Partial Key Exposure Attacks on RSA with Moduli N=p r q s
Simeng Yuan, Wei Yu, Kunpeng Wang, Xiuxiu Li · 2022 IEEE International Symposium on Information Theory (ISIT) · 2022
Many fast variants of RSA are designed to speed up encryption and decryption. Prime power RSA (PP-RSA) is one of the most important variants. It is widely used in electronic money trading systems and high-speed programs. At present, the security of PP-RSA with moduli N = prqshas not been fully studied. In this paper, we give three powerful attacks based on Coppersmith’s method, applying to the cases when the most significant bits or the least significant bits of the private key are known. Our attacks work in polynomial time. This is the first work on partial key exposure attacks of PP-RSA with moduli N = prqs.