Cryptanalysis of RSA with private key d less than N0:292

  • Authors:
  • Dan Boneh;Glenn Durfee

  • Affiliations:
  • Computer Science Department, Stanford University, Stanford, CA;Computer Science Department, Stanford University, Stanford, CA

  • Venue:
  • EUROCRYPT'99 Proceedings of the 17th international conference on Theory and application of cryptographic techniques
  • Year:
  • 1999

Quantified Score

Hi-index 0.00

Visualization

Abstract

We show that if the private exponent d used in the RSA public-key cryptosystem is less than N0:292 then the system is insecure. This is first improvement over an old result of Wiener showing that when d N0:25 the RSA system is insecure. We hope our approach can be used to eventually improve the bound to d N0:5.