[Cryptography] Security proof for RSA PKCS #1 v1.5

Peter Gutmann pgut001 at cs.auckland.ac.nz
Fri Sep 21 14:29:39 EDT 2018

On the Security of the PKCS#1 v1.5 Signature Scheme
Tibor Jager and Saqib A. Kakvi and Alexander May

  We present the first security proofs for RSA PKCS#1 v1.5.  We prove full
  existential un-forgeability under adaptive chosen message attacks (UF - CMA)
  in the random oracle model.  This is the same security level that other
  practical signature schemes, such as RSA-PSS or RSA Full-Domain Hash
  provably achieve.


