On the random-oracle methodology as applied to length-restricted signature schemes (2004)

by Ran Canetti, Oded Goldreich, Shai Halevi