October 13, 2006
NIST Reports Attack on RSA
The Computer Security Resource Center at NIST has found an attack on some implementations of RSA digital signatures using the padding scheme of PCKS-1.
A paper describing the attack in details is available.
A similar attack could also be applied to implementations of digital signatures as specified in American National Standard (ANS) X9.31. Note that this attack is not on the RSA algorithm itself, but on improper implementations of the signature verification process.
Posted by Jon Erickson at 11:15 AM Permalink
|