I tutor the lecture about cryptanalysis at Freie Universität Berlin. This week I had a discussion about the RSA-OAEP padding and the used hash functions. The question was why the proof for the semantic security needs ideal hash functions. The short answer is the random oracle model. The long answer can be found in this post. Random Oracle Mode... Read more 05 May 2020 - 8 minute read