Paper 2025/1282

A Novel Partial Key Exposure Attack on Common Prime RSA

Mengce Zheng, Zhejiang Wanli University
Abderrahmane Nitaj, Normandie Univ, UNICAEN, CNRS, LMNO
Abstract

We propose a novel partial key exposure attack on common prime RSA by leveraging lattice-based techniques. In common prime RSA, the primes $p$ and $q$ are defined as $p=2ga+1$ and $q=2gb+1$ for a common prime $g$. Recently, Zheng introduced the first partial key exposure attack on this scheme; however, it is limited to instances where $g > N^{1/4}$. In contrast, our work investigates deeper into partial key exposure attacks by presenting a unified generic case that targets one consecutive unknown block of the private key. By employing a lattice-based solving strategy for trivariate integer polynomials, we can effectively identify additional weak private keys that are vulnerable to partial exposure. Extensive numerical experiments validate the correctness and practicality of our proposed attack on common prime RSA.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Published elsewhere. Minor revision. Africacrypt 2025
Keywords
Common Prime RSACryptanalysisLatticePartial Key Exposure AttackTrivariate Integer Polynomial
Contact author(s)
mengce zheng @ gmail com
abderrahmane nitaj @ unicaen fr
History
2025-07-14: approved
2025-07-13: received
See all versions
Short URL
https://ia.cr/2025/1282
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/1282,
      author = {Mengce Zheng and Abderrahmane Nitaj},
      title = {A Novel Partial Key Exposure Attack on Common Prime {RSA}},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/1282},
      year = {2025},
      url = {https://eprint.iacr.org/2025/1282}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.