crypto.graphics
Ciphertext Integrity Security Game
{E, D}
is the candidate cryptosystem.
k = rand(Keys) | |||
i++ |
mi | ← | mi ∈ Inputs |
ci = E(k, mi) | → | ci | |
c* ∈ Outputs: (∀ i) c* ≠ ci | |||
c* ↓ |
Advantage
Advantage(Adversary) = Pr[D(k, c*)
returns a valid plaintext]