## Honest Verifier vs Dishonest Verifier in Public Coin Zero-Knowledge Proofs (1995)

### BibTeX

@MISC{Damgård95honestverifier,

author = {Ivan Damgård and Oded Goldreich and Tatsuaki Okamoto and Avi Wigderson},

title = {Honest Verifier vs Dishonest Verifier in Public Coin Zero-Knowledge Proofs},

year = {1995}

}

### Abstract

This paper presents two transformations of public-coin/Arthur-Merlin proof systemswhich are zero-knowledge with respect to the honest verifier into (public-coin/ArthurMerlin) proof systems which are zero-knowledge with respect to any verifier. The first transformation applies only to constant-round proof systems. It builds on Damgard's transformation (see Crypto93), using ordinary hashing functions instead of the interactive hashing protocol (of Naor, Ostrovsky, Venkatesan and Yung -- see Crypto92) which was used by Damgard. Consequently, the protocols resulting from our transformation have much lower round-complexity than those derived by Damgard's transformation. As in Damgard's transformation, our transformation preserves statistical /perfect zero-knowledge and does not rely on any computational assumptions. However, unlike Damgard's transformation, the new transformation is not applicable to argument systems or to proofs of knowledge. The second transformation can be applied to p...

