Lattice Attacks on RSA-Encrypted IP and TCP

  • Authors:
  • Paul A. Crouch;James H. Davenport

  • Affiliations:
  • -;-

  • Venue:
  • Proceedings of the 8th IMA International Conference on Cryptography and Coding
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

We introduce a hypothetical situation in which low-exponent RSA is used to encrypt IP packets, TCP segments, or TCP segments carried in IP packets. In this scenario, we explore how the Coppersmith/Howgrave-Graham method can be used, in conjunction with the TCP and IP protocols, to decrypt specific packets when they get retransmitted (due to a denial-of-service attack on the receiver's side). We draw conclusions on the applicability of the Coppersmith/Howgrave-Graham method, its interaction with "guessing", and the difficulties of building a secure system by combining well-known building blocks.