The zkEVM ecosystem spent a year sprinting on latency. Proving time for an Ethereum block collapsed from 16 minutes to 16 seconds, costs dropped 45-fold, and participatingThe zkEVM ecosystem spent a year sprinting on latency. Proving time for an Ethereum block collapsed from 16 minutes to 16 seconds, costs dropped 45-fold, and participating

Ethereum Foundation refocuses to security over speed – sets strict 128-bit rule for 2026

2025/12/20 19:51
6 min read
For feedback or concerns regarding this content, please contact us at [email protected]

The zkEVM ecosystem spent a year sprinting on latency. Proving time for an Ethereum block collapsed from 16 minutes to 16 seconds, costs dropped 45-fold, and participating zkVMs now prove 99% of mainnet blocks in under 10 seconds on target hardware.

The Ethereum Foundation (EF) declared victory on Dec. 18: real-time proving works. The performance bottlenecks are cleared. Now the real work starts, because speed without soundness is a liability, not an asset, and the math under many STARK-based zkEVMs has been quietly breaking for months.

In July, the EF set a formal target for “real-time proving” that bundled latency, hardware, energy, openness and security: prove at least 99% of mainnet blocks within 10 seconds, on hardware that costs roughly $100,000 and runs within 10 kilowatts, with fully open-source code, at 128-bit security, and with proof sizes at or below 300 kilobytes.

The Dec. 18 post claims the ecosystem met the performance target, as measured on the EthProofs benchmarking site.

Real-time here is defined relative to the 12-second slot time and about 1.5 seconds for block propagation. The standard is essentially “proofs are ready fast enough that validators can verify them without breaking liveness.”

The EF now pivots from throughput to soundness, and the pivot is blunt. Many STARK-based zkEVMs have relied on unproven mathematical conjectures to achieve advertised security levels.

Over the past months, some of those conjectures, especially the “proximity gap” assumptions used in hash-based SNARK and STARK low-degree tests, have been mathematically broken, knocking down the effective bit-security of parameter sets that depended on them.

The EF says the only acceptable endgame for L1 use is “provable security,” not “security assuming conjecture X holds.”

They set 128-bit security as the target, aligning it with mainstream crypto standards bodies and academic literature on long-lived systems, as well as with real-world record computations that show 128 bits is realistically out of reach for attackers.

The emphasis on soundness over speed reflects a qualitative difference.

If someone can forge a zkEVM proof, they can mint arbitrary tokens or rewrite L1 state and make the system lie, not just drain one contract.

That justifies what the EF calls a “non-negotiable” security margin for any L1 zkEVM.

Three-milestone roadmap

The post lays out a clean roadmap with three hard stops. First, by the end of February 2026, every zkEVM team in the race plugs its proof system and circuits into “soundcalc,” an EF-maintained tool that computes security estimates based on current cryptanalytic bounds and the scheme's parameters.

The story here is “common ruler.” Instead of each team quoting their own bit security with bespoke assumptions, soundcalc becomes the canonical calculator and can be updated as new attacks emerge.

Second, “Glamsterdam” by the end of May 2026 demands at least 100-bit provable security via soundcalc, final proofs at or below 600 kilobytes, and a compact public explanation of each team's recursion architecture with a sketch of why it should be sound.

That quietly walks back the original 128-bit requirement for early deployment and treats 100 bits as an interim target.

Third, “H-star” by the end of 2026 is the full bar: 128-bit provable security by soundcalc, proofs at or below 300 kilobytes, plus a formal security argument for the recursion topology. That is where this becomes less about engineering and more about formal methods and cryptographic proofs.

Technical levers

The EF points to several concrete tools intended to make the 128-bit, sub-300-kilobyte target feasible. They highlight WHIR, a new Reed-Solomon proximity test that doubles as a multilinear polynomial commitment scheme.

WHIR offers transparent, post-quantum security and produces proofs that are smaller and verification faster than those of older FRI-style schemes at the same security level.

