Cma to nma advantage bound
FiatShamir.cma_to_nma_advantage_bound
Plain-language statement
CMA-to-NMA reduction for Fiat-Shamir signatures built from a Sigma protocol. The reduction runs the CMA adversary with simulated signing transcripts and a managed random oracle, then appends a single explicit live random-oracle query for the forgery's hash point so that the verification challenge is part of the forkable transcript (the `nmaAdvFromCmaWithF...
Source project: VCVio
Person-level attribution pending.