{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,20]],"date-time":"2026-06-20T09:51:07Z","timestamp":1781949067776,"version":"3.54.5"},"reference-count":32,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2026,5,11]],"date-time":"2026-05-11T00:00:00Z","timestamp":1778457600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,5,11]],"date-time":"2026-05-11T00:00:00Z","timestamp":1778457600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Cryptogr Eng"],"published-print":{"date-parts":[[2026,6]]},"DOI":"10.1007\/s13389-026-00393-z","type":"journal-article","created":{"date-parts":[[2026,5,11]],"date-time":"2026-05-11T06:26:40Z","timestamp":1778480800000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Computing multi-scalar multiplication on memory-constrained devices"],"prefix":"10.1007","volume":"16","author":[{"given":"L\u00e9o","family":"No\u00ebl","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Thomas","family":"Plantard","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,5,11]]},"reference":[{"key":"393_CR1","unstructured":"Aasaraai, K., Beaver, D., Cesena, E., Maganti, R., Stalder, N., Varela, J.: FPGA acceleration of multi-scalar multiplication: CycloneMSM. Cryptology ePrint Archive, Paper 2022\/1396, (2022). https:\/\/eprint.iacr.org\/2022\/1396"},{"key":"393_CR2","unstructured":"Aranha, D\u00a0F.: and contributors. Relic toolkit"},{"key":"393_CR3","doi-asserted-by":"crossref","unstructured":"Clear, M., Banerjee, A., Tewari, H.: Demystifying the role of zk-snarks in zcash. 2020 IEEE Conference on Application, Information and Network Security (AINS), (2020). https:\/\/ieeexplore.ieee.org\/document\/9315064","DOI":"10.1109\/AINS50155.2020.9315064"},{"issue":"4","key":"393_CR4","doi-asserted-by":"publisher","first-page":"357","DOI":"10.1007\/s00145-004-0229-5","volume":"18","author":"RM Avanzi","year":"2005","unstructured":"Avanzi, R.M.: The complexity of certain multi-exponentiation techniques in cryptography. J. Cryptol. 18(4), 357\u2013373 (2005)","journal-title":"J. Cryptol."},{"key":"393_CR5","doi-asserted-by":"crossref","unstructured":"Paulo, S.L.M.: Barreto, Ben Lynn, and Michael Scott. Constructing elliptic curves with prescribed embedding degrees. In: Cimato, S., Persiano, G., Galdi, C. (eds.) Security in Communication Networks (SCN) 2002. Lecture Notes in Computer Science, vol. 2576, pp. 257\u2013267. Springer, Berlin, Heidelberg (2003)","DOI":"10.1007\/3-540-36413-7_19"},{"key":"393_CR6","doi-asserted-by":"crossref","unstructured":"Sasson, E B., Chiesa, A., Garman, C., Green, M., Miers, I., Tromer, E., Virza, M.: Zerocash: Decentralized Anonymous Payments from Bitcoin. In 2014 IEEE Symposium on Security and Privacy, pages 459\u2013474, May ISSN: 2375-1207 (2014)","DOI":"10.1109\/SP.2014.36"},{"key":"393_CR7","doi-asserted-by":"crossref","unstructured":"Ben-Sasson, E., Chiesa, A., Genkin, D., Tromer, E., Virza, M.: SNARKs for C: Verifying Program Executions Succinctly and in Zero Knowledge. In Ran Canetti and Juan\u00a0A. Garay, editors, Advances in Cryptology \u2013 CRYPTO 2013, volume 8043, pages 90\u2013108. Springer Berlin Heidelberg. Series Title: Lecture Notes in Computer Science (2013)","DOI":"10.1007\/978-3-642-40084-1_6"},{"key":"393_CR8","doi-asserted-by":"crossref","unstructured":"Ben-Sasson, E., Chiesa, A., Genkin, D., Tromer, E., Virza, M.: SNARKs for C: Verifying Program Executions Succinctly and in Zero Knowledge. In Ran Canetti and Juan\u00a0A. Garay, editors, Advances in Cryptology \u2013 CRYPTO 2013, pages 90\u2013108. Springer (2013)","DOI":"10.1007\/978-3-642-40084-1_6"},{"key":"393_CR9","doi-asserted-by":"crossref","unstructured":"Bernstein, D\u00a0J., Birkner, P., Joye, M., Lange, T., Peters, C.: Twisted Edwards Curves. In Serge Vaudenay, editor, Progress in Cryptology \u2013 AFRICACRYPT 2008, volume 5023, pages 389\u2013405. Springer Berlin Heidelberg, Berlin, Heidelberg. Series Title: Lecture Notes in Computer Science (2008)","DOI":"10.1007\/978-3-540-68164-9_26"},{"key":"393_CR10","doi-asserted-by":"crossref","unstructured":"Daniel, J.: Bernstein, Peter