Benchmarks at 128-bit security show proofs roughly 1.95 times smaller and verification several times faster than baseline constructions.

They reference “JaggedPCS,” a set of techniques for avoiding excessive padding when encoding traces as polynomials, which let provers avoid wasted work while still producing succinct commitments.

They mention “grinding,” which is brute-force searching over protocol randomness to find cheaper or smaller proofs while staying within soundness bounds, and “well-structured recursion topology,” meaning layered schemes in which many smaller proofs are aggregated into a single final proof with carefully argued soundness.

Exotic polynomial math and recursion tricks are being used to shrink proofs back down after cranking security up to 128 bits.

Independent work like Whirlaway uses WHIR to build multilinear STARKs with improved efficiency, and more experimental polynomial-commitment constructions are being built from data-availability schemes.

The math is moving fast, but it's also moving away from assumptions that looked safe six months ago.

What changes and the open questions

If proofs are consistently ready within 10 seconds and stay under 300 kilobytes, Ethereum can increase the gas limit without forcing validators to re-execute every transaction.

Validators would instead verify a small proof, letting block capacity grow while keeping home-staking realistic. This is why the EF's earlier real-time post tied latency and power explicitly to “home proving” budgets like 10 kilowatts and sub-$100,000 rigs.

The combination of large security margins and small proofs is what makes an “L1 zkEVM” a credible settlement layer. If those proofs are both fast and provably 128-bit secure, L2s and zk-rollups can reuse the same machinery via precompiles, and the distinction between “rollup” and “L1 execution” becomes more of a configuration choice than a rigid boundary.

Real-time proving is currently an off-chain benchmark, not an on-chain reality. The latency and cost numbers come from EthProofs' curated hardware setups and workloads.

There is still a gap between that and thousands of independent validators actually running these provers at home. The security story is in flux. The whole reason soundcalc exists is that STARK and hash-based SNARK security parameters keep moving as conjectures are disproven.

Recent results have redrawn the line between “definitely safe,” “conjecturally safe,” and “definitely unsafe” parameter regimes, meaning today's “100-bit” settings may be revised again as new attacks emerge.

It's not clear whether all major zkEVM teams will actually hit 100-bit provable security by May 2026 and 128-bit by December 2026 while staying under the proof-size caps, or whether some will quietly accept lower margins, rely on heavier assumptions, or push verification off-chain for longer.

The hardest part may not be math or GPUs, but formalizing and auditing the full recursion architectures.

The EF admits that different zkEVMs often compose many circuits with substantial “glue code” between them, and that documenting and proving soundness for those bespoke stacks is essential.

That opens a long tail of work for projects like Verified-zkEVM and formal verification frameworks, which are still early and uneven across ecosystems.

A year ago, the question was whether zkEVMs could prove fast enough. That question is answered.
The new question is whether they can prove soundly enough, at a security level that doesn't depend on conjectures that may break tomorrow, with proofs small enough to propagate across Ethereum's P2P network, and with recursion architectures formally verified enough to anchor hundreds of billions of dollars.

The performance sprint is over. The security race just started.

The post Ethereum Foundation refocuses to security over speed – sets strict 128-bit rule for 2026 appeared first on CryptoSlate.

Market Opportunity
Blockstreet Logo
Blockstreet Price(BLOCK)
$0.005849
$0.005849$0.005849
+4.53%
USD
Blockstreet (BLOCK) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

