You can prevent a forward search attack on a public key cryptosystem by padding with random bits.
a) Why would we like to minimize the amount of random padding?
b) How many bits of random padding are needed? Justify your an- swer.
c) Other than padding, is there another simple and practical method for preventing a forward search attack?