Birkner, Marc Joye, Tanja Lange, and Christiane Peters. Twisted edwards curves. In: Vaudenay, S. (ed.) Progress in Cryptology - AFRICACRYPT 2008. Lecture Notes in Computer Science, vol. 5023, pp. 389\u2013405. Springer, Berlin, Heidelberg (2008)","DOI":"10.1007\/978-3-540-68164-9_26"},{"key":"393_CR11","doi-asserted-by":"crossref","unstructured":"Bernstein, D\u00a0J., Doumen, J., Lange, T., Oosterwijk, J-J.: Faster Batch Forgery Identification. In Steven Galbraith and Mridul Nandi, editors, Progress in Cryptology - INDOCRYPT 2012, pages 454\u2013473, Berlin, Heidelberg. Springer (2012)","DOI":"10.1007\/978-3-642-34931-7_26"},{"issue":"2","key":"393_CR12","doi-asserted-by":"publisher","first-page":"77","DOI":"10.1007\/s13389-012-0027-1","volume":"2","author":"DJ Bernstein","year":"2012","unstructured":"Bernstein, D.J., Duif, N., Lange, T., Schwabe, P., Yang, B.-Y.: High-speed high-security signatures. J. Cryptogr. Eng. 2(2), 77\u201389 (2012)","journal-title":"J. Cryptogr. Eng."},{"key":"393_CR13","unstructured":"Bernstein, D\u00a0J., Lange, T.: Explicit-formulas database. https:\/\/hyperelliptic.org\/EFD\/index.html (2007)"},{"issue":"3","key":"393_CR14","doi-asserted-by":"publisher","first-page":"504","DOI":"10.46586\/tches.v2023.i3.504-521","volume":"2023","author":"G Botrel","year":"2023","unstructured":"Botrel, G., El Housni, Y.: Faster Montgomery multiplication and multi-scalar-multiplication for SNARKs. IACR Transactions on Cryptographic Hardware and Embedded Systems 2023(3), 504\u2013521 (2023)","journal-title":"IACR Transactions on Cryptographic Hardware and Embedded Systems"},{"key":"393_CR15","doi-asserted-by":"crossref","unstructured":"Bowe, S., Chiesa, A.: Matthew Green, Ian Miers, Pratyush Mishra, and Howard Wu. Zexe: Enabling decentralized private computation. In 2020 IEEE Symposium on Security and Privacy (S&P), pages 1080\u20131097. IEEE (2020)","DOI":"10.1109\/SP40000.2020.00050"},{"key":"393_CR16","unstructured":"Chen, T., Lu, H., Kunpittaya, T., Luo, A.: A review of zk-snarks, (2023)"},{"key":"393_CR17","volume-title":"Guide to Elliptic Curve Cryptography","author":"AMD Hankerson","year":"2004","unstructured":"Hankerson, A.M.D., Vanstone, S.: Guide to Elliptic Curve Cryptography. Springer Professional Computing. Springer-Verlag, New York (2004)"},{"key":"393_CR18","doi-asserted-by":"crossref","unstructured":"De\u00a0Rooij, P.: Efficient exponentiation using precomputation and vector addition chains. In Workshop on the Theory and Application of of Cryptographic Techniques, pages 389\u2013399. Springer (1994)","DOI":"10.1007\/BFb0053453"},{"key":"393_CR19","unstructured":"gnark. Modular multiplication, (2023). Accessed: 2024-08-21"},{"key":"393_CR20","doi-asserted-by":"crossref","unstructured":"Groth, J.: On the size of pairing-based non-interactive arguments. In: Advances in Cryptology \u2013 EUROCRYPT 2016. volume 9666 of Lecture Notes in Computer Science, pp. 305\u2013326. Springer, Heidelberg (2016)","DOI":"10.1007\/978-3-662-49896-5_11"},{"key":"393_CR21","doi-asserted-by":"crossref","unstructured":"El Housni, Y., Guillevic, A.: Families of snark-friendly 2-chains of elliptic curves. In: Dunkelman, O., Dziembowski, S. (eds.) Advances in Cryptology - EUROCRYPT 2022. Lecture Notes in Computer Science, vol. 13276, pp. 367\u2013396. Springer, Cham (2022)","DOI":"10.1007\/978-3-031-07085-3_13"},{"issue":"03","key":"393_CR22","first-page":"2025","volume":"681\u2013704","author":"R Jiang","year":"2025","unstructured":"Jiang, R., Peng, C., Luo, M., Chen, R., He, D.: Simdmsm: Simd-accelerated multi-scalar multiplication framework for zksnarks. IACR Transactions on Cryptographic Hardware and Embedded Systems 681\u2013704(03), 2025 (2025)","journal-title":"IACR Transactions on Cryptographic Hardware and Embedded Systems"},{"key":"393_CR23","doi-asserted-by":"crossref","unstructured":"Tao, L., Wei, C., Ruijing, Yu., Chen, C., Fang, W., Wang, L., Wang, Z., Chen, W.: cuzk: Accelerating zero-knowledge proof with a faster parallel multi-scalar multiplication algorithm on gpus. IACR Transactions on Cryptographic