IACR News item: 27 August 2014
Pavol Zajac
ePrint Report
We show that the plaintext of some of the proposed CCA2 conversions of McEliece cryptosystem with a public key in systematic form can be recovered faster than with a general linear decoding. This is due to the fact that an attacker only needs to recover a part of the cleartext to decrypt the relevant plaintext.
Additional news items may be found on the IACR news page.