OAEP++ : A Very Simple Way to Apply OAEP to Deterministic OW-CPA Primitives

Kazukuni Kobara and Hideki Imai

Abstract: We prove in the random oracle model that OAEP++, which was proposed by us at the rump session of Asiacrypt 2000, can generate IND-CCA2 ciphers using deterministic OW-CPA cryptographic primitives. Note that OAEP++ differs from OAEP$^{++}$ proposed by Jonsson in \cite{Jon02}. While OAEP$^{++}$ requires a non-malleable block cipher, OAEP++ does not require such additional functions. The security reduction of OAEP++ is as tight as that of OAEP$^{++}$.

Category / Keywords: foundations / random oracle model, provable security, OAEP, IND-CCA2, OW-CPA

Date: received 26 Aug 2002

