An OAEP Variant With a Tight Security Proof

@article{Jonsson2002AnOV,
  title={An OAEP Variant With a Tight Security Proof},
  author={Jakob Jonsson},
  journal={IACR Cryptology ePrint Archive},
  year={2002},
  volume={2002},
  pages={34}
}
We introduce the OAEP encoding method, which is an adaptation of the OAEP encoding method, replacing the last step of the encoding operation with an application of a block cipher such as AES. We demonstrate that if f is a one-way trapdoor function that is hard to invert, then OAEP combined with f is secure against an INDCCA2 adversary in the random oracle model. Moreover, the security reduction is tight; an adversary against f -OAEP can be extended to an f -inverter with a running time linear… CONTINUE READING

From This Paper

Topics from this paper.
11 Citations
29 References
Similar Papers

References

Publications referenced by this paper.
Showing 1-10 of 29 references

Hybrid Key Distribution Scheme Giving Key Record Recovery

  • D. Johnson, A. Lee, W. Martin, S. Matyas, J. Wilkins
  • IBM Technical Disclosure Bulletin, 37 (2A), pp. 5…
  • 1994
Highly Influential
4 Excerpts

Similar Papers

Loading similar papers…