“…However, Hong, Preneel and Lee [7] have shown that if F SS (n, m, p) is a (t, ) kth order UOWHF for some k > 0 and L ≤ k + 1, then the MD family F SS ( , m) is approximately a (t, L · ) UOWHF. Combined with our result (Theorem 2), we conclude that for k = O(log m), the MD family F SS ( , m) is a UOWHF for L ≤ k + 1, assuming only the hardness of SubSum(n, m, p).…”