期刊文献+

私钥p,q共享低位比特RSA体制的小指数攻击

The Attack on RSA with Small Private Key and Primes Sharing Least-Significant Bits
下载PDF
导出
摘要 本文研究了组成RSA模数的两个素数p和q其低位比特相同,RSA公开密钥密码系统的安全性。其结果表明若RSA模数的两个素因子p和q共享低位比特,则当私钥d较小时这样的体制相对于模数不平衡的RSA更易受到攻击。本文的研究结果表明,当组成RSA模数的两个素数p和q仅有少量比特不相同时,使用规模较小的私钥d必须十分慎重。 In this paper, the security of RSA system is studied if the private keys p and q share their least significant bits. The result shows that RSA system is more vulnerable in this condition when the private key d is small, So it should be careful to void this kind of weak key.
出处 《电子与信息学报》 EI CSCD 北大核心 2008年第6期1453-1456,共4页 Journal of Electronics & Information Technology
基金 国家自然科学基金(60673081) 国家863计划项目(2006AA01Z417)资助课题
关键词 RSA密码系统 格攻击 共享低位比特 RSA cryptosystem Lattice attack Least-significant bits
  • 相关文献

参考文献12

  • 1Wiener M. Cryptanalysis of short RSA secret exponents. IEEE Trans. on Information Theory, 1990, 36(3): 553-558.
  • 2Boneh D and Durfee G. Cryptanalysis of RSA with private key d less than N^0.292. IEEE Trans. on Information Theory, 2000, 46(4): 1339-1349.
  • 3Coppersmith D. Finding a small root of a univariate modular equation. Eurocrypt 96, Saragossa, Spain, 1996, LNCS 1070: 155-165.
  • 4Coppersmith D. Finding a small root of a bivariate integer equation; factoring with high bits known. Eurocrypt 96, Saragossa, Spain, 1996, LNCS 1070: 178-189.
  • 5Coppersmith D. Finding small solutions to small degree polynomials. CalC 2001, Providence, RI, USA, 2001, LNCS 2146: 178-189.
  • 6Sun H M, Yang W C, and Laih C S. On the design of RSA with short secret exponent. Asiscrypt 1999, Singapore, 1999, LNCS 1716: 150-164.
  • 7Durfee G and Nguyen P Q. Cryptanalysis of the RSA schemes with short secret exponent from Asiscrypt'99. Asiscrypt 2000, Kyoto, Japan, 2000, LNCS 1976: 14-29.
  • 8Steinfeld R and Zheng Y L. An advantage of low-exponent RSA with modulus primes sharing least significant bits.CT-RSA 2001, San Francisco, CA, USA, 2001, LNCS 2020: 52-62.
  • 9Steinfeld R and Zheng Y L. On the security of RSA with primes sharing least significant bits. Applicable Algebra in Engineering Communication and Computing, 2004, 15(3): 179-200.
  • 10Weger B D. Cryptanalysis of RSA with small prime difference. Applicable Algebra in Engineering Communication and Computing, 2003, 13: 17-28.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部