Practical algorithm substitution attack on extractable signatures