where the expectation runs over
where the expectation runs over
any probability space used by the adversary and challenger.
- We shall optimize our adversary in ways that maximize $p \over b + p$.
We shall optimize our adversary in ways that maximize $p \over b + p$ by
proving the optimised adversary exists. We may then restrict our analysis
to these optimised adversaries, which suffices for our game result, but
note that reductions would not permit this trick.
+ We shall optimize our adversary in ways that maximize $p \over b + p$ by
+ proving the optimised adversary exists. We may then restrict our analysis
+ to these optimised adversaries, which suffices for our game result, but
+ note that reductions would not permit this trick.
+ %TODO: Improve??
As a reminder, if a refresh operation is initiated using a false commitment
that is detected by the exchange, then the new coin cannot be obtained, and