Exercise 1: Malleability of AES in CBC mode. Exercise 2: Proof: If BC is a strong PRP, then it is IND-OT-CPA.