Interactive Proofs
and Zero-Knowledge
y
∉
QR
n
Pr(
$
a, a
2
mod n=w•y
b
mod n)
≤
1/2