Iwata, T., & Seurin, Y. (2017). Reconsidering the Security Bound of AES-GCM-SIV. IACR Transactions on Symmetric Cryptology, 2017(4), 240–267. https://doi.org/10.13154/tosc.v2017.i4.240-267