Feedback is always appreciated, right? so take back your HW#4 (and HW#3, if you hadn't already taken it).

Don't worry, we will maintain the conservative approximation of 100 to HW#4 grade when calculating the total HW grade (even though you may have a bit less…)

Moed A
Here is Moed A.


I also sent an email with sketch of solutions, but you'd better try to solve the exam on your own first.

You'd better prove that $Pr\left(X_i^j \textrm{ is new}\right) > e^{-ijt/|X|$; this will make the next step more plausible.
Thanks to Yossi for pointing this out.

I plan to go over these exams (as much as time permits) on Tuesday. It will probably
be more useful for you if you take a look at the questions beforehand.


We don't have a whole lot of examples, but here are exams from the past years.

In question 5, the third from last line should read "for every degree 2 polynomial" instead of
the previous "degree 3".

It might not be clear from Problem 1 itself, but Prudence is not required to recover $p$ in a single shot;
if, for example, in a single attempt she can rule out 10% of the remaining passwords in the dictionary, then with $\log_{10/9}(2^{30}) \approx 200$ attempts she can single out the correct password.

We decided you could use another week, so you may submit assignment 3 until December 30th.

Please note that when you are asked to find collisions wrt a hash function H, namely
two mssgs m1,m2 s.t. H(m1)=H(m2), these messages can be of different lengths.

All problems except problem 3 (the substitution cipher questions) are due on Wed., Nov. 11, 6:20 pm, Israel time.

Problem 3 is due on Sunday, Nov. 15, 5 pm, Israel time.

In both cases, the destination is Rani Hod’s mailbox (second floor, Schreiber building).

Hints and answers to FAQs appear now on the FAQ page.

