Researchers Devise Signature-Forgery Attack That Weakens RSA Without Factoring Keys
A team including UC San Diego professor Nadia Heninger published research describing a new classical-computing attack that forges RSA signatures without factoring the underlying keys. The method reportedly cracked deprecated 1024-bit RSA keys in a few months using an academic CPU cluster, far less effort than factoring would require, and it also degrades the theoretical security of 2048- and 4096-bit keys.