TY - GEN
T1 - RSA/Rabin least significant bits are (Fomula presented.) secure (Extended Abstract)
AU - Chor, Benny
AU - Goldreich, Oded
N1 - Publisher Copyright:
© 1985, Springer-Verlag Berlin Heidelberg.
PY - 1985
Y1 - 1985
N2 - We prove that RSA least significant bit is (Fomula presented.) secure, for any constant c (where N is the RSA modulus). This means that an adversary, given the ciphertext, cannot guess the least significant bit of the plaintext with probability better than (Fomula presented.), unless he can break RSA. Our proof technique is strong enough to give, with slight modifications, the following related results:(1)The loglog N least significant bits are simultaneously (Fomula presented.) secure.(2)The above also holds for Rabin’s encryption function. Our results imply that Rabin/RSA encryption can be directly used for pseudo random bits generation, provided that factoring/inverting RSA is hard.
AB - We prove that RSA least significant bit is (Fomula presented.) secure, for any constant c (where N is the RSA modulus). This means that an adversary, given the ciphertext, cannot guess the least significant bit of the plaintext with probability better than (Fomula presented.), unless he can break RSA. Our proof technique is strong enough to give, with slight modifications, the following related results:(1)The loglog N least significant bits are simultaneously (Fomula presented.) secure.(2)The above also holds for Rabin’s encryption function. Our results imply that Rabin/RSA encryption can be directly used for pseudo random bits generation, provided that factoring/inverting RSA is hard.
UR - https://www.scopus.com/pages/publications/77649264175
U2 - 10.1007/3-540-39568-7_24
DO - 10.1007/3-540-39568-7_24
M3 - ???researchoutput.researchoutputtypes.contributiontobookanthology.conference???
AN - SCOPUS:77649264175
SN - 9783540156581
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 303
EP - 313
BT - Advances in Cryptology - Proceedings of CRYPTO 84
A2 - Chaum, David
A2 - Blakley, George Robert
PB - Springer Verlag
T2 - Annual International Cryptology Conference, CRYPTO 1984
Y2 - 19 August 1984 through 22 August 1984
ER -