Efficient CRT-RSA Decryption for Small Encryption Exponents

被引:0
|
作者
Maitra, Subhamoy [1 ]
Sarkar, Santanu [1 ]
机构
[1] Indian Stat Inst, Appl Stat Unit, Kolkata 700108, India
来源
TOPICS IN CRYPTOLOGY - CT-RSA 2010, PROCEEDINGS | 2010年 / 5985卷
关键词
RSA; CRT-RSA; Key Generation; Efficient Decryption; Primes; Exponents; KEY EXPOSURE ATTACKS; CRYPTANALYSIS;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Consider CRT-RSA with the parameters p,q,e, d(p), d(q), where p,g are secret primes, e is the public encryption exponent and d(p), d(q) are the private decryption exponents. We present an efficient method to select CRT-RSA parameters in such a manner so that the decryption becomes faster for small encryption exponents. This is the most frequently used situation for application of RSA in commercial domain. Our idea is to choose e and the factors (with low Hamming weight) of d(p), d(q) first and then applying the extended Euclidean algorithm, we obtain p, q of same bit size. For small e, we get an asymptotic reduction of the order of 1/3 in the decryption time compared to standard CRT-RSA parameters for large N = pq. In case of practical parameters, with 1024 bits N and e = 2(16) + 1, we achieve a reduction of more than 27%. Extensive security analysis is presented for our selected parameters and benchmark examples are also provided.
引用
收藏
页码:26 / 40
页数:15
相关论文
共 50 条
  • [1] Side Channel Attack to Actual Cryptanalysis: Breaking CRT-RSA with Low Weight Decryption Exponents
    Sarkar, Santanu
    Maitra, Subhamoy
    CRYPTOGRAPHIC HARDWARE AND EMBEDDED SYSTEMS - CHES 2012, 2012, 7428 : 476 - 493
  • [2] Faster CRT-RSA decryption towards RFID applications
    Maitra S.
    Sarkar S.
    Chowdhury M.U.
    Cryptology and Information Security Series, 2010, 4 : 61 - 72
  • [3] Partial Key Exposure Attack on CRT-RSA
    Sarkar, Santanu
    Maitra, Subhamoy
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY, 2009, 5536 : 473 - 484
  • [4] New Partial Key Exposure Attacks on CRT-RSA with Large Public Exponents
    Lu, Yao
    Zhang, Rui
    Lin, Dongdai
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY, ACNS 2014, 2014, 8479 : 151 - 162
  • [5] On an attack on RSA with small CRT-exponents
    HAN LiDong 1
    2 School of Mathematics
    3 Institute for Advanced Study
    4 Department of Electrical Engineering and Computer Science
    Science China(Information Sciences), 2010, 53 (08) : 1511 - 1518
  • [6] On an attack on RSA with small CRT-exponents
    Han LiDong
    Wang XiaoYun
    Xu GuangWu
    SCIENCE CHINA-INFORMATION SCIENCES, 2010, 53 (08) : 1511 - 1518
  • [7] On an attack on RSA with small CRT-exponents
    LiDong Han
    XiaoYun Wang
    GuangWu Xu
    Science China Information Sciences, 2010, 53 : 1511 - 1518
  • [8] An optimised homomorphic CRT-RSA algorithm for secure and efficient communication
    Abid R.
    Iwendi C.
    Javed A.R.
    Rizwan M.
    Jalil Z.
    Anajemba J.H.
    Biamba C.
    Personal and Ubiquitous Computing, 2023, 27 (3) : 1405 - 1418
  • [9] Partial Key Exposure Attack on CRT-RSA
    Sarkar, Santanu
    Venkateswarlu, Ayineedi
    PROGRESS IN CRYPTOLOGY - INDOCRYPT 2014, 2014, 8885 : 255 - 264
  • [10] Cryptanalysis of RSA with two decryption exponents
    Sarkar, Santanu
    Maitra, Subhamoy
    INFORMATION PROCESSING LETTERS, 2010, 110 (05) : 178 - 181