“Revisiting Variable Output Length XOR Pseudorandom Function”. 2018. IACR Transactions on Symmetric Cryptology 2018 (1): 314-35. https://doi.org/10.13154/tosc.v2018.i1.314-335.