[Cryptography] RSA Key Extraction via Low-Bandwidth Acoustic Cryptanalysis

Werner Koch wk at gnupg.org
Thu Dec 19 06:22:23 EST 2013


On Thu, 19 Dec 2013 01:19, anzalaya at gmail.com said:

> Have you trief this out against openssl ? How succesful do you think it
> would be ?

OpenSSL seems not to be vulnerable.  The reason is that OpenSSL uses
Montgomery multiplication which protects against this concrete attack.
The attack is based on the specific way GnuPG switches between Karatsuba
and simple multiplication.


Shalom-Salam,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.



More information about the cryptography mailing list