3 years ago when we started zkSecurity, we reviewed a number of RSA circuits.
they're not easy to review.
If you had told me then that 3 years later we wouldn't have to understand how these circuits work for them to be secure, there's no way I would have believed you.
The work that the clean team has managed to achieve is really insane. Props to
@mitschabaude @pirapira @g_dellimmagine and rot256