slides - Stanford Crypto Group
slides - Stanford Crypto Group
slides - Stanford Crypto Group
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
Why it works<br />
b<br />
A 1<br />
M<br />
(pk,K)<br />
Proofs of both Claims exploit in a blackbox way the<br />
known PRIV-security of the ROM scheme from [BBO07].<br />
Claim 1: S is unpredictable<br />
If not, one-wayness of the ROM scheme is violated.<br />
Claim 2:<br />
By PRIV-security of the ROM scheme.<br />
1/9/13 Bellare, <strong>Stanford</strong> RWC Workshop<br />
C<br />
A 2<br />
b'<br />
33