Discussion about this post

User's avatar
Neural Foundry's avatar

The partial rounds strategy is genuinely clever engineering. I've wondered about hte tradeoff between full and partial rounds myself when working with zkVM proof times. The fact that starting with full rounds to build nonlinearity, then coasting on partial rounds with MDS diffusion, actually works out mathematically is kinda wild. Would be intresting to see if theres a sweet spot where even fewer initial full rounds could work with adjusted parameters for specific applications.

Expand full comment

No posts

Ready for more?