
lean Ethereum Part 4: leanVM, a Custom VM for Signature Aggregation
About this episode
In this episode of the lean Ethereum miniseries, Nico Mohnblatt speaks with Thomas Coratger and Emile from the Ethereum Foundation about the design and implementation of LeanVM, a minimal zkVM created to support post-quantum signature aggregation on Ethereum’s consensus layer. They explain why the team chose a VM architecture over fixed circuits and how LeanVM takes inspiration from Cairo with just 4 opcodes and 2 precompiles to keep the instruction set extremely small and make formal verification easier.
The conversation also covers LeanVM implementation choices like using Plonky3 and WHIR for efficient proving on CPUs, benchmarks for aggregation speed, and the role of Python specs in testing client interop. They share ongoing efforts to optimize low-level primitives and invite community input on the project.
Related Links
- lean Ethereum Part 1: Introduction with Justin Drake
- lean Ethereum Part 2: PQ Signatures and Poseidon with Dmitry and Benedikt
- lean Ethereum Part 3: Security of PQ SNARKs and an update about the Proximity Prize
- lean Ethereum
- Lean Consensus R&D Progress
- Cairo zkVM
- WHIR: Reed–Solomon Proximity Testing with Super-Fast Verification
- Minimal zkVM for Lean Ethereum by Emile
Repos
- leanEthereum github organization
- leanSig repo (optimized Rust implementation of XMSS for Ethereum usage)
- leanSpec repo (the Python spec of the lean consensus)
- WHIR repo
- Plonky3 repo
- leanVM
Applications to speak at zkSummit14 close this Sunday March 15! This edition will be more intimate with limited spots — we recommend applying early. Apply at www.zksummit.com zkMesh+ live! Subscribe for zkMesh+ and catch the latest State of ZK 2025 report.
**If you like what we do:** * Find all our links here! @ZeroKnowledge | Linktree * Subscribe to our podcast newsletter * Follow us on Twitter @zeroknowledgefm * Join us on Telegram * Catch us on YouTube **Support the show:** * Patreon * ETH - Donation address * BTC - Donation address * SOL - Donation address * ZEC - Donation address Read transcript
Get every episode summarized
Each time Zero Knowledge publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Zero Knowledge

The Evolution from ZKP2P to Peer with Richard Liang
Zero Knowledge

Minimmit, Multimmit and the New Consensus Frontier with Patrick O'Grady
Zero Knowledge

Private Information Retrieval (PIR) with Alex Hoover
Zero Knowledge

Alex Ozdemir on where Theorem Provers and ZK meet
Zero Knowledge