Show Navigation
Conversation
Notices
-
Short version
>Someone found a way to get the private key from the public key generated by infineon chips since 2012
>RSA keys 2048 bits or smaller have been demonstrated to be compromised
>Only the knowledge of a public key is necessary and no physical access to the vulnerable device is required
>Chips found in smart cards, authentication tokens, government identity documents, and Trusted Platform Modules
Good job proprietary key generation
Long version
https://crocs.fi.muni.cz/public/papers/rsa_ccs17