xAI Launches Grok 4 Fast: A Leap in Cost-Efficient AI

xAI Launches Grok 4 Fast: A Leap in Cost-Efficient AI

The post xAI Launches Grok 4 Fast: A Leap in Cost-Efficient AI appeared on BitcoinEthereumNews.com. James Ding Sep 19, 2025 21:46 xAI introduces Grok 4 Fast, advancing cost-efficient reasoning models with superior token efficiency and performance, offering a unified architecture for enterprise and consumer applications. Introduction to Grok 4 Fast xAI has unveiled Grok 4 Fast, a groundbreaking advancement in cost-efficient reasoning models. Building on the successes of Grok 4, this new model offers exceptional token efficiency, making high-quality reasoning more accessible to developers and users across various domains. Grok 4 Fast integrates state-of-the-art cost-efficiency with advanced web and X search capabilities, featuring a 2M token context window and a unified architecture for both reasoning and non-reasoning modes. Performance and Efficiency According to xAI, Grok 4 Fast surpasses its predecessor, Grok 3 Mini, in reasoning benchmarks, achieving similar performance to Grok 4 while reducing token usage by 40%. This efficiency results in a 98% reduction in the cost to achieve the same performance on frontier benchmarks. The model’s enhanced intelligence density is verified by an independent review from Artificial Analysis, showcasing a superior price-to-intelligence ratio. Advanced Capabilities Grok 4 Fast is engineered with large-scale reinforcement learning, optimizing its tool-use capabilities. The model excels in deciding when to utilize tools like code execution or web browsing, boasting advanced agentic search capabilities. It can seamlessly browse the web, accessing real-time data and synthesizing information at high speeds, setting a new standard for cost-effective intelligence across general domains. Benchmark Success The model’s prowess is evident in LMArena’s Search Arena, where Grok 4 Fast, under the code name ‘menlo’, secured the top position with an Elo score of 1163, outperforming its nearest competitor by a significant margin. In the Text Arena, Grok 4 Fast ranks eighth, demonstrating its superior intelligence density compared to larger models. Unified Architecture Grok 4 Fast introduces…
Share
BitcoinEthereumNews2025/09/21 01:37
Bitcoin $123K Prediction as Poland Launches First Bitcoin ETF, Bitcoin Hyper Nears $17M, and More…

Bitcoin $123K Prediction as Poland Launches First Bitcoin ETF, Bitcoin Hyper Nears $17M, and More…

The post Bitcoin $123K Prediction as Poland Launches First Bitcoin ETF, Bitcoin Hyper Nears $17M, and More… appeared on BitcoinEthereumNews.com. Live Bitcoin Hyper Updates Today: Bitcoin $123K Prediction as Poland Launches First Bitcoin ETF, Bitcoin Hyper Nears $17M, and More… Sign Up for Our Newsletter! For updates and exclusive offers enter your email. Leah is a British journalist with a BA in Journalism, Media, and Communications and nearly a decade of content writing experience. Over the last four years, her focus has primarily been on Web3 technologies, driven by her genuine enthusiasm for decentralization and the latest technological advancements. She has contributed to leading crypto and NFT publications – Cointelegraph, Coinbound, Crypto News, NFT Plazas, Bitcolumnist, Techreport, and NFT Lately – which has elevated her to a senior role in crypto journalism. Whether crafting breaking news or in-depth reviews, she strives to engage her readers with the latest insights and information. Her articles often span the hottest cryptos, exchanges, and evolving regulations. As part of her ploy to attract crypto newbies into Web3, she explains even the most complex topics in an easily understandable and engaging way. Further underscoring her dynamic journalism background, she has written for various sectors, including software testing (TEST Magazine), travel (Travel Off Path), and music (Mixmag). When she’s not deep into a crypto rabbit hole, she’s probably island-hopping (with the Galapagos and Hainan being her go-to’s). Or perhaps sketching chalk pencil drawings while listening to the Pixies, her all-time favorite band. This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Center or Cookie Policy. I Agree Source: https://bitcoinist.com/bitcoin-hyper-live-news-september-19-2025/
Share
BitcoinEthereumNews2025/09/19 21:20
WLD Price Prediction: Worldcoin Eyes $0.42 Recovery Amid Technical Consolidation

WLD Price Prediction: Worldcoin Eyes $0.42 Recovery Amid Technical Consolidation

Worldcoin (WLD) trades at $0.39 with neutral RSI at 46, targeting $0.42 resistance. Technical indicators suggest consolidation before potential breakout. (Read
Share
BlockChain News2026/03/07 20:35