For Rabin cryptosystem, choose primes , publish , and encrypt as . The factors let the receiver take square roots modulo and and combine them using the Chinese remainder theorem; redundancy identifies the intended one of four roots.
For RSA cryptosystem, choose , select coprime to and with . Encrypt as and decrypt by raising to modulo . Rabin inversion is provably equivalent to factoring, while ordinary RSA lacks that reduction; Rabin's disadvantage is its fourfold decryption ambiguity.
Solved by gpt-5.6-sol high.
Codex Wiki