A Clever RSA Attack Outwitted a Hardware Safe – What Does This Mean for the Crypto Industry?
Decrypt
1h ago
Ai Focus
Researchers from the University of California, San Diego, and a French INRIA institution forged the signatures of 1,024-bit RSA keys within a hardware security module without extracting the keys themselves. They used approximately 4 billion signature requests and around 1,380 CPU core years of processing power. The study was specifically focused on RSA and did not involve the elliptic curve signatures used by Bitcoin or Ethereum. The authors stated that this does not pose an immediate threat to most modern, padded RSA implementations.
Helpful
No.Help

Brief

Researchers from the University of California, San Diego, and INRIA in France forged RSA signatures within a hardware security module without removing the keys from the device. This type of device is used by custodians to protect encryption keys. The related paper was submitted on September 20th to IACR Cryptology ePrint Archive.

However, cryptocurrency holders need not panic. This is not a vulnerability in Bitcoin or Ethereum. Bitcoin uses the elliptic curve digital signature algorithm, which is also known as ECDSA. (This curve also supports Schnorr signatures.) Ethereum and most large blockchain networks also use similar solutions. What this article discusses is Rivest-Shamir-Adleman cryptography, which is RSA, a different signature scheme.

Nevertheless, this result is still a stress test of how keys are protected. According to the practices of institutional hosting service providers such as BitGo, a hardware security module (HSM) is a tamper-proof device used by companies to protect keys, ensuring that the keys never leave the device. In this case, the keys never left the device, yet researchers were still able to forge signatures.

Researchers turned off the FIPS mode of the hardware security module – a certified security setting – which causes the device to sign unformatted data, and they used their own prepared test keys for this process.

They had the device sign approximately 4 billion numbers that they selected, and then performed mathematical analyses on these results. You can think of it as a vault that is never opened, but they would slip blank papers through the crack in the door to stamp them. With enough requests, it could learn to create this stamp by itself.

What is a signature?

Every time you confirm a transaction, your wallet signs it with your private key. This digital signature serves as proof that the key holder has approved the transaction, and that the message has not been tampered with during transmission.

RSA is a method for constructing such proofs, proposed by Ron Rivest, Leonard Adleman, and Adi Shamir in 1977. The 'S' in the name comes from Shamir.

The core idea of RSA is that it is easy to multiply two large prime numbers together, but it is extremely difficult to reverse this process—i.e., to factorize the result back into its prime factors. The author writes that the security of RSA is generally understood to be based on this difficulty, however, it has never been proven that cracking RSA is completely equivalent to factoring prime numbers. This team did not actually factorize anything.

Who will be affected?

Standard RSA signatures use padding – a step of disruption and formatting that is performed before mathematical operations, such as PKCS #1 v1.5 or PSS – and signatures with padding do not produce predictable or exploitable predicators. The author indicates that this attack is unlikely to pose an immediate operational threat to most modern RSA deployments. This paper is currently still in preprint form.

However, some systems deliberately provide such oracles. Blind signatures based on RSA allow servers to sign without seeing the content, which is also how a certain variant of Privacy Pass works. Cloudflare indicates that Apple uses a version of Privacy Pass that allows users to prove they have passed verification after undergoing checks similar to those in CAPTCHA, without having to expose their identity.

Blind signatures also have a history in the field of cryptography. Cryptographer David Chaum used this technology when he founded DigiCash in 1989.

The greater threat remains quantum computing.

There are precedents for headlines like “RSA has been cracked.” In January 2023, Chinese researchers claimed that a quantum method would pose a threat to RSA, but they only managed to break down a 48-digit number, which was later dismissed by experts. This time, the demonstration indeed targeted a 1,024-bit key, although it came with a footnote as large as that of a predictor.

The authors refer to their findings as classic evidence in support of a gradual transition away from RSA during the post-quantum era, that is, moving towards encryption schemes that can withstand quantum computers.

For Bitcoin, the quantum problem lies in elliptic curve signatures. At the end of March, researchers from Caltech estimated that 10,000 to 20,000 qubits – the quantum version of bits – might be sufficient to run the Shor algorithm, which could threaten such signatures.

Google has set 2029 as the deadline for completing the migration of its systems to post-quantum cryptography.

Tip
$0
Like
0
Save
0
Views 17
HKWDB reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
AMD acquires startup World Labs founded by Li Feifei for $8.2 billion
AMD will acquire a two-year-old startup focused on physical AI for $8.2 billion through all-stock transaction. Li Feifei will assume the position of Executive Vice President and Chief Scientist at AMD. The transaction is expected to be completed by the end of this year, although regulatory approval is still required.
Fortune
·2026-09-29 06:13:54
15
AMD acquires World Labs for approximately $8.2 billion, with Li Feifei set to take on the role of Chief Scientist
AMD stated on Monday that it has agreed to acquire San Francisco-based startup World Labs in a all-stock transaction, with a valuation of approximately $8.2 billion. The company was co-founded in 2024 by Stanford University professor Fei-Fei Li, and focuses on creating and reconstructing interactive 3D environments from text, images, and videos using "world models." According to the agreement, Fei-Fei Li will join AMD as Executive Vice President and Chief Scientist, reporting to CEO Su Zifeng.
Businessinsider
·2026-09-29 05:56:01
23
Close on September 29: U.S. stocks fell on Monday, dragged down by the surge in Treasury yields at the start of this week
U.S. stocks fell on Monday, with major indices dragged down by soaring Treasury yields. The Dow Jones, S&P 500, and Nasdaq all closed lower, while tech stocks showed mixed performance. Meanwhile, Morgan Stanley, Goldman Sachs, and JPMorgan Chase each expressed their views on U.S. Treasury yields, the breadth of the U.S. stock market, and the flow of funds into tech stocks.
The Block
·2026-09-29 05:44:04
25
Michael Burry believes that the bubble of AI "may burst" sooner than he previously anticipated
In the latest investment newsletter, Michael Burry stated that he is moving up the timeline for his bearish view on the artificial intelligence boom and converting some of his short positions into put options in order to achieve more cost-effective leverage. He believes that the bubble in AI “may burst earlier than expected” and disclosed adjustments to his positions in Micron, Nebius, SOXX, and Palantir.
CNBC
·2026-09-29 05:24:42
17
View More