RUS  ENG
Full version
JOURNALS // Diskretnaya Matematika // Archive

Diskr. Mat., 2023 Volume 35, Issue 3, Pages 71–80 (Mi dm1773)

Wiener attack and weak keys of RSA cryptosystem

A. E. Trishin

LLC «Certification Research Center», Moscow

Abstract: It is proved that the generalized Wiener attack on the RSA cryptosystem permits to find not only small, but also some large secret exponents $d$, and the fraction of exponents $d$, which are weak with respect to this attack is heuristically estimated as $O(N^{-1/2})$.

Keywords: RSA cryptosystem, continued fractions, small secret exponent, Weiner attack.

UDC: 519.719.2

Received: 25.04.2023

DOI: 10.4213/dm1773



© Steklov Math. Inst. of RAS, 2026