Under ROM, our challenger can use a much simpler bijection to replace the current permutation.
Under ROM, our challenger can use a much simpler bijection to replace the current permutation.