Yao's garbled circuits

Two-party. Alice garbles Boolean circuit computing f. Bob evaluates on his encrypted input. Yao 1982.

Advertisement

GMW protocol

Multi-party. Secret shares of inputs. Additions locally, multiplications need communication rounds.

Advertisement

BGW + Shamir SS

Uses Shamir secret sharing for multi-party. Perfect security against ≤ (n-1)/3 malicious parties.

Modern deployments

Multi-signature wallets (threshold Bitcoin/Ethereum). Privacy-preserving analytics (Google, Meta ad measurement).