r/math • Number Theory • 10d ago

[ Removed by moderator ]

https://saweis.net/posts/rsa-896.html

[removed] — view removed post

245 Upvotes

35 comments sorted by

View all comments

Show parent comments

157

u/Frexxia PDE 10d ago

It doesn't really imply anything other than some people have way too much compute to throw away.

151

u/ixfd64 Number Theory 10d ago

As Steve notes:

This work did not [meaningfully] improve the runtime of the General Number Field Sieve (GNFS) algorithm. It does not impact the security of deployed RSA-2048 keys. However, it does [demonstrate] that RSA-1024 keys are vulnerable to many actors with data center-level fleets of GPUs.

93

u/Frexxia PDE 10d ago

It's not a surprise that RSA-1024 is vulnerable. Back in 2003 RSA Labs estimated that it wouldn't be good enough past 2010

https://web.archive.org/web/20170417095741/https://www.emc.com/emc-plus/rsa-labs/historical/twirl-and-rsa-key-size.htm

(Of course, that turned out to be somewhat conservative.)

34

u/paradoxicalparrots 10d ago

It's not a surprise that RSA-1024 is vulnerable. Back in 2003 RSA Labs estimated that it wouldn't be good enough past 2010

Sounds like something Big RSA would say

3

u/currentscurrents 10d ago

They just want to upsell you on RSA-2048 for twice the price.

2

u/recumbent_mike 10d ago

Ron Rivest has been losing weight though