Question: Let CBC - MAC be a variation on CBC - MAC intended to allow one to MAC messages of arbitrary length, and defined as follows:

Let CBC-MAC be a variation on CBC-MAC intended to allow one to MAC messages
of arbitrary length, and defined as follows:
CBC-MAC(M)= CBC-MAC(M)\| H(M)
where H is a publicly-known, secure hash function H : {0,1}
7->{0,1}
n
. Prove that
this variant is not UF-CMA secure.

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Programming Questions!