Efficient CRT-RSA Decryption for Small Encryption Exponents

被引:0
作者
Maitra, Subhamoy [1 ]
Sarkar, Santanu [1 ]
机构
[1] Indian Stat Inst, Appl Stat Unit, Kolkata 700108, India
来源
TOPICS IN CRYPTOLOGY - CT-RSA 2010, PROCEEDINGS | 2010年 / 5985卷
关键词
RSA; CRT-RSA; Key Generation; Efficient Decryption; Primes; Exponents; KEY EXPOSURE ATTACKS; CRYPTANALYSIS;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Consider CRT-RSA with the parameters p,q,e, d(p), d(q), where p,g are secret primes, e is the public encryption exponent and d(p), d(q) are the private decryption exponents. We present an efficient method to select CRT-RSA parameters in such a manner so that the decryption becomes faster for small encryption exponents. This is the most frequently used situation for application of RSA in commercial domain. Our idea is to choose e and the factors (with low Hamming weight) of d(p), d(q) first and then applying the extended Euclidean algorithm, we obtain p, q of same bit size. For small e, we get an asymptotic reduction of the order of 1/3 in the decryption time compared to standard CRT-RSA parameters for large N = pq. In case of practical parameters, with 1024 bits N and e = 2(16) + 1, we achieve a reduction of more than 27%. Extensive security analysis is presented for our selected parameters and benchmark examples are also provided.
引用
收藏
页码:26 / 40
页数:15
相关论文
共 50 条
[11]   A new attack on RSA with two or three decryption exponents [J].
Nitaj, Abderrahmane .
JOURNAL OF APPLIED MATHEMATICS AND COMPUTING, 2013, 42 (1-2) :309-319
[12]   Cryptanalysis of RSA with small difference of primes and two decryption exponents: Jochemsz and May approach [J].
Kumar, R. Santosh ;
Krishna, S. R. M. .
CRYPTOLOGIA, 2023, 47 (06) :570-583
[13]   New attacks on RSA with small secret CRT-exponents [J].
Bleichenbacher, Daniel ;
May, Alexander .
PUBLIC KEY CRYPTOGRAPHY - PKC 2006, PROCEEDINGS, 2006, 3958 :1-13
[14]   CRT-RSA 算法的选择明文攻击 [J].
李增局 ;
彭乾 ;
史汝辉 ;
李超 ;
马志鹏 ;
李海滨 .
密码学报, 2016, 3 (05) :447-461
[15]   CRT-RSA算法安全性分析 [J].
费晓飞 ;
胡捍英 .
微计算机信息, 2009, 25 (03) :54-55+38
[16]   Partial Key Exposure Attack on Short Secret Exponent CRT-RSA [J].
May, Alexander ;
Nowakowski, Julian ;
Sarkar, Santanu .
ADVANCES IN CRYPTOLOGY - ASIACRYPT 2021, PT I, 2021, 13090 :99-129
[17]   Trading decryption for speeding encryption in Rebalanced-RSA [J].
Sun, Hung-Min ;
Wu, Mu-En ;
Hinek, M. Jason ;
Yang, Cheng-Ta ;
Tseng, Vincent S. .
JOURNAL OF SYSTEMS AND SOFTWARE, 2009, 82 (09) :1503-1512
[18]   (In)security against fault injection attacks for CRT-RSA implementations [J].
Berzati, Alexandre ;
Canovas, Cecile ;
Goubin, Louis .
FDTC 2008: FAULT DIAGNOSIS AND TOLERANCE IN CRYPTOGRAPHY, PROCEEDINGS, 2008, :101-+
[19]   A CRT-RSA algorithm secure against hardware fault attacks [J].
Liu, Sining ;
King, Brian ;
Wang, Wei .
DASC 2006: 2ND IEEE INTERNATIONAL SYMPOSIUM ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, PROCEEDINGS, 2006, :51-+
[20]   部分私钥泄露下的CRT-RSA分析 [J].
袁海峰 ;
屈龙江 ;
王世雄 ;
杨智超 ;
李超 .
系统科学与数学, 2018, 38 (12) :1449-1463