Question: Objectives: Understanding PRF and IND - CPA definitions, proving schemes insecure. Notation for problems below: xy refers to the XOR of x and y x

Objectives: Understanding PRF and IND-CPA definitions, proving schemes insecure.
Notation for problems below:
xy refers to the XOR of x and y
x || y refers to concatenation of x and y
refers the bitwise complement of x
Problem 2.1
(10 points)
Let F: {0,1}x{0,1}{0,1}" be a secure PRF. Prove that the function family F: {0,1}x{0,1}2m {0,1}2n specified for all 21,22 in {0,1}m and all K in {0,1}* below is not a secure PRF:
F1(K, X1||22)= F(K,21)|| F(K,2122)
Problem 2.2
(10 points)
Let E: {0,1}x{0,1}{0,1} be a blockcipher known to be a secure PRF. Prove that the function family F: {0,1}*{0,1}2m {0,1}m specified for all 21,22 in {0,1}m and all K in {0,1}* below is not a secure PRF:
F2(K, X1||22)= E(K, E(K,\pi )) X1

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!