Lattice Attacks on Digital Signature Schemes

  • Authors:
  • N. A. Howgrave-Graham;N. P. Smart

  • Affiliations:
  • IBM, T. J. Watson Research Center, 30 Saw Mill River Road, Hawthorne, NY 10532 nahg@watson.ibm.com;Department of Computer Science, Woodland Road, Bristol University, Bristol, BS8 1UB nigel@cs.bris.ac.uk

  • Venue:
  • Designs, Codes and Cryptography
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

We describe a lattice attack on the Digital Signature Algorithm (DSA) when used to sign many messages, m_i, under the assumption that a proportion of the bits of each of the associated ephemeral keys, y_i, can be recovered by alternative techniques.