๐ Bitcoin could get Zcash style shielded transactions with zero soft fork and no company running the pool, says researcher Misha Komarov, who is building it right now.
https://t.co/K1AmeOpMNF
๐ Shielded Bitcoin is coming, and it needs no soft fork.
Misha Komarov (@nemothenoone), founder of @allocinitxyz and co-founder of @nil_foundation, tells @laurashin how Bitcoin PIPEs uses witness encryption to bring Zcash-style privacy to Bitcoin without touching its protocol.
Subscribe to Unchained Premium to watch!
https://t.co/ibDs0dTIiy
Hot! ๐ฅ Tonight at BitDevs, @ClaraShik will present the amazing work AllocInit has just published (today!) about private bitcoin transfers without consensus changes.
RSVP on meetup or luma:
https://t.co/CW68J54RLr
https://t.co/brA0C0JIZI
PIPEs, Witness Encryption & the Future of Privacy on Bitcoin | with Misha Komarov and Clara Shikhelman
๐ YouTube: https://t.co/ALJ7JxnKVO
Today, @allocinitxyz co-founder @nemothenoone and Head of Protocol Research @ClaraShik join me to unpack PIPEs โ a framework that could potentially make binary covenants possible on Bitcoin without the need for a soft fork, enabling truly trustless bridges amongst other expressive functionality.
Leveraging advancements in Witness Encryption โ one of the most cutting-edge areas of advanced theoretical cryptography โ PIPEs enables the execution of Bitcoin signatures by proving correct computation (e.g. of account balances on layer 2s and metaprotocols).
Although the underlying cryptographic assumptions remain experimental and unhardened, Komarov and Shikhelman believe PIPEs could deliver the functionality of covenant-enabling upgrades like OP_CAT without the need for protocol-level changesโmaking PIPEs one of the most significant potential developments for Bitcoin since the advent of BitVM.
The team also announced their first proposed use case this morning: a privacy protocol titled "Shielded Bitcoin."
In this episode, we unpack the theory and the practice of how this technology is evolving โ and what the new road ahead looks like for PIPEs, Shielded Bitcoin and beyond.
This episode of Bitcoin Rails is brought to you by:
LayerTwo Labs @LayerTwoLabs โ developing research, software, and technologies for scaling Bitcoin via the integration of Drivechains (BIP 300/301)
Hashi on @SuiNetwork โ a primitive for executing Bitcoin DeFi transactions, without having to trust a federated bridge or other centralized entity
BitBox @BitBoxSwiss โ an open-source Bitcoin-only hardware wallet, with smooth UX and no compromises on security. Check out Bitbox [dot] swiss and use code BITCOINRAILS to get a discount
TIMESTAMPS:
๐๏ธ 01:42 Tying PIPEs to the mission at [[alloc] init]
๐ 08:31 Defining witness encryption and conditional decryption
๐ ๏ธ 23:59 Shifting from functional encryption (PIPEs v1) to witness encryption
๐ 26:17 Outlining pre-covenants vs. post-covenants on Bitcoin
๐๏ธ 39:37 Why PIPEs v2 is far from the end of the road
๐ 56:57 Building meta-protocols and avoiding external sequencer risks
๐ 1:05:00 Implementing optional compliant privacy via viewing keys
โก 1:15:33 Comparing PIPEs to BitVM and rendering BIPs obsolete
๐ฒ 1:23:07 Evaluating the min-rank hardness assumption
Latest piece for @BitcoinMagazine on @allocinitxyz's new Shielded Bitcoin proposal. This in combination with their work on PIPEs could lead to a very big privacy win for Bitcoin. Details on the protocol here: https://t.co/J3mqtAlri4
Last week at Swiss Crypto Day, @towa_patrick presented the latest AADP WE improvement for PIPEs v2 featuring the reduction of a ciphertext size to ~8TB for 100 bits of security.
Slides: https://t.co/uPzd27ryBr
Watch @michelabdalla talking about Bitcoin PIPEs v2/AADP WE, its ciphertext size reductions, attacks and defenses as preliminary open challenges results at a Bitcoin Cryptography Workshop organized by @SanjamGarg and @ssrivatsan97 at SBC26!
https://t.co/lVSzPmdYzN
Open challenges for AADP WE are happening!
A commutator-based attack breaking both AADP and the original ADP for sparse circuits was submitted. We are aware of the mitigation that fixes this class of attacks in characteristic 2 and are working on extending it to characteristic p.
Congratulations to the submitter, we will be in touch!
Open challenges for AADP WE are happening!
A commutator-based attack breaking both AADP and the original ADP for sparse circuits was submitted. We are aware of the mitigation that fixes this class of attacks in characteristic 2 and are working on extending it to characteristic p.
Congratulations to the submitter, we will be in touch!
Today we announce: AADP WE Open Challenges.
Recently we proposed a new witness encryption scheme based on Arithmetic Affine Determinant Programs which we intend to use in Bitcoin PIPEs v2, unlocking a wide range of applications and eliminating the need for trusted parties.
Now we invite anyone to break small instances of our new scheme or to discover structural properties that were unknown before.
Details here:
https://t.co/IfK5x3G3cb
Special thanks to @zeroknowledgefm@zkproof@IACReurocrypt for organizing the conference week in Rome that we're announcing these at in person.
In case you missed it in Vegas, here is our full preso including slides from @TheBitcoinConf.
We discuss what PIPEs are all about and how witness encryption can be used to enforce arbitrary logic on Bitcoin.
This means: trustless vaults, covenants, and non-interactive ZKPs on Bitcoin without protocol changes or trusted parties.
Also, we discuss getting rid of multi-sigs using PIPEs.
https://t.co/WhCLDo992a
Today we announce: AADP WE Open Challenges.
Recently we proposed a new witness encryption scheme based on Arithmetic Affine Determinant Programs which we intend to use in Bitcoin PIPEs v2, unlocking a wide range of applications and eliminating the need for trusted parties.
Now we invite anyone to break small instances of our new scheme or to discover structural properties that were unknown before.
Details here:
https://t.co/IfK5x3G3cb
Special thanks to @zeroknowledgefm@zkproof@IACReurocrypt for organizing the conference week in Rome that we're announcing these at in person.
If youโre in Rome for @IACReurocrypt, come learn about Bitcoin PIPEs v2 and AADP Witness Encryption this Saturday, May 9!
Head of Cryptography Research, Handan Kilinc Alper (@HandanKAlper) from our team will present PIPEs v2 at CTB โ26 this Saturday.
4:50 pm | CTB 2026 (https://t.co/DekAHa2QhJ)
โ Sapienza University of Rome | Aula II (Classroom II). Enter via Scienze Statistiche Entrance of building CU002. University map: https://t.co/Iv6ON7BqgE
Come learn and ask questions. See you there!
We made it to Rome!
Find us at zkSummit14, ZKProof, and Eurocrypt from May 7-14 sharing our latest research on Witness Encryption and Bitcoin PIPEs.
Come say hi if you see us around; @nevernotrunout, @HandanKAlper, @michelabdalla, @levs57, @towa_patrick, @mschofnegger, and others are here for the conferences and our cryptography research team offsite.
And if you see Michel (@michelabdalla) please wish him a big congrats โ he just received the RSAC Test of Time Award. We'll definitely be celebrating this!