ABSTRACT

All of the attacks in this chapter use some information about the private key, that is generally assumed to be unknown, to factor the modulus. For example, an adversary might be given some number of bits of the private exponent or of one of the primes in the modulus. The attacks show the importance of keeping the bits of the private key concealed.