Fix a symmetric-key encryption scheme SE (K, E, D). We consider alternative notions of security to...
Fantastic news! We've Found the answer you've been seeking!
Question:
Transcribed Image Text:
Fix a symmetric-key encryption scheme SE (K, E, D). We consider alternative notions of security to IND-CPA below. First consider the MROR (message real-or- random) notion via game MRoR-1 below left and MROR-0 below right. proe INITIALIZE K+K proc RoR(m) Return E (m) Define the MROR-advantage of A against SE as Adve (A) = Pr [MROR-1 outputs 1] - Pr [MROR-0 outputs 1]. proc INITIALIZE KIK proc INITIALIZE K-sk Now consider the CROR (ciphertext real-or-random) notion via game CROR-1 below left and CROR-0 below right. proe RoR(m) Return Ex(m) proc ROR(m) m's {0, 1] Return Ex(m) Define the CROR-advantage of A against. SE as proc INITIALIZE K-K proc ROR(m) ex Ek(m) {0, 134 Return Adve (4) Pr [CROR-15 outputs 1] Pr [CROR-05 outputs 1]. (Part A.). Show that IND-CPA implies MROR. Namely, show that for every MROR-adversary A there is an IND-CPA adversary B such that indepa SE Furthermore, the resources usage of B is about that of A. Adv (A) Adv (B). uror (Part B.). Show that MROR implies IND-CPA. Namely, show that for every IND-CPA adversary A there is an MROR-adversary B such that Advse ind-cpa Furthermore, the resources usage of B is about that of A. (A) 2. Adv (B). mror SE Show IND-CPA does not imply CROR. To show this, assume there is a scheme SE (K, E, D) that is IND-CPA (as otherwise the claim is vacuous). Show how to modify SE into SE' = (K',E, D) such that: (1) SE' is IND-CPA but (2) SE' is not CROR. Namely, first provide a description of the algorithms of SE'. Then show that for every IND-CPA adversary A there is an IND-CPCA adversary B such that Adv SE' (A) Adv (B). SE Furthermore, the resources usage of B is about that of A. Finally, show that there is a resource- efficient CROR-adversary A such that Adv (A) 2 1 1 Fix a symmetric-key encryption scheme SE (K, E, D). We consider alternative notions of security to IND-CPA below. First consider the MROR (message real-or- random) notion via game MRoR-1 below left and MROR-0 below right. proe INITIALIZE K+K proc RoR(m) Return E (m) Define the MROR-advantage of A against SE as Adve (A) = Pr [MROR-1 outputs 1] - Pr [MROR-0 outputs 1]. proc INITIALIZE KIK proc INITIALIZE K-sk Now consider the CROR (ciphertext real-or-random) notion via game CROR-1 below left and CROR-0 below right. proe RoR(m) Return Ex(m) proc ROR(m) m's {0, 1] Return Ex(m) Define the CROR-advantage of A against. SE as proc INITIALIZE K-K proc ROR(m) ex Ek(m) {0, 134 Return Adve (4) Pr [CROR-15 outputs 1] Pr [CROR-05 outputs 1]. (Part A.). Show that IND-CPA implies MROR. Namely, show that for every MROR-adversary A there is an IND-CPA adversary B such that indepa SE Furthermore, the resources usage of B is about that of A. Adv (A) Adv (B). uror (Part B.). Show that MROR implies IND-CPA. Namely, show that for every IND-CPA adversary A there is an MROR-adversary B such that Advse ind-cpa Furthermore, the resources usage of B is about that of A. (A) 2. Adv (B). mror SE Show IND-CPA does not imply CROR. To show this, assume there is a scheme SE (K, E, D) that is IND-CPA (as otherwise the claim is vacuous). Show how to modify SE into SE' = (K',E, D) such that: (1) SE' is IND-CPA but (2) SE' is not CROR. Namely, first provide a description of the algorithms of SE'. Then show that for every IND-CPA adversary A there is an IND-CPCA adversary B such that Adv SE' (A) Adv (B). SE Furthermore, the resources usage of B is about that of A. Finally, show that there is a resource- efficient CROR-adversary A such that Adv (A) 2 1 1
Expert Answer:
Answer rating: 100% (QA)
Part A Showing that INDCPA implies MROR To prove this we need to show that for every MRORadversary A there exists an INDCPA adversary B such that AdvA AdvB and the resource usage of B is about that of ... View the full answer
Related Book For
Income Tax Fundamentals 2013
ISBN: 9781285586618
31st Edition
Authors: Gerald E. Whittenburg, Martha Altus Buller, Steven L Gill
Posted Date:
Students also viewed these programming questions
-
Divide 8(cos0.8 + i sin0.8) by 4(cos0.2 + i sin0.2).
