Let be a Cryptosystem. Let and be random variables taking values in finite and Let The unicity distance is the least such that (i.e. given encrypted messages, we can find ) If doesn’t exist, then Now: Assume: all keys are equally likely, so where (i.e. msgs are independent) All ciphertext is equally likely so So we get: and: