Cryptography Reference
In-Depth Information
Exercise 1.3.8
Do “textbook” RSA signatures have selective forgery security under a
passive attack?
Exercise 1.3.9
Show that there is a passive existential forgery attack on “textbook” RSA
signatures.
Exercise 1.3.10
Show that, under a chosen-message attack, one can selectively forge
“textbook” RSA signatures.