Two decades of research led to a number fascinating attacks on RSA. We survey several attacks and classify them into four categories: elementary attacks, attacks on low private exponent, attacks on low public exponent, and attacks on the implementation of RSA. We hope to illustrate some of the pitfalls security engineers should avoid when designing new systems.
Click Here to download this article