Forging 1024-bit RSA signatures in nearly SNFS time [pdf]
https://arstechnica.com/security/2026/09/theres-a-new-way-to...
35 points by int0x29 - 5 commentshttps://arstechnica.com/security/2026/09/theres-a-new-way-to...
35 points by int0x29 - 5 comments
So it's not a straightforward general-purpose RSA-1024 signature break; it's pretty situational. The paper goes into detail (in section 5) about how those situations can emerge in practical scenarios.
Why are we even contemplating quantum computers breaking encryption when they can't even factorize a 3-digit prime number? I'm wondering if I'll even see quantum computers breaking RSA in my lifetime.
Also no ai, so we can expect some speedups soon.
I really didn’t expect rsa to be targeted so much this year. Hope that these results will motivate people to pursue algorithmic improvements!