Cheating in split-knowledge RSA parameter generation

نویسندگان

  • Marc Joye
  • Richard Pinch
چکیده

Cocks [4] has recently described a protocol for two parties to generate an RSA modulus N = PQ where neither party has knowledge of the factorisation, but which enables the parties to collaborate to decipher a encrypted message. We describe a number of ways in which it is possible for one of the parties to the protocol to cheat and obtain knowledge of the factorisation, and suggest modifications to the protocol to guard against cheating.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Split Knowledge Generation of RSA Parameters

We show how it is possible for two parties to cooperate in generating the parameters for an RSA encryption system in such a w a y that neither individually has the ability to decrypt enciphered data. In order to decrypt data the two parties instead follow the cooperative procedure described.

متن کامل

The security of an RSA-based cut-and-choose protocol

We investigate the security of an RSA-based cut-and~choose protocol (see Figure 1) that is used in untraceable electronic cash systems (e.g. [3, 8, 9, 10]) and credential systems (e.g. [2]). It is a protocol between a user and the signature authorithy. Only the latter is able to compute RSA-signatures. The protocol enables the user to obtain a special RSA-signature that represents money (in cas...

متن کامل

Ten Years of RSA Cheating Cryptosystems

RSA cheating cryptosystems were first introduced by Anderson and developed by Young and Yung with their SETUP mechanism. Recently, Crépeau and Slakmon suggested very simple backdoors for this purpose. This paper sums up these methods. We also describe the LLL-reduction algorithm, which is useful to prove that Anderson’s trapdoor is insecure and to factor integers where the high bits of their pr...

متن کامل

Cheating Prevention in Linear Secret Sharing

Cheating detection in linear secret sharing is considered. The model of cheating extends the Tompa-Woll attack and includes cheating during multiple (unsuccessful) recovery of the secret. It is shown that shares in most linear schemes can be split into subshares. Subshares can be used by participants to trade perfectness of the scheme with cheating prevention. Evaluation of cheating prevention ...

متن کامل

The Perceived Role of a University Teacher Regarding Academic Morality and Preventing Cheating from Students’ Points of View

Background: One of the problems that universities are facing and endangers academic morality, is academic cheating. Among the decisive factors of cheating, university teachers have a critical role. The present study aimed at assessing the perceived role of university teachers regarding academic morality and decreasing cheating from students’ points of views in Birjand University. Method: The cu...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1999