2026-09-24 20:49 UTC
The world has known for decades that the RSA cryptosystem’s days are numbered.
Once quantum computing becomes practical
(estimates for that range from 3 to 20 or more years),
the foundational security it provides will crumble.
New research has revealed a novel method that uses classical computing to reduce the current RSA security level to an unacceptably low threshold.
The practical risk is limited, but still significant.
Applying the attack against the deprecated use of 1024-bit keys took a handful of months on an academic CPU cluster,
significantly less than the current estimates for 1024-bit factoring that would require resources that only nations or companies with massive resources could achieve.
Widely used RSA implementations are also safe.
Nonetheless, the research has taken cryptographers by surprise because it introduces 👉 signature forgery,
a new way to break RSA keys without factoring.
Equally important, this novel method reduces the required computing resources by orders of magnitude.
“If this result holds up under peer review, it would indeed be a conceptual break-through,”
Karsten Nohl, a cryptography expert and the head of innovation at Allurity, said in an interview.
“RSA is as difficult to break as it is to factor large integers, at least so we thought.
The researcher suggests that you can practically break RSA without cracking its key.”
The paper’s authors and other researchers stress that the new attack poses little real-world threat,
at least for now.
It does, however, drastically lower the estimated security of RSA,
and it does so in a way no one knew of previously.
#signatureforgery #rsa
https://arstechnica.com/security/2026/09/theres-a-new-way-to-break-rsa-thats-faster-than-anything-weve-seen-before/
Replies (0)
No replies.