Novel attack slashes computing power needed to crack textbook RSA
Researchers from UC San Diego and Inria Nancy describe an attack on textbook RSA that cuts the operations needed to recover a key from 2^80–2^144 down to 2^65–2^119 for 1024–4096-bit keys. The attack requires billions of oracle queries and has not yet passed peer review.
- For 2048-bit keys, complexity drops from 2^112 to 2^90 operations
- The attack only targets textbook RSA without padding
- Cloudflare Privacy Pass, iCloud Private Relay and HSM/TPM are affected
- Billions of oracle queries are needed, making detection likely
Read next
Security