Simple Backdoors on RSA Modulus by Using RSA Vulnerability.

Hung-Min Sun,Mu-En Wu,Cheng-Ta Yang
DOI: https://doi.org/10.1587/transfun.e92.a.2326
2009-01-01
Abstract:This investigation proposes two methods for embedding backdoors in the RSA modulus N = pq rather than in the public exponent e. This strategy not only permits manufacturers to embed backdoors in an RSA system, but also allows users to choose any desired public exponent, such as e = 2(16) + 1, to ensure efficient encryption. This work utilizes lattice attack and exhaustive attack to embed backdoors in two proposed methods, called RSA(SBLT) and RSA(SBES), respectively. Both approaches involve straightforward steps, making their running time roughly the same as that of normal RSA key-generation time, implying that no one can detect the backdoor by observing time imparity.
What problem does this paper attempt to address?