In Summer 2023, the Zcash Foundation engaged NCC Group to conduct a security
assessment of the Foundation’s FROST threshold signature implementation, based on the
paper FROST: Flexible Round-Optimized Schnorr Threshold Signatures. This project
implements v12 of the draft FROST specification in Rust, with a variety of options available
for underlying elliptic curve groups. The review was performed by three consultants over 25 person-days of effort. The project concluded with a retest phase a few weeks after the original engagement that confirmed all findings were fixed.