# The Cryptographic Security of the Sum of Bits

### Richard Berger, Howard J. Karloff and David B. Shmoys

###
EECS Department

University of California, Berkeley

Technical Report No. UCB/CSD-84-190

June 1984

### http://www.eecs.berkeley.edu/Pubs/TechRpts/1984/CSD-84-190.pdf

We show that if there exists a deterministic oracle that can determine the sum of the bits in the binary representation of
*x* when presented with the RSA encryption of
*x*, then there exists a probabilistic algorithm using this oracle to recover
*x* when presented with the RSA encryption of
*x*. We present a similar result for Rabin encryption.