Hardware and Embedded Systems 2023(3), 194\u2013220 (2023)","DOI":"10.46586\/tches.v2023.i3.194-220"},{"issue":"2","key":"393_CR24","doi-asserted-by":"publisher","first-page":"358","DOI":"10.46586\/tches.v2023.i2.358-380","volume":"2023","author":"G Luo","year":"2023","unstructured":"Luo, G., Shihui, F., Gong, G.: Speeding up multi-scalar multiplication over fixed points towards efficient zksnarks. IACR Transactions on Cryptographic Hardware and Embedded Systems 2023(2), 358\u2013380 (2023)","journal-title":"IACR Transactions on Cryptographic Hardware and Embedded Systems"},{"key":"393_CR25","doi-asserted-by":"crossref","unstructured":"Parno, B., Howell, J., Gentry, C., Raykova, M.: Pinocchio: Nearly Practical Verifiable Computation. In 2013 IEEE Symposium on Security and Privacy, pages 238\u2013252, May . ISSN: 1081-6011 (2013)","DOI":"10.1109\/SP.2013.47"},{"key":"393_CR26","doi-asserted-by":"crossref","unstructured":"Pippenger, N.: On the evaluation of powers and related problems. In 17th Annual Symposium on Foundations of Computer Science (sfcs 1976), pages 258\u2013263. IEEE Computer Society (1976)","DOI":"10.1109\/SFCS.1976.21"},{"key":"393_CR27","volume-title":"OPTIMSM: FPGA hardware accelerator for Zero-Knowledge MSM, 2024","author":"X Pottier","year":"2025","unstructured":"Pottier, X., de Ruijter, T., Bertels, J., Legiest, W., Van Beirendonck, M., Verbauwhede, I.: OPTIMSM: FPGA hardware accelerator for Zero-Knowledge MSM, 2024. Published by the IACR in TCHES, Publication info (2025)"},{"issue":"20","key":"393_CR28","doi-asserted-by":"publisher","first-page":"2569","DOI":"10.3390\/math9202569","volume":"9","author":"X Salleras","year":"2021","unstructured":"Salleras, X., Daza, V.: ZPiE: Zero-Knowledge Proofs in Embedded Systems. Mathematics 9(20), 2569 (2021)","journal-title":"Mathematics"},{"key":"393_CR29","doi-asserted-by":"crossref","unstructured":"Shen, R., Wang, L., Luo, H., Yang, R., Yang, J., Wang, J., Sun, Q., Xiao, L., Dong, J.: Accelerating zk-snark with group and zone optimization on gpu. In 2023 IEEE 29th International Conference on Parallel and Distributed Systems (ICPADS), pages 24\u201331, (2023)","DOI":"10.1109\/ICPADS60453.2023.00013"},{"key":"393_CR30","doi-asserted-by":"crossref","unstructured":"Silverman, J.\u00a0H.: The Arithmetic of Elliptic Curves, volume 106 of Graduate Texts in Mathematics. Springer, 2 edition (2009)","DOI":"10.1007\/978-0-387-09494-6"},{"key":"393_CR31","first-page":"806","volume":"70","author":"EG Straus","year":"1963","unstructured":"Straus, E.G.: Addition chains of vectors (problem 5125). Amer. Math. Monthly 70, 806\u2013808 (1963)","journal-title":"Amer. Math. Monthly"},{"key":"393_CR32","unstructured":"Xavier, C.\u00a0F.: PipeMSM: Hardware acceleration for multi-scalar multiplication. Cryptology ePrint Archive, Paper 2022\/999, (2022). https:\/\/eprint.iacr.org\/2022\/999"}],"container-title":["Journal of Cryptographic Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s13389-026-00393-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s13389-026-00393-z","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s13389-026-00393-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,20]],"date-time":"2026-06-20T09:18:28Z","timestamp":1781947108000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s13389-026-00393-z"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,11]]},"references-count":32,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2026,6]]}},"alternative-id":["393"],"URL":"https:\/\/doi.org\/10.1007\/s13389-026-00393-z","relation":{},"ISSN":["2190-8508","2190-8516"],"issn-type":[{"value":"2190-8508","type":"print"},{"value":"2190-8516","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,5,11]]},"assertion":[{"value":"17 October 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"16 April 2026","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"11 May 2026","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare no competing interests.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing Interests"}}],"article-number":"7"}}