New Attack Against RSAhttps://www.schneier.com/blog/archives/2026/09/new-attack-against-rsa.html
ArsTechnica is reporting on a βnewβ attack against RSA, one that bypasses factoring. First, this attack isnβt new. The original research is from 2007 . What is new is the implementation. Second, it is a forgery attack. It allows an attacker to forge digital signatures. It does not recover the private key from the public key. Third, the attack only works against pure signatures. That is, signatures without any formatting or padding. This is not generally how we use RSA in practice. Fourth, speed is all relative. This is not a polynomial-time algorithm; itβs a subexponential-time algoriβ¦