‹ BackHN Continuity

Thread

Forging 1024-bit RSA signatures in nearly SNFS time [pdf]

72 points · 22 comments · int0x29

  1. RossBencina · · focus · HN ↗
    I was expecting to see mention of Microsoft/Apple executable code-signing in the examples. I know key lengths are well beyond 1024 now, but on the Microsoft side it was (is?) possible for USB tokens to be distributed in the mail. What I don't know is whether the tokens could be used as oracles in this attack.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.