Question: Hello all. I want to solve this question with full answer and clear 3. (10 points) Distinguish ECB. Consider the ECB mode, instantiated with AES.

Hello all. I want to solve this question with full answer and clear
3. (10 points) Distinguish ECB. Consider the ECB mode, instantiated with AES. As ECB with AES is a block encryption scheme, we consider its ideal version to be a variable-length random permutation VRP. Note that VRP always returns an l-bit output for an l-bit input, but it does apply padding before, to get a multiple of 128. (You could call it length-preserving.) (a) Show how you can distinguish ECB-mode with AES from a variable-length random permutation. (b) Give the probability that you draw the wrong conclusion. [That is, that you say that it is the 5 pt scheme, while you are actually querying the VRP.] 5 pt 3. (10 points) Distinguish ECB. Consider the ECB mode, instantiated with AES. As ECB with AES is a block encryption scheme, we consider its ideal version to be a variable-length random permutation VRP. Note that VRP always returns an l-bit output for an l-bit input, but it does apply padding before, to get a multiple of 128. (You could call it length-preserving.) (a) Show how you can distinguish ECB-mode with AES from a variable-length random permutation. (b) Give the probability that you draw the wrong conclusion. [That is, that you say that it is the 5 pt scheme, while you are actually querying the VRP.] 5 pt
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
