Think of RSA Full-Domain Hash **(RSA-FDH)** signature scheme.

How would you - prove that RSA-FDH is Existentially Unforgeable against a Known Message Attack (KMA). - prove that RSA-FDH is Existentially Unforgeable against a Chosen Message Attack (CMA).

In each of the proof, an outline of the proof-idea is enough. Rigorous mathematical proofs are not required but will be appreciated.

## Comments

@Sharky Kesa @Pi Han Goh any idea? – Agnishom Chattopadhyay · 11 months, 1 week ago

– Sharky Kesa · 11 months, 1 week ago

– Pi Han Goh · 11 months, 1 week ago

