0

In this paper Maurer and Aggarwal showed that in generic model of computation breaking RSA is equivalent to factoring. It is also known that the LSB of an encrypted message is as hard as breaking RSA.(i.e If there is an algorithm that find the lsb of the message m from the ciphertext c, then we can recover m). So I was wondering, does it follow that the LSB of RSA is a hard as factoring in the generic model of computation?

Marc Ilunga
  • 4,042
  • 1
  • 13
  • 24

0 Answers0