Skip to main content

Simulation Extractability

Definition

Simulation extractability is a property in cryptographic proofs, particularly zero-knowledge proofs, where a valid witness can be derived from a prover by interacting with it within a simulated environment. This characteristic formally demonstrates that the prover possesses actual knowledge of the secret witness. It underpins proof security.