Also: RSA in a post-2010 standard: bad sign.
-
-
@bascule RSA scares me more than mult. group FF DH. -
-
@pag_crypto@tqbf@bascule Even if used with a formatting such as OAEP or PSS? -
@pmhsfelix@tqbf@bascule Indeed. Coppersmith showed an algorithm for factoring RSA moduli given just 1/4 of the bits of one prime
End of conversation
New conversation -
-
-
@bascule I look at Group 2 DH and don’t have to wonder “are they maybe using this directly to encrypt messages”Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.