Partial Key Exposure on RSA with Private Exponents Larger Than N

作者: Marc Joye , Tancrède Lepoint

DOI: 10.1007/978-3-642-29101-2_25

关键词:

摘要: In 1998, Boneh, Durfee and Frankel described several attacks against RSA enabling an attacker given a fraction of the bits private exponent d to recover all d. These were later improved extended in various ways. They however always consider that is smaller than modulus N. When it comes implementation, can be enlarged value larger N so as improve performance (by lowering its Hamming weight) or increase security preventing certain side-channel attacks). This paper studies this setting quantifies number required mount practical partial key exposure attacks. Both cases known most significant (MSBs) least (LSBs) are analyzed. Our results based on Coppersmith's heuristic methods validated by experiments run through SAGE computer-algebra system.

参考文章(54)
Progress in Cryptology - INDOCRYPT 2010 Lecture Notes in Computer Science. ,vol. 6498, ,(2010) , 10.1007/978-3-642-17401-8
Santanu Sarkar, Partial Key Exposure: Generalized Framework to Attack RSA Lecture Notes in Computer Science. pp. 76- 92 ,(2011) , 10.1007/978-3-642-25578-6_7
Johannes Blömer, Alexander May, New Partial Key Exposure Attacks on RSA Advances in Cryptology - CRYPTO 2003. pp. 27- 43 ,(2003) , 10.1007/978-3-540-45146-4_2
Jean-Sébastien Coron, Finding Small Roots of Bivariate Integer Polynomial Equations: A Direct Approach Advances in Cryptology - CRYPTO 2007. pp. 379- 394 ,(2007) , 10.1007/978-3-540-74143-5_21
Jens Groth, Aggelos Kiayias, Helger Lipmaa, Multi-query computationally-private information retrieval with constant communication rate public key cryptography. pp. 107- 123 ,(2010) , 10.1007/978-3-642-13013-7_7
Nicholas Howgrave-Graham, Finding Small Roots of Univariate Modular Equations Revisited Lecture Notes in Computer Science. pp. 131- 142 ,(1997) , 10.1007/BFB0024458
Santanu Sarkar, Sourav Sen Gupta, Subhamoy Maitra, Partial Key Exposure Attack on RSA – Improvements for Limited Lattice Dimensions Progress in Cryptology - INDOCRYPT 2010. pp. 2- 16 ,(2010) , 10.1007/978-3-642-17401-8_2
Dan Boneh, Glenn Durfee, Cryptanalysis of RSA with private key d less than N 0:292 theory and application of cryptographic techniques. pp. 1- 11 ,(1999) , 10.1007/3-540-48910-X_1