Table 1.

Comparison of honest-majority MPC protocols based on Shamir secret sharing

Semi-honest MPC Comm. per mult. gate per party Maliciously secure MPC Comm. overhead
[116] 6 elements (2.5 elements) [101]
119, [137] 5.5 elements (2.5 elements) [138, 140]
118 4 elements (2 elements) [125, 137] 1 + o(1) ×

Note: We compare the communication cost for evaluating a single arithmetic circuit. We use “Comm.” to denote communication and “mult.” to denote multiplication. If the values are in parenthesis “()”, then they represent the communication costs in the computational setting using the PRSS approach, otherwise they denote the communication costs in the information-theoretic setting.

