We show that if the private exponent d used in the RSA public-key cryptosystem is less than N0:292 then the system is insecure. This is the first improvement over an old result of Wiener showing that when d < N0:25 the RSA system is insecure. We hope our approach can be used to eventually improve the bound to d < N0:5.
CITATION STYLE
Boneh, D., & Durfee, G. (1999). Cryptanalysis of RSA with private key d less than n0:292. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 1592, pp. 1–11). Springer Verlag. https://doi.org/10.1007/3-540-48910-X_1
Mendeley helps you to discover research relevant for your work.