Cryptography R&D for Bitcoin

Joined December 2023
12 Photos and videos
Pinned Tweet
Bitcoin PIPEs v2: Covenants and ZKPs on the Bitcoin L1 via Witness Encryption allocinit.xyz/uploads/pipesv…
8
27
124
12,711
Learn more about the PIPEs v2/AADP WE commutator attack and patch in a blog post: allocinit.xyz/posts/commutat…

Open challenges for AADP WE are happening! A commutator-based attack breaking both AADP and the original ADP for sparse circuits was submitted. We are aware of the mitigation that fixes this class of attacks in characteristic 2 and are working on extending it to characteristic p. Congratulations to the submitter, we will be in touch!
1
84
Open challenges for AADP WE are happening! A commutator-based attack breaking both AADP and the original ADP for sparse circuits was submitted. We are aware of the mitigation that fixes this class of attacks in characteristic 2 and are working on extending it to characteristic p. Congratulations to the submitter, we will be in touch!
Today we announce: AADP WE Open Challenges. Recently we proposed a new witness encryption scheme based on Arithmetic Affine Determinant Programs which we intend to use in Bitcoin PIPEs v2, unlocking a wide range of applications and eliminating the need for trusted parties. Now we invite anyone to break small instances of our new scheme or to discover structural properties that were unknown before. Details here: allocinit.notion.site/challe… Special thanks to @zeroknowledgefm @zkproof @IACReurocrypt for organizing the conference week in Rome that we're announcing these at in person.
5
918
In case you missed it in Vegas, here is our full preso including slides from @TheBitcoinConf. We discuss what PIPEs are all about and how witness encryption can be used to enforce arbitrary logic on Bitcoin. This means: trustless vaults, covenants, and non-interactive ZKPs on Bitcoin without protocol changes or trusted parties. Also, we discuss getting rid of multi-sigs using PIPEs. youtube.com/watch?v=jPTa3gZL…
1
1
13
1,384
Today we announce: AADP WE Open Challenges. Recently we proposed a new witness encryption scheme based on Arithmetic Affine Determinant Programs which we intend to use in Bitcoin PIPEs v2, unlocking a wide range of applications and eliminating the need for trusted parties. Now we invite anyone to break small instances of our new scheme or to discover structural properties that were unknown before. Details here: allocinit.notion.site/challe… Special thanks to @zeroknowledgefm @zkproof @IACReurocrypt for organizing the conference week in Rome that we're announcing these at in person.
3
24
77
8,657
If you’re in Rome for @IACReurocrypt, come learn about Bitcoin PIPEs v2 and AADP Witness Encryption this Saturday, May 9! Head of Cryptography Research, Handan Kilinc Alper (@HandanKAlper) from our team will present PIPEs v2 at CTB ’26 this Saturday. 4:50 pm | CTB 2026 (ctb-workshop.org) → Sapienza University of Rome | Aula II (Classroom II). Enter via Scienze Statistiche Entrance of building CU002. University map: eurocrypt.iacr.org/2026/file… Come learn and ask questions. See you there!
4
21
1,125
We made it to Rome! Find us at zkSummit14, ZKProof, and Eurocrypt from May 7-14 sharing our latest research on Witness Encryption and Bitcoin PIPEs. Come say hi if you see us around; @nevernotrunout, @HandanKAlper, @michelabdalla, @levs57, @towa_patrick, @mschofnegger, and others are here for the conferences and our cryptography research team offsite. And if you see Michel (@michelabdalla) please wish him a big congrats — he just received the RSAC Test of Time Award. We'll definitely be celebrating this!
1
41
1,267
We're incredibly thrilled to welcome Clara Shikhelman (@ClaraShik) to our team at [[alloc] init]! Clara joins as Head of Protocol Research, where she'll lead our efforts to design novel Bitcoin protocols using PIPEs. Driven by a shared conviction that cryptography and PIPEs-based protocols will expand Bitcoin's capabilities, she is excited to introduce new possibilities for builders and deliver real value for users. Previously Head of Research at @ChaincodeLabs, she led research across Bitcoin and the Lightning Network — including foundational work on jamming attack mitigations, quantum computing risks to Bitcoin, and bridging academic research with open source development. Her background includes a PhD in Mathematics from Tel Aviv University, underpinning a research approach that combines rigorous theory with practical systems design. Her research and publications can be found at: clarashk.github.io Her work has been featured in @BitcoinMagazine, @PresidioBitcoin, @CoinDesk, and elsewhere. Welcome, Clara — we're excited to build with you.
7
8
78
7,710
What might practical Witness Encryption actually look like? Come find out this Thursday at zkSummit14 in Rome. At 11:00 AM, @levs57 from [[alloc] init] will present our latest research covering the first plausibly implementable WE scheme in his talk: “Towards Practical Witness Encryption from Arithmetic Affine Determinant Programs”
zkSummit14 is happening in Rome on May 7th! Once again, we bring together the researchers, cryptographers, and builders in ZK for a day to catchup on the most cutting edge ideas in our space. We are about to sell out, so apply & get your ticket asap! zksummit.com/
4
24
3,012
Alloc Init retweeted
Never underestimate moon math.
4
5
40
7,133
Today at @TheBitcoinConf | 4:00 pm 👉 Open Source Stage Bitcoin must evolve, but governance paralysis persists. That’s why we’re building Bitcoin PIPEs: → Covenants, ZKPs & privacy on L1 → Cryptographic emulation of missing opcodes → No soft forks. No multisigs. 2026.b.tc/agenda/pipes Come learn and ask questions!
3
1
13
565