Loading...
Please wait, while we are loading the content...
Similar Documents
On the broadcast and validity-checking security of pkcs#1 v1.5 encryption ⋆.
| Content Provider | CiteSeerX |
|---|---|
| Author | Bauer, Aurélie Coron, Jean-Sébastien Naccache, David Vergnaud, Damien |
| Abstract | Abstract. This paper describes new attacks on pkcs#1 v1.5, a deprecated but still widely used rsa encryption standard. The first cryptanalysis is a broadcast attack, allowing the opponent to reveal an identical plaintext sent to different recipients. This is nontrivial because different randomizers are used for different encryptions (in other words, plaintexts coincide only partially). The second attack predicts, using a single query to a validity checking oracle, which of two chosen plaintexts corresponds to a challenge ciphertext. The attack’s success odds are very high. The two new attacks rely on different mathematical tools and underline the need to accelerate the phase out of pkcs#1 v1.5. |
| File Format | |
| Access Restriction | Open |
| Subject Keyword | Validity-checking Security New Attack Broadcast Attack Identical Plaintext Second Attack Predicts Challenge Ciphertext Different Randomizers Plaintexts Coincide Single Query Chosen Plaintexts Corresponds Rsa Encryption Standard Attack Success Odds Different Recipient First Cryptanalysis Different Mathematical Tool Different Encryption |
| Content Type | Text |
| Resource Type | Article |