@GramSchmidtorth @mathlava Nとeからdを求められるなら、素因数分解できるということが知られています。(RSAの原論文のAppendix Cや[May, CRYPTO 2004]) そのため、元のtweetで書いているのは、dを知らずに y↦y^d mod N を計算できる場合がありうるという意味です。 [May, CRYPTO 2004] https://t.co/M9YVFFVwMt
883 followers
5,168 followers
@Vicnent @MonniauxD [Antoine Joux, “Multicollisions in Iterated Hash Functions. Application to Cascaded Constructions”, CRYPTO 2004, https://t.co/dI5B5tBMya: “concatenating the results of several iterated hash functions in order to build a larger one does
759 followers
RT @IACR_News: IACR Test-of-Time winner for #Crypto 2004: Multicollisions in Iterated Hash Functions. Application to Cascaded Constructions…
3,202 followers
RT @IACR_News: IACR Test-of-Time winner for #Crypto 2004: Multicollisions in Iterated Hash Functions. Application to Cascaded Constructions…