.g. via mobile phone deposit. Why not do both? There's nothing wrong with taking payment for your efforts.
But I think this is a minor issue, and don't want to take away from the bigger point, which is the award that he very much deserves.
It would be hypocrisy if he started giving out his own award.
ZCash relies on a different kind of "proof" system: SNARKs.
There's many differences between the two:
a) deIPs assume a computationally unbounded adversary, whereas SNARKs assume a polytime adversary.
b) deIP constructions currently suffice only for a limited class of languages, whereas SNARKs can prove any NP statement.
c) SNARKs have zero knowledge variants, whereas it is not clear how to extend many deIP constructions to be zero knowledge without changing the model (ala https://eprint.iacr.org/2017/305).
d) Most deIPs are interactive proof systems, whereas SNARKs are non-interactive.
Some pre-processing SNARK constructions (particularly ones used by some ZCash scientists) are based on multi-round interactive proof systems which reduce to one round (depending on how you count) when you relax some requirements. Such relaxations include weakening the adversary from being computationally unbounded to polynomial time bounded, forcing the prover and verifier to use a specific set of functions, or restricting what kinds of statements can be proven. Oded's work on efficient interactive proofs contributed to this effort. It is partially this efficiency that helps SNARKs actually be "succinct" and quick to verify.
You should check out some of the citations to Oded's work in https://eprint.iacr.org/2012/718.pdf (which is co-authored by Alessandro Chiesa of ZCash) and see for yourself.
There are no constructions of SNARKs from deIPs, nor vice versa. In particular, one cannot construct laconic IPs at all for NP like languages.
P.S.: I'm Alessandro's student ;-)
I had a little help from context ;)
I would imagine his pick among the various industry research labs, if he wanted them.
> He wouldn't fit the typical tech security job.
Nor would he be a good fit as a line cook or as a surgeon...
He could get a job pretty much anywhere he wanted to, doing whatever he wanted.
I believe that sound practice of Cryptography has to be based on firm theoretical foundations. Still, this necessary condition is not sufficient, and expertise in applied (or practical) aspects of cryptography requires more than understanding of the theoretical foundations of Cryptography. For example, although I consider myself an expert on the theoretical foundations of Cryptography, I have very little knowledge of the applied (or practical) aspects of cryptography. In particular, please do not ask me to evaluate the security of any specific construct.
About Consulting
My above statement of limited knowledge of the applied (or practical) aspects of cryptography means that I'm not the right person to ask for consulting regarding the latter aspect. On top of this, I am not interested at all in consulting to or being involved in any commercial enterprise. My main reason is my unwillingness to make any commitment to spend time on anything other than my research and personal interests. Unfortunately, for lack of time, I properly pursue only a tiny part of my research and personal interests, and I have no intentions of making this part even smaller."