首页> 外文期刊>The Computer journal >Cryptanalysis of Server-Aided RSA Protocols with Private-Key Splitting
【24h】

Cryptanalysis of Server-Aided RSA Protocols with Private-Key Splitting

机译:具有私钥拆分的服务器辅助RSA协议的密码分析

获取原文
获取原文并翻译 | 示例
           

摘要

We analyze the security and the efficiency of interactive protocols where a client wants to delegate the computation of an RSA signature given a public key, a public message and the secret signing exponent. We consider several protocols where the secret exponent is split using some algebraic decomposition. We first provide an exhaustive analysis of the delegation protocols in which the client outsources a single RSA exponentiation to the server. We then revisit the security of the protocols RSA-S1 and RSA-S2 that were proposed by Matsumoto, Kato and Imai in 1988. We present an improved lattice-based attack on RSA-S1 and we propose a simple variant of this protocol that provides better efficiency for the same security level. Eventually, we present the first attacks on the protocol RSA-S2 that employs the Chinese Remainder Theorem to speed up the client's computation. The efficiency of our (heuristic) attacks has been validated experimentally.
机译:我们分析了交互式协议的安全性和效率,其中客户端希望在给定公共密钥,公共消息和秘密签名指数的情况下委托RSA签名的计算。我们考虑几种协议,其中使用某些代数分解来分割秘密指数。我们首先对委派协议进行详尽的分析,其中客户端将单个RSA指数外包给服务器。然后,我们重新讨论1988年由Matsumoto,Kato和Imai提出的RSA-S1和RSA-S2协议的安全性。我们提出了一种基于改进的基于网格的RSA-S1攻击,并且提出了该协议的一种简单变体,它提供对于相同的安全级别,效率更高。最终,我们提出了对使用中国剩余定理来加速客户端计算的RSA-S2协议的首次攻击。我们(启发式)攻击的效率已通过实验验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号