Question: Let F be a secure block cipher and consider instantiating Enc - then - MAC with: our favorite CPA - secure encryption Enc ( k
Let F be a secure block cipher and consider instantiating EncthenMAC with: our favorite CPAsecure encryption EnckmrFkrm CBCMAC restricted to block inputs construction The encryption scheme is CPAsecure and the MAC is also a secure MAC since it is used on inputs of only blocks ciphertexts of the encryption scheme Because of this EncthenMAC will result in a CCAsecure scheme. Show that the result is not CCAsecure when the same key and same F is used for both the encryption & MAC!
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
