Hacker News new | ask | show | jobs
by SAI_Peregrinus 958 days ago
A single bit flip reveals the entire private key, for RSA with PKCS#1v1.5. RSA with PKCS#1v2 (aka RSA-PSS) is not vulnerable.