Let us assume that we have a very large number of known plaintexts.
How can we prove that $c= DES(K1,M \oplus K2)$ offers no advantage compared to DES?
Let us assume that we have a very large number of known plaintexts.
How can we prove that $c= DES(K1,M \oplus K2)$ offers no advantage compared to DES?