-
The following additional information is available for the Dr. Ivan and Irene Incisor family from Chapters 1-5. Ivan's grandfather died and left a portfolio of municipal bonds. In 2012, they pay Ivan...
-
Planning is one of the most important management functions in any business. A front office managers first step in planning should involve determine the departments goals. Planning also includes...
-
Mr. Mo carries on business as a sole proprietor. The fiscal year end of the business is December 31. During 2020, its first year of operation, net business loss amounts to $72,000. In addition, the...
-
What does the ideal gas law predict about the volume of a sample of gas at absolute zero? Why is this prediction incorrect?
-
For the following exercises, use a graph to help determine the domain of the functions. f(x) = = x(x + 3) x-4
-
How can HRIS T&D applications help firms foster organizational learning?
-
The unadjusted trial balance of Avery Air Purification System at December 31, 2018, and the data needed for the adjustments follow. Adjustment data at December 31 follow: a. On December 15, Avery...
-
1. Consider the following modification to the MergeSort algorithm: divide the input array into fourths (rather than halves), recursively sort each sort each forth, and finally combine the results...
-
A chemical constituent flows between three reactors as depicted in Fig. P11.15. Steady-state mass balances can be written for a substance that reacts with first-order kinetics. For example, the mass...
-
Explain as what extent would past experience of people in charge of ERM development impact the company's risk attitude? If we assume that past experiences are context-specific, how can an enterprise...
-
Myrna & Co. is a manufacturer of various types of dyes for industrial use. Following is the unadjusted trial balance as on 31 August, 2015: Unadjusted Trial Balance Account Cash Prepaid Insurance...
-
4. 5. 6. 7. Using the teacher's original grade scale (not your results from question number 2; use the grade scale in boldface print), if one student is selected at random, what is the probability...
-
Mr. Lion, who is in the 37 percent tax bracket, is the sole shareholder of Toto Incorporated, which manufactures greeting cards. Toto's average annual net profit (before deduction of Mr. Lion's...
-
31. The Excel file Accounting Professionals provides the results of a survey of 27 employees in a tax division of a Fortune 100 company. a. Test the null hypothesis that the average num- ber of years...
-
(a) Suppose that G is the o-algebra generated by a random variable Y taking only finitely many values, i.e. G= o(Y) and Y(w) E {y,..., yn} for all w N. Show that n E[X|9] =EXY = y]1[y=y} P-a.s. i=1...
-
Telerental Car Company has a spike in staff resignations every year as the summer break comes to an end. As staff return to work responsibilities, some decide they have had enough and look for...
-
a) Show that (a, b) := {{a}, {b}} does not satisfy the ordered pair axiom. b) Determine whether each of the following statements is true or false. (Give a reason in each case): (i) {a, b} C (a, b)....
-
Ray and Maria Gomez have been married 3 years. They live at 1610 Quince Ave., McAllen, TX 78701. Ray works for Palm Oil Corporation and Maria works for the City of McAllen. Maria's Social Security...
-
Jerry made the following contributions during 2012: His synagogue (by check).....................................................$680 The Democratic Party (by check)...
-
William sold Section 1245 property for $25,000 in 2012. The property cost $35,000 when it was purchased 5 years ago. The depreciation claimed on the property was $16,000. a. Calculate the adjusted...
-
Sustainability involves more than just the impact of actions on the environment. The triple bottom line recognizes that a company has to measure its impact on its triple bottom line for its long-term...
-
Bryan Haas has his own electronics retail chain, TechnoGeek. His stores sell computer parts, audiovisual equipment, consumer electronics, and related items. Custom computer building and electronics...
-
Sustainability involves more than just the impact of actions on the environment. The triple bottom line recognizes that a company has to measure its impact on its triple bottom line for its long-term...
Study smarter with the SolutionInn App