Cryptanalysis of RSA variants using small roots of polynomials

Ellen Jochemsz · TU/e Research Portal · 2007

Attacks on RSA-CRT variantsIn this chapter we discuss the known attacks on RSA-CRT variants.Moreover, we discuss a new attack on CRT-Small-d p , d q (that also affects the security of CRT-BalancedExponents), and a new attack on CRT-Qiao&Lam.Section 5.3 is based on [37] and Section 5.4 is based on [38], both of which are joint papers with Alexander May.

Read the paper · More papers on PaperTik