Paper 2025/1282
A Novel Partial Key Exposure Attack on Common Prime RSA
Abstract
We propose a novel partial key exposure attack on common prime RSA by leveraging lattice-based techniques. In common prime RSA, the primes $p$ and $q$ are defined as $p=2ga+1$ and $q=2gb+1$ for a common prime $g$. Recently, Zheng introduced the first partial key exposure attack on this scheme; however, it is limited to instances where $g > N^{1/4}$. In contrast, our work investigates deeper into partial key exposure attacks by presenting a unified generic case that targets one consecutive unknown block of the private key. By employing a lattice-based solving strategy for trivariate integer polynomials, we can effectively identify additional weak private keys that are vulnerable to partial exposure. Extensive numerical experiments validate the correctness and practicality of our proposed attack on common prime RSA.
Metadata
- Available format(s)
-
PDF
- Category
- Attacks and cryptanalysis
- Publication info
- Published elsewhere. Minor revision. Africacrypt 2025
- Keywords
- Common Prime RSACryptanalysisLatticePartial Key Exposure AttackTrivariate Integer Polynomial
- Contact author(s)
-
mengce zheng @ gmail com
abderrahmane nitaj @ unicaen fr - History
- 2025-07-14: approved
- 2025-07-13: received
- See all versions
- Short URL
- https://ia.cr/2025/1282
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2025/1282,
author = {Mengce Zheng and Abderrahmane Nitaj},
title = {A Novel Partial Key Exposure Attack on Common Prime {RSA}},
howpublished = {Cryptology {ePrint} Archive, Paper 2025/1282},
year = {2025},
url = {https://eprint.iacr.org/2025/1282}
}