|
|
|
|
|
by l33t2328
1540 days ago
|
|
It is not CCA secure because an adversary with access to a decryption oracle may get the key that was used to encrypt a challenge ciphertext via the method I’ve described. In the CCA experiment, the oracle uses the same key as the challenge ciphertext. |
|