On insecurity of Naor-Pinkas' distributed oblivious transfer

This paper analyses the security of Naor–Pinkas' distributed oblivious transfer [M. Naor, B. Pinkas, Distributed oblivious transfer, in: Advances in Cryptology—Proceedings of ASIACRYPT'00, Lecture Notes in Computer Science, vol. 1976, Springer-Verlag, 2000]. It is shown that the schemes presented in the paper do not protect the chooser/sender in the information theoretic sense.