落札後の中止で漏れる情報を抑える信頼可能な競売
Credible AUctions via MPC Gadgets: Bounding Information Leakage Under Abort
この論文をやさしく読む
ひとことで言うと
競売人が結果を見てから中止する利益を、勝者だけを明かす限定的な多者計算と罰則で抑える仕組みを理論的に示した。
何に役立つ?
暗号を使う競売で、途中中止時の情報漏洩と経済的な罰則をどう設計するか考えるための理論的根拠になる。
この研究の面白いところ
競売全体をMPCに入れる代わりに勝者決定だけを切り出し、有限の罰則で足りる境界と、その境界の厳密さを示している。
どこまで分かった?
要旨の保証は指定された分布条件と競売モデルにおける理論的な結果であり、実際の運用実験は記されていない。
v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。
アブストラクトの日本語訳
収益を最大化したい競売人にも手順から逸脱する動機がない「信頼可能な競売」の設計には、競売人が自作自演の入札者を操作できる場合、暗号技術上の根本的な障壁がある。信頼する競売人を不要にするため安全な多者計算(MPC)を使う方法が考えられるが、公平なコイントスは不可能だというCleve(1986年)の結果から、一体型のMPCでは競売人に「無料の選択権」が生じる。競売人は結果を知ったうえで収益が不満なら一方的に中止できるからである。事前の罰則を伴う暗号学的コミットメントは、この中止の非対称性を緩和するが、裾の重い分布には有限の罰則では足りない。本研究は、MPC分解原理を導入してこの障壁を回避する。仕組み全体を暗号化せず、MPCを情報制限の道具としてのみ用いる。勝者を決める問題を最小限のMPC部品に切り出し、勝者の身元だけを計算して明かし、支払いに関する情報は明かさない。この質的な制限により、中止時に漏れる情報を数学的に抑えられる。この部品と順次開示、有限の経済的罰則を組み合わせ、順次開示競売(SRA)を設計する。情報漏洩を抑えれば無料の選択権の価値も厳密に抑えられることを証明し、罰則 k が各入札者の分布 Fi からの収益 Rev(Fi) の総和以上であれば信頼可能性に十分であると示す。この境界は厳密で、等収益分布ではそれより小さい罰則のすべてについて利益を得られる逸脱がある。定数ラウンドのMPCを使うSRAは、収益の裾が消失するすべての直積分布について、定数ラウンドで誘因両立的かつ収益最適な信頼可能競売を与え、AkbarpourとLi(2020年)、FerreiraとWeinberg(2020年)の未解決問題に答える。
v1の要旨から自動生成。本文の精読・人による確認は未実施。
- 初稿
- 2026-09-23(UTC)
- 最新改訂
- 2026-09-23 · v1
- 査読・掲載
- 査読状況未確認
更新履歴
- v1 2026-09-23 この版を読む
取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。
原文の要旨
The design of credible auctions---mechanisms where a revenue-maximizing auctioneer has no incentive to deviate from the protocol---faces a fundamental cryptographic barrier when the auctioneer controls shill bidders. While a natural approach is to use Secure Multi-Party Computation (MPC) to remove the trusted auctioneer, the impossibility of fair coin flipping of Cleve (1986) implies that monolithic MPC protocols grant the auctioneer a "free option": they can learn the auction's outcome and unilaterally abort if the revenue is unsatisfactory. Cryptographic commitments with ex-ante penalties mitigate this abort asymmetry, but no finite penalty suffices for heavy-tailed distributions. We circumvent this barrier by introducing the MPC Decomposition Principle. Rather than encrypting the entire mechanism, we use MPC strictly as an information-restriction tool. We isolate the winner determination problem into a minimal MPC gadget that computes and reveals the winner's identity but no payment information. This qualitative restriction mathematically bounds the information leaked upon an abort. By combining this gadget with sequential revelation and finite economic penalties, we design the Sequential Revelation Auction (SRA). We prove that bounding the information leakage strictly bounds the value of the free option, showing that a penalty of $k \geq \sum_{i=1}^n Rev(F_i)$ is sufficient for credibility, and tight: for equal-revenue distributions, every smaller penalty admits a profitable deviation. Using constant-round MPC, the SRA resolves an open question of Akbarpour and Li (2020) and Ferreira and Weinberg (2020) by providing a constant-round, incentive-compatible, revenue-optimal credible auction for all product distributions with vanishing revenue tails
著者のコメント
32 pages, AFT 2026
arXiv ID: 2609.27402 / 要約の誤りについて