2000 character limit reached
Insecure primitive elements in an ElGamal signature protocol (1509.01504v1)
Published 4 Sep 2015 in cs.CR
Abstract: Consider the classical ElGamal digital signature scheme based on the modular relation $\alpham\equiv yr\, rs\ [p]$. In this work, we prove that if we can compute a natural integer $i$ such that $\alphai\ mod\ p$ is smooth and divides $p-1$, then it is possible to sign any given document without knowing the secret key. Therefore we extend and reinforce Bleichenbacher's attack presented at Eurocrypt'96.
Sponsor
Paper Prompts
Sign up for free to create and run prompts on this paper using GPT-5.
Top Community Prompts
Collections
Sign up for free to add this paper to one or more collections.